TELESHIM Uses Telegram for Command and Control in Attacks on Middle East Governments
The threat actor group TELESHIM has been abusing the Telegram messaging platform to facilitate command-and-control (C2) operations in cyberattacks targeting government entities in the Middle East. By leveraging Telegram's infrastructure, the group can hide malicious traffic among legitimate communications, making detection more difficult. This tactic underscores the growing trend of attackers exploiting popular communication tools for covert operations, highlighting the need for improved threat monitoring and defense strategies.