HollowGraph malware uses Microsoft 365 calendar for command and control

Security researchers have identified a new malware called HollowGraph that uses Microsoft 365 calendar events for command-and-control communication. The malware, likely linked to Iranian threat actors, targets Israeli organizations for espionage.
Why it matters
This discovery highlights the evolving sophistication of cyber espionage techniques that exploit legitimate enterprise software to bypass security measures.
A new malware component called HollowGraph has been identified by Group-IB that leverages the calendar feature within compromised Microsoft 365 mailboxes to act as a command-and-control channel, according to a recent report by Bleeping Computer.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in