APT41 Leverages Google Calendar for Command and Control

Red | Attack Report
Download PDF

APT41’s operation used sophisticated malware, TOUGHPROGRESS, which covertly leveraged trusted cloud services like Google Calendar for command-and-control, bypassing traditional defenses. The campaign reflects a broader shift toward stealthy, cloud-integrated malware ecosystems designed to evade detection, complicate threat hunting, and elevate operational risk for organizations worldwide.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox