Back to Feed
Nation-stateMay 22, 2026

China's Webworm Uses Discord, Microsoft Graphs to Hack EU Govts.

Webworm APT targets EU governments using Discord and Microsoft Graph for C2.

Summary

The Chinese APT group Webworm has been targeting EU governments, leveraging Discord and Microsoft Graph for command and control. The group also uses SOCKS proxies like SoftEther VPN to obscure their activity.

Entities

Webworm (threat_actor)Discord (product)Microsoft Graph (product)SoftEther VPN (product)