Cybersecurity researchers have revealed a new Windows backdoor named NANOREMOTE, which utilizes the Google Drive API for command-and-control (C2) operations. A report from Elastic Security Labs indicates that NANOREMOTE shares code similarities with another implant known as FINALDRAFT (or Squidoor), which uses the Microsoft Graph API for its C2 functionality. FINALDRAFT has been linked to a specific threat actor. This development highlights the evolving tactics employed by cybercriminals in leveraging legitimate platforms for malicious purposes.
Want More Context? 🔎






