← Threat Actors & APT Groups

DragonForce

Every article that identifies DragonForce as responsible for or connected to reported activity.

RansomwareInfosecurity Magazine·2 months ago

DragonForce Ransomware Exploited Microsoft Teams to Hide in Attack Against Major Company

DragonForce ransomware operators leveraged Microsoft Teams to conceal their command and control communications during an attack on a major organization, exploiting a Teams visitor token to evade detection. By disguising malicious activity as legitimate Teams traffic, the attackers were able to obscure their presence from security defenses monitoring network communications.