Minacce e avversari · Spionaggio APT
Webworm Lascia l’Asia, Punta sull’Europa Attraverso Webmail Legacy Webworm si è spostato oltre un insieme di spionaggio regionale focalizzato sull’Asia. Il cambiamento che conta è la combinazione: un probabile foothold attraverso SquirrelMail dismesso, poi tooling basato su cloud e SaaS che fa sembrare l’intrusione normale traffico internet invece di una classica campagna di beaconing.
5 fonti · 22 mag
Cronologia Fonti 22 mag Dark Reading
China's Webworm Uses Discord, Microsoft Graphs to Hack EU Govts
The advanced persistent threat group also relied on SOCKS proxies like SoftEther VPN, tunneling tools that act as a middleman between victim and attacker.
originale 20 mag The Hacker News
Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph API
Webworm added EchoCreep and GraphWorm in 2025, using Discord and Microsoft Graph API C2 to expand stealth operations.
originale 20 mag Help Net Security
Webworm APT targets European government organizations with new backdoors - Help Net Security
ESET researchers uncover a Webworm APT threat campaign targeting Europe through trusted online services and tools.
originale Riepilogo fornitore: Microsoft
Part of the PlainSec briefing for 2026-05-20
Every edition of this story: Webworm Lascia l’Asia, Punta sull’Europa Attraverso Webmail Legacy
Altro da oggi
Minacce e avversari · Spionaggio APT
Webworm Lascia l’Asia, Punta sull’Europa Attraverso Webmail Legacy Webworm si è spostato oltre un insieme di spionaggio regionale focalizzato sull’Asia. Il cambiamento che conta è la combinazione: un probabile foothold attraverso SquirrelMail dismesso, poi tooling basato su cloud e SaaS che fa sembrare l’intrusione normale traffico internet invece di una classica campagna di beaconing.
5 fonti · 22 mag
Cronologia Fonti 22 mag Dark Reading
China's Webworm Uses Discord, Microsoft Graphs to Hack EU Govts
The advanced persistent threat group also relied on SOCKS proxies like SoftEther VPN, tunneling tools that act as a middleman between victim and attacker.
originale 20 mag The Hacker News
Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph API
Webworm added EchoCreep and GraphWorm in 2025, using Discord and Microsoft Graph API C2 to expand stealth operations.
originale 20 mag Help Net Security
Webworm APT targets European government organizations with new backdoors - Help Net Security
ESET researchers uncover a Webworm APT threat campaign targeting Europe through trusted online services and tools.
originale Riepilogo fornitore: Microsoft
Part of the PlainSec briefing for 2026-05-20
Every edition of this story: Webworm Lascia l’Asia, Punta sull’Europa Attraverso Webmail Legacy
Altro da oggi