Article may be outdated

This article is 67 days old. Some details may have changed since publication.

Help Net Security·3 min read·hard

Cybercriminals mask malicious communications through Microsoft Teams relays

Cybercriminals mask malicious communications through Microsoft Teams relays
AI Summary

The DragonForce ransomware group has been identified using Microsoft Teams TURN relay infrastructure to mask malicious command-and-control traffic. This novel technique allowed attackers to hide their activities within legitimate network traffic for months.

Why it matters

This represents a sophisticated evolution in cyberattack tactics, exploiting trusted enterprise communication tools to evade security monitoring.

Dive DeeperCreate a free account to unlock

Cybercriminals mask malicious communications through Microsoft Teams relays The DragonForce ransomware group used a custom malware called Backdoor.Turn to hide command-and-control traffic inside Microsoft Teams relay infrastructure during an intrusion at a U.S. services company, according to Symantec.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness
Political Bias
Center
LeftLean LCenterLean RRight
Confidence: 95%

The article is a technical report on cybersecurity threats.

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in