Advertisement
Iranian Hackers Target Kash Patel: US Offers $10M Bounty
The FBI confirms Iranian state-sponsored hackers compromised Kash Patel’s personal email, leading the U.S. to offer a $10M reward for information.
Iranian-Linked Handala Group Breaches Kash Patel's Personal Email
FBI confirms Iranian-linked Handala hackers breached Director nominee Kash Patel's personal email, leaking documents and highlighting spear-phishing risks.
Weaponized Surveillance: How Israel Hijacked Iran's Camera Network
Analysis of the compromise of Iran's surveillance infrastructure by Israel to facilitate kinetic targeting and high-value intelligence operations.
TeamPCP Targets Kubernetes Clusters with Iran-Specific Wiper Malware
TeamPCP is targeting misconfigured Kubernetes clusters to deploy a data-wiping script that specifically triggers on Iranian system configurations and locales.
CanisterWorm Wiper Attacks Target Iran via Cloud Misconfigurations
Analysis of the CanisterWorm wiper targeting Iranian systems through cloud service vulnerabilities, shifting from financial extortion to destructive operations.
Iranian Handala Group Leverages Telegram for Malware Delivery and C2
FBI alerts organizations to Handala, an Iranian MOIS-linked group using Telegram APIs for data exfiltration, ransomware, and wiper attacks across sectors.
Advertisement
Iranian Cyber Infrastructure Hardening Ahead of Operation Epic Fury
Analysis of Iran's six-month buildup of US-based shell companies and resilient cyber infrastructure to survive kinetic strikes and maintain hacking operations.
EU Sanctions China and Iran Entities Over APT31 Cyber Operations
The European Union imposes sanctions on Chinese and Iranian entities linked to APT31 and state-sponsored cyber espionage targeting democratic institutions.
Poland’s Nuclear Center Targeted in Suspected Iranian Cyberattack
Polish officials investigate a cyberattack at the NCBJ nuclear center. Initial evidence points to Iran, but investigators warn of potential false flag tactics.
Iranian MOIS Collusion with Cybercriminals: Evolving Hybrid Threat
Iranian state-sponsored APTs, linked to MOIS, are now directly collaborating with cybercriminal organizations, escalating hybrid cyber operations. Defenders must adapt.
Chinese Nexus Actors Pivot to Qatar: Geopolitical Espionage
Analysis of Chinese Nexus actors' shift to targeting Qatari entities amid Iranian conflict. Understand their adaptable TTPs and fortify defenses.
Stryker Wiper Attack: Iran-Backed Group Targets Medtech Operations
Analysis of a destructive wiper attack claimed by an Iran-backed hacktivist group against medical technology firm Stryker, disrupting global operations.
Iran Integrates Cyber-Kinetic Operations into Military Doctrine
Iran is leveraging cyber operations, including IP camera exploitation, to support kinetic military strikes and physical asset targeting globally.
Nation-State Cyber Operation: Israel's Compromise of Iranian Traffic Cameras
Analysis of the reported Israeli cyber operation targeting Iranian traffic cameras, detailing implications for critical infrastructure security and cyber-physical…
Iran-US/Israel Cyber Conflict: Geopolitical & Cyber Threat Analysis
Analysis of the ongoing US-Israeli strikes on Iran, covering cyber, physical, and geopolitical dimensions.
Geopolitical Strikes on AWS Data Centers: Mitigating Physical Disaster Risk
Iranian drone strikes damaged AWS data centers in UAE and Bahrain, highlighting critical vulnerabilities to physical disasters and the urgent need for geo-redundancy.
Geopolitical Cyber Threat: Iran Conflict Implications for Defenders
An analysis of the ongoing cyber, physical, and geopolitical components of the US-Israeli strikes on Iran and its implications for cybersecurity professionals.
Iranian Cyberattack Risks Escalate Amid Middle-East Conflict
The NCSC warns UK organizations of increased Iranian state-sponsored cyber threats targeting critical infrastructure and utilizing advanced phishing tactics.
Analysis of Iran's 2026 Total Internet Shutdown and NIN Architecture
Technical review of Iran's National Information Network and the shift toward total communications blackouts as a tool for state-level control.
MuddyWater Deploys BugSleep Backdoor in Targeted Regional Campaigns
Iranian state actor MuddyWater introduces the custom BugSleep backdoor, targeting Middle Eastern and African entities using spear-phishing and RMM abuse.