Home / Jun 19, 2026 / Story
0
#7 The Hacker News general June 18, 2026 at 13:30 UTC

DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic

By [email protected] (The Hacker News)

AI Summary

DragonForce ransomware operators deployed a custom Go-based RAT called Backdoor.Turn that conceals C2 traffic inside Microsoft Teams relay infrastructure, as observed by Symantec and Carbon Black in an attack against a major U.S. services firm. Abusing legitimate collaboration platform infrastructure for C2 communications makes this technique particularly difficult to detect with traditional network monitoring.

Relevance score: 82.0/100

# More from June 19