Tag: iran
-
US DOJ Charges 17 Iranians in Decade-Long Hacking Campaign
Justice Department Says Iranian Firm Sold Stolen Research Inside Iran. A 14-count superseding indictment unsealed Tuesday charges 17 members of the Mabna Institute with stealing more than 31 terabytes of research and intellectual property from hundreds of universities, companies and government agencies on behalf of Iran’s Islamic Revolutionary Guard Corps. First seen on govinfosecurity.com Jump…
-
A Baffling Case of Inept Iranian Strikes on Water Utilities
Water Hacks Raise Questions About Attackers’ True Intent. More than three weeks after a wave of likely Iranian cyberattacks struck dozens of rural and small town water and wastewater utilities in at least 12 states, experts are still trying to figure out what exactly the attackers thought they were doing. First seen on govinfosecurity.com Jump…
-
US charges Iranian hackers over $3.4 billion intellectual property theft
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/us-charges-iranian-hackers-over-34-billion-intellectual-property-theft/
-
US charges Iranians for sprawling hacking campaign on government agencies, universities
The Justice Department accused 17 alleged hackers with ties to the Iranian government of breaching email accounts at U.S. government agencies and stealing intellectual property from dozens of universities. First seen on therecord.media Jump to article: therecord.media/iran-cyberattacks-us-doj
-
What the Iran cyberattacks can teach boards about cyber warfare
First seen on scworld.com Jump to article: www.scworld.com/perspective/what-the-iran-cyberattacks-can-teach-boards-about-cyber-warfare
-
What the Iran cyberattacks can teach boards about cyber warfare
First seen on scworld.com Jump to article: www.scworld.com/perspective/what-the-iran-cyberattacks-can-teach-boards-about-cyber-warfare
-
DOJ charges 17 people in Iran-backed hacking campaign against US
Officials allege an IRGC-linked organization was behind a coordinated effort to steal research from American universities, companies and government agencies. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/doj-charges-17-iran-hacking-campaign-us-university/828212/
-
Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute
The superseding indictment adds defendants and allegations against the Iranian firm accused of a massive cybertheft campaign against foreign universities and others. First seen on cyberscoop.com Jump to article: cyberscoop.com/mabna-institute-iranian-hackers-indictment/
-
Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in Israel.Russian cybersecurity company Kaspersky said its ongoing monitoring of the threat activity cluster since December 2025 has led to the discovery of previously unreported components that expand the First seen…
-
Iran-Linked Hackers Target More US Water Infrastructure in New Jersey and Alabama
Iran-linked hackers targeted Water Infrastructure in New Jersey and Alabama, bringing confirmed attacks to at least 12 states, with limited disruption. The wave of cyberattacks targeting US water infrastructure has reached New Jersey and Alabama, bringing the confirmed count to at least 12 states since late July. The attacks are linked to Iranian hackers targeting…
-
Water Water Everywhere Possible Iranian Attack to Water Infrastructure
In recent days, a multistate cyber campaign has reached the programmable controllers that run American water and wastewater systems, depriving operators of monitoring and control and, in some cases, contributing to loss of pressure and flooding. Beginning July 27, the FBI and Environmental Protection Agency said, utilities in at least seven states reported intrusions into..…
-
Multistate Water System Attacks Widen, Iran Suspected
Attacks targeting water systems just keep flowing across a dozen states, against ill-secured, Internet-exposed PLCs. First seen on darkreading.com Jump to article: www.darkreading.com/ics-ot-security/multistate-water-system-attacks-widen-iran-suspected
-
US Sanctions Iranian $6bn Crypto “Exchange” Shelbit
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/us-sanctions-iranian-6bn-crypto/
-
Cyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents
Water utilities in at least 12 states have reported cyberattacks on their operational technology, as the scope of a campaign allegedly linked to Iranian hackers continues to grow. First seen on therecord.media Jump to article: therecord.media/iran-cyberattacks-water-treatment
-
US water facilities targeted by ‘malicious cyber actors’ who’s to blame?
Despite Trump’s efforts to blame Tim Walz and Minnesota, officials suspect Iran behind attacks on US infrastructureLate last week, federal authorities issued a stern warning saying “malicious cyber actors” were targeting water and wastewater facilities in at least seven states across the US. Minnesota appeared to be the hardest hit with 30 of its water…
-
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
Iran-nexus hackers are suspected in a broad campaign targeting drinking and wastewater sites in at least seven U.S. states. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ot-security-coalition-congress-cisa-reforms-water/826791/
-
Weekly Cybersecurity Newsletter Top 50 Biggest Cybersecurity Stories of the Week Hugging Face, Iranian ICS Attacks, EY, Hyundai, AI Agent Breaches
Welcome to this week’s edition of the GBHackers cybersecurity newsletter, your weekly cybersecurity bulletin covering the 50 most important stories from July 27August 1, 2026. The week’s throughline was AI on both sides of the fight: an autonomous agent escaped its sandbox and breached Hugging Face, a DeepSeek agent drove autonomous attacks, and Google […]…
-
Saturday Security: FBI EPA Warn Attackers Targeting US Water Systems
This week’s Saturday Security Story is a sobering reminder that America’s water infrastructure remains a prime cyber target. The FBI and EPA are jointly warning that cyber attacks have now been reported at municipal water systems across at least seven states. Iran-linked hackers are the leading suspects in attacks affecting more than 30 Minnesota utilities……
-
7 States’ Water Systems Hit by Cyberattacks Likely Tied to Iran
Plus: The FBI eyes AI-powered tech to detect future crimes, Russia charges Telegram’s founder, xAI sues to stop a state’s “nudification” ban, and the Democrats learn a lesson about getting scammed. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-7-states-water-systems-hit-by-cyberattacks-likely-tied-to-iran/
-
US CISA Urged to Order OT Security Improvements
Minnesota Water System Hacks Should Be Call to Action, Says OTCC. The U.S. Cybersecurity and Infrastructure Security Agency should order federal agencies to secure operational technology to head off hacks like those blamed on Iran, which targeted water utilities in Minnesota this week, a trade association representing OT manufacturers and security companies said. First seen…
-
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world
The president went against his intelligence agencies’ conclusions about Iran being the likely suspect in the campaign. First seen on cyberscoop.com Jump to article: cyberscoop.com/trump-blames-minnesota-water-cyberattacks-iran/
-
Suspected Iranian Campaign Disrupts Minnesota Water Systems
U.S. and Minnesota investigators believe Iranian hackers were likely responsible for a cyberattack on roughly 36 municipal water systems in Minnesota, The New York Times reported Thursday. Officials cautioned that the attribution remains a preliminary assessment and could change as investigators gather more evidence. The attacks occurred Monday and were focused on technology that municipalities..…
-
A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran
A memo obtained by WIRED, issued by the water utilities information sharing group WaterISAC, links dozens of cyberattacks against Minnesota water utilities to Tehran. First seen on wired.com Jump to article: www.wired.com/story/a-leaked-memo-ties-cyberattacks-on-minnesota-water-utilities-to-iran/
-
Minnesota Water Utility Attacks Expose Sector’s Cyber-Risks
A likely Iran-backed actor targeted more than 30 community water systems in Minnesota in a sobering reminder of rising threats to US critical infrastructure. First seen on darkreading.com Jump to article: www.darkreading.com/ics-ot-security/minnesota-water-utility-attacks-expose-sector-cyber-risks
-
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia.The intrusions involve the use of a previously undocumented Windows backdoor called NightLedger and two custom WebSocket tunnelers,…
-
Iranian Hackers Exploit Rockwell, Schneider and Siemens PLCs Across U.S. Critical Infrastructure
Tags: advisory, automation, cisa, cyber, cybersecurity, exploit, hacker, infrastructure, Internet, iran, technology, threatIranian-affiliated advanced persistent threat (APT) actors are actively exploiting internet-connected programmable logic controllers (PLCs) from major industrial vendors, including Rockwell Automation, Schneider Electric, and Siemens, targeting U.S. critical infrastructure sectors. A joint cybersecurity advisory (AA26-097A) released by the FBI, CISA, NSA, DOE, EPA, Treasury, and U.S. Cyber Command highlights sustained exploitation activity against operational technology…
-
Security Affairs newsletter Round 587 by Pierluigi Paganini INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. Iran-Linked Actors Breach Are Targeting US Water and Energy Control Systems Australian energy provider Origin Energy…
-
US warns of Iran-linked attacks on critical infrastructure
First seen on scworld.com Jump to article: www.scworld.com/news/us-warns-of-iran-linked-attacks-on-critical-infrastructure
-
Iran-Linked Actors Breach Are Targeting US Water and Energy Control Systems
US agencies warn Iran-linked actors are targeting internet-exposed water and energy control systems, risking disruption. Federal agencies updated their cybersecurity advisory this week: Iran-linked actors are inside American water and energy control systems, and they’re not just looking around. They’re changing things. The updated advisory from CISA, the FBI, NSA, and the Department of Energy…
-
Hackers Exploit Industrial PLCs and Manipulate HMI Displays to Hide Attacks
Six federal agencies have updated a joint advisory warning that Iranian-affiliated advanced persistent threat (APT) actors are actively exploiting internet-exposed programmable logic controllers (PLCs) across U.S. critical infrastructure, manipulating human-machine interface (HMI) displays so operators cannot visually detect the intrusion. The advisory, first issued in April 2026 and revised on July 22, 2026, is cosigned…

