💻
HollowGraph malware hides stolen files in Microsoft Calendar invites dated 2050
💻 Technology

HollowGraph malware hides stolen files in Microsoft Calendar invites dated 2050

Security researchers at Group-IB have uncovered a new piece of malware called HollowGraph that targets Israeli entities by exfiltrating files via the Microsoft Graph API. Operators hide commands inside future Microsoft Calendar entries — such as those dated 2050 — and attach encrypted stolen files to those events to blend in with legitimate traffic. At least 12 systems have been compromised; researchers note overlaps with the Lyceum threat group, though attribution remains low-confidence.

Comments

No comments yet