National Cyber Warfare Foundation (NCWF)

OilRig Hides C2 Config in Google Drive Image via LSB Steganography


0 user ratings
2026-04-28 06:38:15
milo
Red Team (CNA)

APT-C-49 (OilRig), an Iranian state-sponsored advanced persistent threat group also known as APT34 and Helix Kitten, has deployed a sophisticated new attack campaign that conceals command-and-control configurations inside Google Drive images using LSB steganography. The group, which has been active since at least 2014, primarily targets government, energy, telecommunications, and financial sectors across the Middle […]


The post OilRig Hides C2 Config in Google Drive Image via LSB Steganography appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Mayura Kathir

Source: gbHackers
Source Link: https://gbhackers.com/oilrig-hides-c2-config/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.