Frequency
8
occurrences
First Seen
July 20, 2026
Last Seen
August 16, 2026
Related Threat Clusters
-
Jewelbug APT Group Engages in Espionage and Cryptocurrency Fraud
The Jewelbug APT group, based in China, has been conducting simultaneous cyber espionage and cryptocurrency fraud operations. Utilizing a single command-and-control platform named XG-Web, the group has compromised over…
15 articles · Updated August 13, 2026 -
CAV3RN Framework Upgrades to Outlook Calendar for C2 Communication
The Project CAV3RN cyberespionage framework has evolved with the introduction of a new communication module, AzureCommunication.dll, which replaces the previous HTTP/WebSocket component. This module utilizes Outlook…
2 articles · Updated July 21, 2026 -
HOLLOWGRAPH Malware Exploits Microsoft 365 Calendars for Espionage
Group-IB has identified HOLLOWGRAPH, a sophisticated Windows malware that abuses the Microsoft Graph API to covertly exfiltrate files and receive commands through compromised Microsoft 365 calendar events. The malware…
10 articles · Updated July 20, 2026
Recent Intelligence Reports
- Graph API command-and-control abuse — www.group-ib.com · August 16, 2026
- HollowGraph malware uses Microsoft 365 calendar for command and control — Feeds.Feedburner · July 20, 2026
- New HollowGraph malware uses Microsoft Graph for stealthy C2 comms — Bleepingcomputer · July 20, 2026
- Hackers Are Turning Microsoft 365 Calendar Invites Into Secret Malware Command Channels — Cybersecuritynews · July 20, 2026
- HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel — Feeds2.Feedburner · July 20, 2026
- HollowGraph hides espionage C2 in Microsoft 365 calendars set for 2050 — Feeds.4Sysops · July 20, 2026
- Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaign — Theregister · July 20, 2026
- New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications — Infosecurity-Magazine · July 20, 2026