Zscaler ThreatLabz Discovers TELESHIM Malware Using Telegram for Middle East Government Hacks
Zscaler ThreatLabz researchers identified three previously unknown malware families deployed in attacks against government entities across the Middle East. The primary variant, TELESHIM, masks command-and-control traffic by routing it through Telegram while decrypting its final payload only on the specific target machine.
The campaign utilizes advanced obfuscation techniques and environmental keying to bypass detection, underscoring shifting methods in regional cyber espionage. The discovery follows reports detailing the malware's multi-stage intrusion chain and associated tooling.
From the sources (3 posts)
@thehackersnews🚨 Three previously unreported malware families were deployed in attacks targeting Middle East government entities. TELESHIM hides C2 in Telegram traffic, while the final payload decrypts only on its intended machine. Here's how the multi-
@dailytechonxA new cyber espionage campaign targets Middle East governments using TELESHIM malware, which exploits Telegram for command-and-control communications. The malware employs advanced obfuscation techniques and environmental keying to evade det
@daily_cybersecTELESHIM malware hits Middle East governments and abuses Telegram C2 to hide traffic. Zscaler ThreatLabz found the new backdoor and its tooling. #TELESHIM #Malware #TelegramC2 #Cybersecurity #ThreatLabz #MiddleEast