Hackers have reportedly found a way to use the Google Calendar as command & control (C2) infrastructure which could create quite a few headaches in the cybersecurity community.
Hackers have reportedly found a way to use the Google Calendar as command & control (C2) infrastructure which could create quite a few headaches in the cybersecurity community.
I’m actually surprised that this wasn’t seen before. It’s a domain that can’t be blocked in lots of companies, and frequent requests to it won’t raise any flags in any company that uses Google Workspace.
Yep, this. A couple years ago, Google Drive sharing was used in a loosely similar way to deliver malware, and Google had to build some new controls. I’m surprised it took the baddies this long to exploit GCal.
Or they have been doing it quietly all along