‘An interesting evolution in tactics’: Google security experts flag new cyber scam that abuses Microsoft Teams to steal your data


  • Google identifies a new threat group, UNC6692, that uses spam floods and fake IT support messages via Microsoft Teams to trick victims
  • Targets were lured to a landing page that harvested credentials and implemented a three-part snow-themed malware framework
  • The toolkit includes a persistence-focused browser extension, a tunneling tool for data exfiltration, and a backdoor that enables full endpoint takeover

Google has sounded the alarm about a previously undocumented threat actor group using brazen social engineering tactics to deploy a trilogy of malware.

In an in-depth report, Google said it saw UNC6692 — apparently a new collective — bombard target email inboxes with countless spam messages in a short time frame.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top