Security · 1h ago
East Asia-Linked Hackers Use Telegram for C2 in Middle East Attacks
Researchers at Zscaler ThreatLabz detected a campaign targeting Middle East government entities, deploying new malware families TELESHIM, MIXEDKEY, and BINDCLOAK. The threat actor, linked to East Asia, abuses Telegram for command-and-control communication. The campaign was identified earlier this month.
Meridian48 take
While Telegram-based C2 isn't new, the use of three distinct malware families suggests a well-resourced operation that warrants close monitoring.
Read the full reporting
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments →
The Hacker News
telegram-c2middle-east-cyberattacks