s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-elf.decoy_dog

📛 Threat Title

Malware family: Decoy Dog RAT

Category: Decoy Dog RAT First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `elf.decoy_dog`. Printable name: Decoy Dog RAT.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:advisory.eventussecurity.com

    The researcher is discoverd the emergence and evolution of Decoy Dog , a sophisticated remote access trojan ( RAT ) based on the Pupy open-source RAT . The typical penetration testing tools, Decoy Dog showcases advanced features, including new commands, communication protocols, and upgraded Python 3.8 client, with significant modifications in core ...

  • web:gridinsoft.com

    Decoy Dog has proven to be more sophisticated, utilizes DNS for C2 servers for the malware , and is used in ongoing state-level cyberattacks.

  • web:heimdalsecurity.com

    A new, sophisticated malware toolkit called Decoy Dog was discovered after cybersecurity researchers analyzed more than 70 billion DNS records belonging to enterprise networks.

  • web:malpedia.caad.fkie.fraunhofer.de

    Pupy is an open-source, cross-platform RAT and post-exploitation framework mainly written in python. Pupy can be loaded from various loaders, including PE EXE, reflective DLL, Linux ELF, pure python, powershell and APK. Most of the loaders bundle an embedded python runtime, python library modules in source/compiled/native forms as well as a flexible configuration. They bootstrap a python ...

  • web:media.plixer.com

    The cyber threat actor, Decoy Dog , has showcased a sophisticated approach to malware propagation by harnessing the advanced capabilities of the Pupy Remote Access Tool ( RAT ). Pupy, recognized for its ability to operate entirely in-memory and utilize encrypted DNS for covert communications, serves as a powerful tool in Decoy Dog's arsenal.

  • web:perimeterwatch.non-linear.studio

    Introduction Researchers at Infoblox discovered a new RAT (remote access trojan) toolkit in April of 2023. This new strain of malware is known as Decoy Dog . Soon after its discovery, Infoblox disclosed all the information that it had on the malware at the time. After learning that news of the RAT had become public, the operators of Decoy Dog quickly adapted the malware to continue pursuing on ...

  • web:thehackernews.com

    A deeper analysis of a recently discovered malware called Decoy Dog has revealed that it's a significant upgrade over the Pupy RAT , an open-source remote access trojan it's modeled on. " Decoy Dog has a full suite of powerful, previously unknown capabilities - including the ability to move victims ...

  • web:www.infoblox.com

    Santa Clara, Calif., July 25, 2023— Infoblox Inc., the company that delivers a simplified, cloud- enabled networking and security platform for improved performance and protection, today published a second threat report with critical updates on " Decoy Dog ," the remote access trojan ( RAT ) toolkit they discovered and disclosed in April 2023.

  • web:www.infosecurity-magazine.com

    The malware has also expanded its reach, with at least three different actors now operating it. Though based on the open-source RAT Pupy, Decoy Dog is a new and previously unknown malware with advanced capabilities to persist on compromised devices.

  • web:www.linkedin.com

    Decoy Dog is a highly sophisticated malware toolkit that emerged in April 2023 and is considered an upgraded version of the open-source Pupy RAT .

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.