DOGCALL — Malware Profile
DOGCALL is a backdoor used by APT37 that has been used to target South Korean government and military organizations in 2017. It is typically dropped using a Hangul Word Processor (HWP) exploit.
MITRE ATT&CK techniques (6)
- T1027.013 Encrypted/Encoded File
- T1056.001 Keylogging
- T1102.002 Bidirectional Communication
- T1105 Ingress Tool Transfer
- T1113 Screen Capture
- T1123 Audio Capture