HackerFeeds

CyberSecurity News

New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication

SecurityWeek
· July 21, 2026

AI summary

HollowGraph malware is part of a larger toolkit and utilizes a compromised Microsoft 365 account. It abuses the account's calendar as a two-way dead-drop for command and control communication. This approach allows for covert communication between the malware and its operators. The malware's use of a legitimate service like Microsoft 365 Calendar can make it harder to detect. HollowGraph's tactics enable stealthy communication, potentially evading traditional security measures. The malware is a notable example of attackers exploiting cloud services for malicious purposes.

Read the full article at SecurityWeekwww.securityweek.com/new-hollowgraph-malware-abuses-microsoft-365-calendar-for-cc-communication/

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to SecurityWeek.