
Hackers Use Microsoft 365 Calendar Events as Dead Drops for Malware Commands
A newly identified Windows malware sample, dubbed HOLLOWGRAPH, is abusing the Microsoft Graph API to turn a compromised Microsoft 365 calendar into a covert two-way command-and-control channel. Group-IB attributes the malware, with high confidence, to the Iranian-linked Cavern backdoor framework, and says it communicates through a compromised Microsoft 365 account in Israel, blending its traffic […]
The post Hackers Use Microsoft 365 Calendar Events as Dead Drops for Malware Commands appeared first on Cyber Security News.