Cybersecurity researchers have identified fresh activity from Webworm, a China-linked threat group, deploying custom backdoors that use Discord and Microsoft Graph API for command-and-control communications. The group, first documented in 2022, continues to target government agencies.
30d signal volume
By Threat Layer
Top Signals
View all signals →A court case in New York has highlighted how Iran is using technology to recruit agents who may not even be regime supporters When on Friday a 32-year-old Iraqi was brought before a court in New York to be charged with planning to attack Jewish community sites in the US, a curtain was suddenly lifted on a corner of a shadowy world. The detention of Mohammed Saad Baqer al-Saadi in Turkey last week revealed rare details of Iran’s efforts to use terrorism to sow discord among communities in Europe, the UK and the US – but also the outlines of an uncertain and threatening future. Continue reading...