ESET security researchers have discovered a new version of the ComRAT backdoor controlled using the Gmail web interface. The state-backed Russian hacker group Turla is known for using unorthodox methods of achieving their cyber-espionage goals. The latest version uses Gmail’s web UI as one of the two command and control channels for the updated malware, the other being a legacy HTTP comm channel. Turla has been known to use the same tools in attacks going back to at least 2007, but this latest version is still in use at the beginning of 2020, showing that the group is still very active.
Source: https://www.bleepingcomputer.com/news/security/russian-cyberspies-use-gmail-to-control-updated-comrat-malware/