Thehackernews
NANOREMOTE Malware Exploits Google Drive API for C2 on Windows Systems
First seen 12 Dec 2025, 12:53 UTC
•

•37.6
Export
Article Content
Browse articles
In October 2025, a new Windows backdoor named NANOREMOTE was identified, utilizing the Google Drive API for its Command-and-Control (C2) operations. This malware presents a significant risk to enterprise environments by disguising its malicious traffic within legitimate cloud infrastructure, making detection challenging.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
SonicWall Patches Actively Exploited Zero-Day Vulnerability CVE-2025-40602
F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution
Critical NGINX Vulnerability CVE-2026-42945 Exposes Millions to RCE and DoS Attacks
TeamPCP's CanisterWorm Targets Iranian Systems with Destructive Kubernetes Wiper
Red Menshen APT Uses BPFdoor for Long-Term Espionage in Telecom Networks
Exploitation of Remote Services in Cyber Attacks