HollowGraph Malware Exploits Microsoft 365 Calendar to Hide Command-and-Control Traffic
Attackers have found a new stealth vector in widely-used productivity software, demonstrating that defenders need to monitor legitimate enterprise tools—not just network perimeters—for signs of compromise.
Sourcing & attribution. Newseze provides AI-curated summaries, narrative framing, and editorial analysis. The underlying reporting was contributed by SecurityWeek via Google News; tap “Open original source” above to read their full reporting and support the contributing newsroom directly.
Newseze's algorithm reads the story and answers your question — calmly, factually, with source attribution. No comments, no flame wars — just answers.
No questions yet. Be the first.
Answers reflect Newseze's editorial framework applied under fair use (17 U.S.C. § 107). Not financial, legal, medical, or tax advice. Hate speech and racial slurs are blocked.
Related stories

Why it mattersA cloud tenant using nothing but ordinary GPU access can push a data center's power draw up and down fast enough to threaten the grid it runs on, with no exploit and no break-in. That is the claim behind Bit2Watt, descri…
A cloud tenant using nothing but ordinary GPU access can push a data center's power draw up and down fast enough to threaten the grid it runs on, with no exploi…
Why it mattersA standardized vulnerability disclosure program reduces the lag time between researchers finding security flaws and government agencies fixing them, strengthening the nation's cyber defense posture against threats.
Establishing a Coordinated Vulnerability Disclosure Program to Work With Security Researchers CISA (.gov)

Why it mattersThe latest large language models have high false-positive rates and fail to take into account the context of scans, leading to more work for AppSec professionals.

Why it mattersResearchers pointed to fragmentation of the ransomware ecosystem, the emergence of new attackers, and expansion of attacks on less defended organizations.