Nation-stateMay 22, 2026
China's Webworm Uses Discord, Microsoft Graphs to Hack EU Govts.
Webworm APT targets EU governments using Discord and Microsoft Graph for C2.
Summary
The Chinese APT group Webworm has been targeting EU governments, leveraging Discord and Microsoft Graph for command and control. The group also uses SOCKS proxies like SoftEther VPN to obscure their activity.
Entities
Webworm (threat_actor)Discord (product)Microsoft Graph (product)SoftEther VPN (product)