This group has a history of similar activities, having targeted US elections in 2020 through operations designed to intimidate voters and create chaos around…
Iranian
-
-
In addition, the blog noted, OilRig has been using a remote monitoring and management (RMM) tool known as ngrok in their operations. Sensitive data…
-
HackingNewsSecurity
Iranian threat actors targeting businesses and governments, CISA, Microsoft warn
Defenders should watch for an archive file named Network Security.zip, which includes an .exe with the Tickler malware, and for a Trojan dropper named…
-
HackingNewsSecurity
Iranian cyberespionage group deploys new BlackSmith malware in sophisticated spear-phishing campaign
A known Iranian APT group has revamped its malware arsenal in a campaign against a prominent Jewish religious figure, security researchers have found. The…
-
During this time, among many other efforts, Mandiant reported that the news site EvenPolitics, a Tehran-controlled disinformation site, had published articles covering the 2022…
-
Broswer SecurityNewsSecurity
Iranian APT group launches destructive attacks against Israeli organizations
To obtain administrative credentials the attackers deployed Mimikatz, an open-source tool for extracting local credentials. They dumped the Windows Security Accounts Manager (SAM) and…