Leggi il blog: spcnet.it/hollowgraph-...
Leggi il blog: spcnet.it/hollowgraph-...
https://isc.sans.edu/podcastdetail/10016
https://isc.sans.edu/podcastdetail/10016
www.theregister.com/security/202...
www.theregister.com/security/202...
HollowGraphの脅威が明らかに クラウドカレンダーには、日常的な予定表示以上のものが隠されている場合があります。HollowGraphマルウェアはMicrosoft 365を悪用し、密かにコマンドを受信するとともに窃取したファイルを送信します。Group-IBのサイバーセキュリティ専門家は...
HollowGraphの脅威が明らかに クラウドカレンダーには、日常的な予定表示以上のものが隠されている場合があります。HollowGraphマルウェアはMicrosoft 365を悪用し、密かにコマンドを受信するとともに窃取したファイルを送信します。Group-IBのサイバーセキュリティ専門家は...
No CVE, no patch. Firewalls see normal M365 traffic.
Hunt far-future calendar events with attachments in your audit logs.
No CVE, no patch. Firewalls see normal M365 traffic.
Hunt far-future calendar events with attachments in your audit logs.
https://cybersec.picussecurity.com/s/hollowgraph-backdoor-turns-microsoft-365-calendars-into-a-c2-channel-28829
https://cybersec.picussecurity.com/s/hollowgraph-backdoor-turns-microsoft-365-calendars-into-a-c2-channel-28829
A newly discovered espionage implant has been using a hijacked Microsoft 365 calendar as its command channel, planting operator instructions and smuggling out stolen files as attachments o…
#hackernews #microsoft #news
A newly discovered espionage implant has been using a hijacked Microsoft 365 calendar as its command channel, planting operator instructions and smuggling out stolen files as attachments o…
#hackernews #microsoft #news
Microsoft 365 calendars have become a hiding place for espionage malware, with commands and stolen files stashed inside appointments dated to the year 2050, researchers from Group-IB discovered…
#hackernews #microsoft #news
Microsoft 365 calendars have become a hiding place for espionage malware, with commands and stolen files stashed inside appointments dated to the year 2050, researchers from Group-IB discovered…
#hackernews #microsoft #news
Group-IBの研究者らが発見したところによると、Microsoft 365のカレンダーがスパイ活動用マルウェアの隠し場所として悪用されており、コマンドや窃取したファイルが2050年という未来の日付が設定された予定に紛れ込ませられていました。 イランのスパイ活動と関連する標的型キャンペーン Grou...
Group-IBの研究者らが発見したところによると、Microsoft 365のカレンダーがスパイ活動用マルウェアの隠し場所として悪用されており、コマンドや窃取したファイルが2050年という未来の日付が設定された予定に紛れ込ませられていました。 イランのスパイ活動と関連する標的型キャンペーン Grou...