A phishing campaign by state-sponsored Iranian hackers has targeted over 100 government entities and other organizations with version 4 of the Phoenix malware backdoor.
The United States Department of Justice (DOJ) has indicted three Iranian hackers for a campaign of attacks dating back to 2020, including critical infrastructure companies and government agencies.
Two Iranian hackers have been indicted for election interference, charged with stealing information from state voter rolls to personally target thousands of individual voters as well as members of Congress and campaign staffers.
Iranian hackers installed crypto miner on federal agency’s network after exploiting unpatched Log4Shell vulnerability on the VMWare Horizon server to gain access. The threat actors moved laterally to the domain controller, compromised credentials and implanted reverse proxies on several hosts to maintain persistence.
A group calling itself "Cyber Av3ngers," believed to be supported by Iran's government, has declared war against Western organizations making use of Israeli technology. One of the opening salvos in this campaign appears to be against US water utilities, with at least one confirmed strike by the Iranian hackers in Pennsylvania.
Iranian hackers impersonated Munich Security Conference and Think 20 Summit organizers to target high ranking diplomats and government officials for intelligence collection.
Iranian Hackers Use Password Spray Attacks to Compromise Defense Organizations, Pharmaceutical Firms
A recent campaign by Iranian hackers has been very successful in using password spray attacks to breach high-value targets, with a particular focus on defense organizations and satellites as well as pharmaceutical company research.
A new FBI security alert indicates that a group of Iranian hackers are on a spree of compromising the BIG-IP products manufactured by F5 Networks.
The Iran-backed campaign targets prominent Israelis and uses spear phishing to gain access to emails, leveraging the account takeover to hijack existing conversations.
A cyber attack shut down a power plant in the United Kingdom, with industry experts attributing the hack to Iranian hackers also linked to attacks on US critical infrastructure.










