Tag: iranian hackers
17 articles

Iranian Hackers Deploy Cross-Platform Malware via Coding Tests
Iranian hackers are using clever tactics to deploy cross-platform malware, disguising it as coding challenges on LinkedIn and other job search platforms to trick developers into installing the threat. This malware, tracked as NodeRabbit and PollCat, can infect Windows, Linux, and macOS workstations, allowing hackers to gain remote access.

Treasury Targets Iranian Hackers Tied to US Critical Infrastructure Breaches
The Treasury Department has taken a bold step, calling it an "economic D-Day," by imposing sanctions on five Iranian hackers linked to a string of brazen cyberattacks on US critical infrastructure, government offices, and digital assets. This move is part of a broader effort to isolate Iran and cut off its revenue streams.

US Treasury Targets Iranian Hackers in Cyber Sanctions Push
The US Treasury Department has launched a bold crackdown on Iranian hackers, designating four individuals for sanctions for their alleged roles in targeting critical US infrastructure and stealing sensitive information. This economic onslaught aims to disrupt Iran's global financial connections and hold its malicious cyber actors accountable.

Iranian Hackers Expose UK Power Plant Vulnerability
Can a UK power plant vulnerability leave millions in the dark? Iranian hackers recently caused a four-day blackout at an unnamed UK facility, raising concerns about the potential for a larger, more critical attack.

US Recharges Indictment Against Iranian Hackers Tied to Mabna Institute
The US has ramped up its pursuit of justice against Iranian hackers, expanding an indictment to charge 17 individuals affiliated with the notorious Mabna Institute, which allegedly compromised over 100,000 professors' email accounts worldwide. This move marks a significant escalation in the case, with eight new defendants added to the original 2018 indictment.

Iranian Hackers Evolve Cavern C2 with Google Apps Script Evasion
Meet the sneaky new tactic Iranian hackers are using to evade detection: blending malicious traffic with everyday services like Google Apps Script. By leveraging DNS A-record responses, they're able to switch between direct HTTPS channels and Google Apps Script relays, making it harder to track their moves.

Iranian Hackers Deploy NightLedger Backdoor in Global Espionage Campaign
Meet NightLedger, a sneaky new Windows backdoor that's part of a sophisticated espionage toolkit used by Iranian hackers to secretly infiltrate and gather intel from targets worldwide. This powerful tool enables hackers to execute commands, capture screenshots, and operate undetected, putting organizations in the Middle East, Africa, and South Asia on high alert.

CISA Warns of Iranian Hackers Targeting Industrial Control Systems
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about Iranian hackers targeting Industrial Control Systems, specifically programmable logic controllers (PLCs) used in critical infrastructure organizations. This alert comes after the FBI observed malicious activity, including data manipulation and operational disruption, at a US-based facility.

Iranian Hackers Exploit Credentials in Cal Water Breach
Cal Water swiftly sprang into action when an Iranian-linked group, Handala, claimed to have hacked their system, activating their cybersecurity response plan and launching a thorough investigation. Thankfully, experts from Mandiant found that the breach was limited to third-party accounts, containing no evidence of a larger-scale attack.

Iranian Hackers Deploy AI-Backed MiniFast Backdoor via Phishing and SEO Poisoning
Iranian hackers have escalated their cyber attacks, leveraging AI-powered tools to craft malware and targeting key sectors like aviation, defense, and telecommunications across the US, Europe, and the Middle East. Their sophisticated tactics, including phishing and SEO poisoning, have allowed them to spy on organizations with alarming speed and efficiency.

Stryker Cyberattack Impacts Q1 Financials Amid Insurance Gap
A March cyberattack has dealt a double blow to global medtech giant Stryker, impacting its Q1 financials and highlighting a glaring vulnerability: the company lacks cyber insurance to cover the costs. Iranian hackers have publicly claimed responsibility for the incident, adding a complex layer to Stryker's already troublesome situation.

Iranian Hackers Target Thousands of US Industrial Devices
Thousands of US industrial devices, including programmable logic controllers made by Rockwell Automation, have been targeted by Iranian-linked hackers, raising concerns about the vulnerability of critical infrastructure networks. This cyber campaign highlights the alarming risk to the networks we rely on every day.

Iranian Hackers Infiltrate US Critical Infrastructure via OT Weaknesses
US critical infrastructure providers are reeling from a wake-up call after Iranian-backed hackers exploited weaknesses in internet-exposed operational technology assets, causing disruption and financial loss. The alarming breach, revealed by the Cybersecurity and Infrastructure Security Agency, highlights the high stakes of vulnerable systems.

Iranian Hackers Launch Sustained Password-Spraying Attack on Israeli Microsoft 365 Users
Iranian hackers have launched a relentless password-spraying attack on hundreds of Israeli Microsoft 365 users, sparking urgent concerns about the security of cloud inboxes in the midst of a regional conflict. This ongoing campaign, attributed to an Iran-linked threat actor, has already targeted over 300 organizations in Israel and the UAE.

Iranian Hackers Launch Alarming Cyberattack on FBI Director's Email
A recent cyberattack on the personal email account of FBI Director Kash Patel has sent shockwaves through the cybersecurity community, raising alarming questions about the vulnerability of even the most secure systems. Iranian hackers, known as the Handala Hack Team, claim responsibility for the breach, which leaked sensitive photos and documents online.

FBI Strikes Down Iranian Hackers' Site
The FBI has struck down a website linked to Iranian hackers who allegedly targeted Stryker, a top military vehicle manufacturer, in a bold move to combat cyber threats. This development shines a light on the growing concerns around nation-state actors and their capabilities in the digital world.

Iranian Hackers Launch Devastating Wiper Attack on Stryker Medtech Firm
A devastating cyberattack has struck Stryker, a leading global medical technology company, with a hacktivist group linked to Iran's intelligence agencies wiping critical data and causing significant disruptions to operations. This alarming breach raises urgent concerns about the vulnerability of our healthcare infrastructure to increasingly sophisticated cyber threats.