U.S. prosecutors accuse members of Iran-based Mabna Institute of hacking hundreds of universities, companies, and government institutions and stealing more than 31 terabytes of...
New findings reveal how Tehran-linked hackers disguise state espionage as ransomware attacks
Recent disclosures by cybersecurity researchers have exposed a sophisticated Iranian cyber-espionage campaign that...
U.S. Justice Department seizes domains linked to Tehran’s intelligence apparatus, exposing a broader campaign of intimidation, propaganda, and transnational repression
The United States has taken...
An In-Depth Investigation by Treadstone 71
A comprehensive new forensic investigation by the intelligence firm Treadstone 71 has lifted the veil on the digital infrastructure...
Newly revealed geolocation data exposes coordinated regime-linked influence operations disguised as Scottish activism
A British media outlet has revealed that several prominent X accounts posing...
Amazon’s threat intelligence findings reveal how Iran-linked hackers merge digital espionage with real-world attacks, signaling a new era of state-backed hybrid warfare.
A New Battlefield...
Security researchers uncover “UNK_SmudgedSerpent,” a sophisticated phishing operation mirroring tactics used by Tehran’s known cyber units
A newly identified cyber espionage operation linked to the...
Group-IB uncovers a sophisticated Iranian state-backed hacking campaign deploying advanced malware to infiltrate international and governmental networks across multiple regions.
A new investigation by cybersecurity...
Group-IB research reveals Tehran-linked MuddyWater adopting old tactics with modern tools, targeting global systems.
A new report has revealed that an Iranian state-backed hacking group,...
Washington targets IRGC-linked “Shahid Shushtari” network accused of meddling in U.S. elections and operating under front companies
The U.S. State Department's Diplomatic Security Service has...
Regime-backed spyware, phishing campaigns, and advanced surveillance networks target activists at home and abroad
The Iranian regime’s digital repression has grown into a transnational threat,...
A newly identified botnet comprising over 30,000 compromised security cameras and network video recorders is being actively used to launch distributed denial-of-service (DDoS) attacks...
In a recent cybersecurity report, researchers uncovered a new espionage campaign in which Iranian hackers impersonated recruiters on LinkedIn to target the aerospace industry....
A recent report by Microsoft reveals that the Iranian regime, alongside other states like Russia and China, is increasingly leveraging criminal networks to conduct...