Group-IB has discovered a new espionage implant named HollowGraph that hijacks Microsoft 365 calendars for command-and-control (C2) and data exfiltration. The malware,…
Iranian state-sponsored hackers affiliated with the Ministry of Intelligence and Security (MOIS) have been using a previously undocumented modular command-and-control (C2) framework…
Cavern is a modular backdoor framework documented by Check Point, attributed to an Iranian Ministry of Intelligence and Security-linked actor called Cavern…