Malware
May 3, 2023

"Decoy Dog" Malware Toolkit Unveiled in Analysis of DNS Records

A new malware toolkit named Decoy Dog has been discovered, which is targeting enterprise networks. The toolkit employs techniques such as strategic domain aging and DNS query dribbling, where a series of queries are sent to the command-and-control domains to avoid suspicion. Decoy Dog is described as a cohesive toolkit with distinct characteristics that make it unique and identifiable, particularly when examining its domains on a DNS level. The malware was discovered in April 2023 following anomalous DNS beaconing activity, and its atypical characteristics allowed it to map additional domains that are part of the attack infrastructure.

All Posts

Let's talk

We’re here to help! Submit your information or call the office on +44 (0)1243 670 854 and a member of our team would be happy to help.

Who are Cybaverse?
How can we support your business?
Why work with us?