Beware – Microsoft Calendar Invitation Dated 2050 May Hide Stolen Files and Worse


  • Group-IB detects HollowGraph malware targeting Israeli entities and exfiltrates files via the Microsoft Graph API
  • Operators hide instructions in future calendar entries and then attach encrypted stolen data to events
  • At least 12 systems were compromised; overlap with Lyceum noted, but attribution remains low-confidence

Cybercriminals have found a way to communicate with malware installed on victim devices through compromised Microsoft Calendar apps, experts have warned.

Security researchers at Group-IB have described a newly discovered piece of malware called HollowGraph designed to exfiltrate sensitive files from compromised devices.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top