Threat actors have been increasingly weaponizingMicrosoft Graph APIfor malicious purposeswith the aim of evadingdetection. Thisis doneto "facilitate communications with command-and-control (C&C) infrastructure hosted on Microsoft cloud services," the Symantec Threat Hunter Team, part of Broadcom,saidin a report shared with The Hacker News.