Security News

Uncle Sam probes cyberattack on Pennsylvania water system by suspected Iranian crew
2023-11-29 21:16

CISA is investigating a cyberattack against a Pennsylvania water authority by suspected Iranian miscreants. The water authority immediately took the system offline, switching to manual operations after the intrusion, which didn't affect the region's drinking water or water supply.

Iranian Hackers Exploit PLCs in Attack on Water Authority in U.S.
2023-11-29 13:02

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) revealed that it's responding to a cyber attack that involved the active exploitation of Unitronics programmable logic controllers...

200+ Malicious Android Apps Targeting Iranian Banks: Experts Warn
2023-11-29 10:13

An Android malware campaign targeting Iranian banks has expanded its capabilities and incorporated additional evasion tactics to fly under the radar. That's according to a new report from...

Iranian hackers launch malware attacks on Israel’s tech sector
2023-11-12 15:30

The recent attacks were discovered by researchers at cybersecurity company CrowdStrike, who made the attribution based on infrastructure overlaps with past campaigns, observed tactics, techniques, and procedures, the use of the IMAPLoader malware, phishing lures. In a report published earlier this week, researchers say that Imperial Kitten launched phishing attacks in October using a 'job recruitment' theme in emails carrying a malicious Microsoft Excel attachment.

MuddyC2Go: New C2 Framework Iranian Hackers Using Against Israel
2023-11-09 10:50

Iranian nation-state actors have been observed using a previously undocumented command-and-control framework called MuddyC2Go as part of attacks targeting Israel. The tool has been attributed to MuddyWater, an Iranian state-sponsored hacking crew that's affiliated to the country's Ministry of Intelligence and Security.

Iranian Hackers Launch Destructive Cyber Attacks on Israeli Tech and Education Sectors
2023-11-06 10:32

Israeli higher education and tech sectors have been targeted as part of a series of destructive cyber attacks that commenced in January 2023 with an aim to deploy previously undocumented wiper malware. "The attacks are characterized by attempts to steal sensitive data, such as personally identifiable information and intellectual property," Palo Alto Networks Unit 42 said in a new report shared with The Hacker News.

Iranian Cyber Espionage Group Targets Financial and Government Sectors in Middle East
2023-11-01 11:22

A threat actor affiliated with Iran's Ministry of Intelligence and Security (MOIS) has been observed waging a sophisticated cyber espionage campaign targeting financial, government, military, and...

Iranian Group Tortoiseshell Launches New Wave of IMAPLoader Malware Attacks
2023-10-26 07:24

The Iranian threat actor known as Tortoiseshell has been attributed to a new wave of watering hole attacks that are designed to deploy a malware dubbed IMAPLoader. "IMAPLoader is a .NET malware...

Iranian hackers lurked in Middle Eastern govt network for 8 months
2023-10-19 16:40

The Iranian hacking group tracked as MuddyWater breached at least twelve computers belonging to a Middle Eastern government network and maintained access for eight months between February and September 2023. The attacks observed by Symantec began on February 1, 2023, and utilize a wide assortment of malware, tools, and malicious activity that lasted for 8 months.

Iranian APT Group OilRig Using New Menorah Malware for Covert Operations
2023-09-30 09:21

Sophisticated cyber actors backed by Iran known as OilRig have been linked to a spear-phishing campaign that infects victims with a new strain of malware called Menorah. "The malware was designed...