🇨🇳
LapDogs
APT Group
2 zero-day CVEs
Also Known As
No alias recordedTarget Countries 7
Countries highlighted in red
China
United Kingdom
Hong Kong
Japan
Republic of Korea
Province of China Taiwan
United States
Sectors Targeted
Real Estate and Rental and Leasing
53
healthcare
Insurance Carriers and Related Activities
524
Consumer
Public Administration
92
IT
Multiple
Arts, Entertainment, and Recreation
71
Utilities
22
Software Development
SOHO (Small Office/Home Office)
Finance and Insurance
52
Hardware Vendors
Consumer Technology
Construction of Buildings
236
Internet Service Providers
Publishing Industries (except Internet)
511
telecommunications
networking
Internet Infrastructure
Accommodation and Food Services
72
Healthcare
Other Services (except Public Administration)
81
Internet Publishing and Broadcasting and Web Search Portals
51913
Consumer/Home Users
Computer Systems Design and Related Services
5415
Food Services and Drinking Places
722
Health Care and Social Assistance
62
Professional, Scientific, and Technical Services
54
Electrical Equipment, Appliance, and Component Manufacturing
335
real estate
Municipal
Computer Systems Design Services
541512
potentially Small Businesses
Computer and Electronic Product Manufacturing
334
Real Estate
finance
Architectural Services
541310
NAICS:31
31
Management of Companies and Enterprises
55
Government
Information
51
Construction
23
Media
Technology
and media
Networking
NAICS:44
44
Telecommunications
Hardware Manufacturing
Telecommunications
517
ISPs
media
Hardware Manufacturing
332510
Other Information Services
519
Repair and Maintenance
811
Details
Origin
🇨🇳 CN
Last Updated
30 Jun 2025
Malware Families 1
leash
MITRE ATT&CK 25
T1016 - System Network Configuration Discovery
T1021.001 - Remote Services Remote Desktop Protocol
T1036.005 - Masquerading Match Legitimate Name or Location
T1046 - Network Service Discovery
T1055 - Process Injection
T1059.004 - Unix Shell
T1071.001 - Application Layer Protocol Web Protocols
T1078 - Valid Accounts
T1082 - System Information Discovery
T1090.001 - Proxy Internal Proxy
T1102.002 - Bidirectional Communication
T1105 - Ingress Tool Transfer
T1133 - External Remote Services
T1190 - Exploit Public-Facing Application
T1205 - Traffic Signaling
T1210 - Exploitation of Remote Services
T1505.003 - Server Software Component Web Shell
T1543.002 - Create or Modify System Process Windows Service
T1547.006 - Kernel Modules and Extensions
T1547.010 - Boot or Logon Autostart Execution Shortcut Modification
T1568 - Dynamic Resolution
T1571 - NonStandard Port
T1572 - Protocol Tunneling
T1573.002 - Asymmetric Cryptography
T1574.006 - Hijack Execution Flow DLL SideLoading