logo

Threat Actors Get Crafty With Emojis to Escape Detection

ID: de162c1b-f337-5c89-a1fc-7c67eda55e96

STIX ID: report--de162c1b-f337-5c89-a1fc-7c67eda55e96

Feed Name: Dark Reading

Threat Score
65/100

Date Published: 2026-04-08

Date Updated: 2026-04-22

Author: Jai Vijayan

...
...

The report outlines a growing trend where threat actors leverage emojis across social platforms and underground forums to obfuscate communications, bypass keyword filters, and coordinate malicious actions. It highlights use cases such as emoji-based C2, embedding payloads within emoji content, and symbolic shorthand in fraud and carding markets, and cites a notable Disgomoji campaign attributed to a Pakistan-linked APT that maps emojis to operational commands.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.