NANOREMOTE Malware Uses Google Drive API for Hidden Control on Windows Systems Emmie Evans December 11, 2025

NANOREMOTE Malware Uses Google Drive API for Hidden Control on Windows Systems

Cybersecurity researchers have disclosed details of a new fully-featured Windows backdoor called NANOREMOTE that uses the Google Drive API for command-and-control (C2) purposes.
According to a report from Elastic Security Labs, the malware shares code similarities with another implant codenamed FINALDRAFT (aka Squidoor) that employs Microsoft Graph API for C2. FINALDRAFT is attributed to a

Write a comment
Your email address will not be published. Required fields are marked *
Scroll to Top