Product
Microsoft Graph API
- First Reported
- Aug 13, 2026
- Latest Reported
- Aug 13, 2026
Reported Context (1)
- Once running, Antino uses the Microsoft Graph API as its C&C channel, hiding its traffic inside legitimate Microsoft cloud services. It is a shared tool used across the group's campaigns, recovered from infected hosts Jewelbug APT Ran Government Espionage and Crypto Fraud from Shared Infrastructure
Malware (3)
Threat Actors (2)
MITRE ATT&CK (15)
Vendors (3)
Products (6)
Tools (2)
Industries (5)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.