Microsoft Teams Calls Used to Spread Matanbuchus Malware
Cybercriminals are exploiting Microsoft Teams calls malware tactics to distribute the Matanbuchus malware loader, using voice calls that mimic IT helpdesk support. Attackers initiate contact through Teams, posing as legitimate internal staff. Once the user engages, they share malicious files or links designed to deploy the malware onto the victim’s system.
Security researchers have linked these incidents to a broader social engineering campaign. The attackers rely on the trust users place in internal communications, making the voice call approach highly effective. Matanbuchus, a known malware loader, can grant attackers remote access, opening the door for further compromise.
Microsoft Teams calls malware attacks like this highlight a growing trend of threat actors turning to collaboration tools to bypass traditional email-based defenses. Organizations must educate employees on verifying internal contacts and reporting suspicious activity through official channels.
For a detailed breakdown of the attack method and indicators of compromise, read the full article at:
https://www.bleepingcomputer.com/news/security/microsoft-teams-voice-calls-abused-to-push-matanbuchus-malware/
