Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

TL;DR

Summary:
- The article details the technical operations of "Cavern," a new Command-and-Control (C2) framework used by threat actors to facilitate covert communication.
- It highlights how the malware leverages legitimate infrastructure, specifically DNS tunneling and Google Apps, to bypass security filters and exfiltrate data from compromised systems.

Like summarized versions? Support us on Patreon!