Iranian flag waving with cityscape on background in Tehran, Iran. (Sir Francis Canker Photography/Getty Images) Microsoft: Iranian espionage campaign targeted satellite and defense sectors Tehran's latest hacking activity involves easy-to-detect techniques to gain access and then pivoting to stealthier methods. Sep 14, 2023 By AJ Vicens
(Getty Images) After U.S. kills Iranian general, analysts warn of Tehran’s ability to retaliate in cyberspace Iran could leverage its considerable hacking capabilities, which it has built up in recent years, to disrupt U.S. organizations. Jan 3, 2020 By Sean Lyngaas Shannon Vavra
(Getty Images) APT33 has shifted targeting to industrial control systems software, Microsoft says Given that the group has been linked with data-wiping hacks in the past, the new activity has analysts’ full attention. Nov 22, 2019 By Sean Lyngaas
The Thanos ransomware used in the attacks has gained traction on underground forums (Getty Images). APT33 has used botnets to infect targets in the U.S. and Middle East, researchers say The Iranian hackers also set up their own virtual private network with “exit nodes" that change frequently, according to Trend Micro. Nov 14, 2019 By Sean Lyngaas
(Getty) 10,000 Microsoft customers targeted by nation-state attacks in the last year Microsoft has tied the attacks — some of which have been successful — with a group linked with Iran (APT 33), with a group from North Korea… Jul 17, 2019 By Shannon Vavra
(DoD News / Flickr) Why Cyber Command’s latest warning is a win for the government’s information sharing efforts New details uncovered by CyberScoop show how much coordination went into Cyber Command's public VirusTotal upload of an Iran-linked tool. Jul 10, 2019 By Shannon Vavra
APT33 changed their code after a report in March. (Getty) Spies targeting Saudi Arabia switched tactics after Symantec exposed them, report says APT33, also known as Elfin and Refined Kitten, "appears undeterred following previous exposés of their activity," Recorded Future said. Jun 26, 2019 By Jeff Stone
The Thanos ransomware used in the attacks has gained traction on underground forums (Getty Images). Elfin espionage group is focused on Saudi, U.S. organizations, Symantec says The Elfin group, a significant component of Tehran's hacking arsenal, uses a trojan to wipe victim hard drives. Mar 27, 2019 By Sean Lyngaas
(Christiaan Colen / Flickr) Hacking group turns Microsoft Office flaw into an exploit in less than a week APT34 has been especially active since mid-2016, based on publicly available research authored by analysts with FireEye and Kaspersky Lab. Dec 8, 2017 By Chris Bing
Newly uncovered Iranian hacking group targeted energy, aerospace firms to steal secrets Wednesday's report by FireEye offers the first documented activity of the group, researchers say. Sep 20, 2017 By Chris Bing