#7
The Hacker News
general
June 18, 2026 at 13:30 UTC
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
By [email protected] (The Hacker News)
AI Summary
DragonForce ransomware operators deployed a custom Go-based RAT called Backdoor.Turn that conceals C2 traffic inside Microsoft Teams relay infrastructure, as observed by Symantec and Carbon Black in an attack against a major U.S. services firm. Abusing legitimate collaboration platform infrastructure for C2 communications makes this technique particularly difficult to detect with traditional network monitoring.
Relevance score: 82.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →