Warning: this Microsoft Calendar invitation dated 2050 could hide stolen files and worse.


  • Group-IB discovers HollowGraph malware targeting Israeli entities and exfiltrating files via Microsoft Graph API
  • Operators hide instructions in future calendar entries, then attach encrypted stolen data to events
  • At least 12 systems were compromised; overlaps with Lyceum noted but attribution remains unreliable

Cybercriminals have found a way to communicate with malware installed on victims’ devices through compromised Microsoft Calendar apps, experts have warned.

Security researchers at Group-IB have detailed a recently discovered malware called HollowGraph, designed to exfiltrate sensitive files from compromised devices.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top