s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-elf.dogleash

📛 Threat Title

Malware family: DOGLEASH

Category: DOGLEASH First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `elf.dogleash`. Printable name: DOGLEASH.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (8)

  • web:arxiv.org

    You are an expert in malware analysis, capable of interpreting the sample type and its family (for in-scope malware ) based on the top-K feature strings and top-scoring candidate families.

  • web:cyberwarrior76.substack.com

    The LEASH- Family Malware Ecosystem SecurityScorecard identified SHORTLEASH as the original LapDogs backdoor; Talos (July 2026) reported UAT-7810 developing a more capable successor, LONGLEASH, and added DOGLEASH , JARLEASH, and LEASHTEST.

  • web:dailysecurityreview.com

    The July 7 Cisco Talos publication represents the first public documentation of the LONGLEASH, DOGLEASH , JARLEASH, and LEASHTEST malware families. Organizations running Ruckus wireless routers or ASUS AiCloud routers should verify patch status against the CVEs listed in the Talos advisory, as unpatched devices remain viable targets for ...

  • web:radar.offseq.com

    A China-linked advanced persistent threat (APT) group known as UAT-7810 has expanded its malware toolkit targeting small office/home office (SOHO) routers with new backdoors named LongLeash, DogLeash , and JarLeash. These backdoors build on previous malware used in the LapDogs campaign, enabling command-and-control communication, web server hosting, tunnel management, and file management ...

  • web:socprime.com

    Summary The China-linked APT group UAT-7810 is continuing to expand its LapDogs Operational Relay Box network with a toolkit of custom malware that includes LONGLEASH, DOGLEASH , and JARLEASH. The actor focuses on embedded devices and networking hardware to build proxy infrastructure that can later be leveraged by secondary threat actors.

  • web:undercodenews.com

    Confirmed: Cisco Talos documented UAT-7810's expanded malware toolkit, including LONGLEASH, DOGLEASH , JARLEASH, and LEASHTEST, as well as the group's continued expansion of its Operational Relay Box infrastructure.

  • web:www.cisa.gov

    It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.

  • web:www.nature.com

    This study proposes a hierarchical deep learning framework for Portable Executable (PE) malware detection and family categorization, underpinned by a novel Doubly Regularized Binary Cross-Entropy ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.