Tortoiseshell: Iranian Threat Actor Targeting Middle East and Europe
Tortoiseshell, also known as Imperial Kitten and Unyielding Wasp, is an Iranian threat actor active since at least July 2018. It targets…
Tortoiseshell, also known as Imperial Kitten and Unyielding Wasp, is an Iranian threat actor active since at least July 2018. It targets…
Charming Kitten, also known as Eclipsed Wasp, is a cluster of Iranian cyber espionage groups. It includes subgroups like Tortoiseshell and Nimbus…
Operation Economic Outcast is a U.S. Treasury-led economic campaign aimed at severing financial lifelines to the Iranian regime and the IRGC. The…
The U.S. Department of the Treasury has announced new sanctions targeting Iranian cyber actors as part of Operation Economic Outcast, an economic…
The Mabna Institute is a Tehran-based cyber group linked to Iran's Ministry of Intelligence and Security (MOIS). Five of its members were…
The MOIS cyber group is a network of threat actors directed by Iran's Ministry of Intelligence and Security. They conduct cyber espionage…
Cybersecurity researchers have uncovered new components in the Cavern (aka Cav3rn) command-and-control (C2) framework, used by Iranian nation-state hackers in attacks targeting…
APT42 is an Iranian hacking group known for intelligence collection through patient human targeting. It has recently used TAMECAT malware and generative…
TWOSTROKE is a C++ backdoor attributed to Iranian threat actors, particularly Tortoiseshell and Nimbus Manticore. It allows system information collection, DLL loading,…
Nimbus Manticore, also known as GalaxyGato, Mirage Kitten, Screening Serpens, Smoke Sandstorm, Subtle Snail, and UNC1549, is an Iranian state-sponsored hacking group…