TI Mindmap HUB
Threat Intelligence Report

New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery

๐Ÿ“… July 21, 2026 ๐Ÿ“ฐ securelist.com ๐Ÿ” 0 CVE(s) referenced

Project CAV3RNโ€™s latest module enables stealthy command-and-control by exploiting Outlook calendar events via Microsoft Graph and uses DNS AAAA records for resilient configuration recovery, likely linking the operation to OilRig (APT34).

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle