Sysdig Threat Bulletin: Iranian Cyber Threats
ID: f55f27b7-f121-5d7f-9cd8-16aa7200b276
STIX ID: report--f55f27b7-f121-5d7f-9cd8-16aa7200b276
Feed Name: Sysdig Blog
Threat Score
Sysdig TRT warns of an anticipated increase in cyber operations by Iranian state-sponsored APTs and pro-Iranian hacktivists following U.S. strikes, providing profiles of groups (APT35, APT33, Pioneer Kitten), their TTPs targeting cloud and Linux environments (credential theft, web shells, tunneling, malware and ransomware use), and prioritized detections and mitigations (MFA, patch exposed appliances, web shell/runtime detections, monitor tunneling/proxy activity, verify backups).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
