‘An interesting evolution in tactics’: Google security experts point to new cyber scam that abuses Microsoft Teams to steal your data



  • Google identifies a new threat group, UNC6692, that uses spam floods and fake IT support messages through Microsoft Teams to trick victims.
  • Targets were lured to a landing page that collected credentials and deployed a three-part snow-themed malware framework.
  • The toolkit includes a persistence-focused browser extension, a tunneling tool for data exfiltration, and a backdoor that enables full endpoint acquisition.

Google has raised the alarm about a group of previously undocumented threat actors using brazen social engineering tactics to deploy a trilogy of malware.

In a detailed report, Google said it saw UNC6692, apparently a new collective, bombard target email inboxes with countless spam messages in a short period of time.

Leave a Comment

Your email address will not be published. Required fields are marked *