logo

Sysdig Threat Bulletin: Iranian Cyber Threats

ID: f55f27b7-f121-5d7f-9cd8-16aa7200b276

STIX ID: report--f55f27b7-f121-5d7f-9cd8-16aa7200b276

Feed Name: Sysdig Blog

Threat Score
85/100

Date Published: 2025-06-23

Date Updated: 2026-05-01

...
...

Sysdig TRT warns of an anticipated increase in cyber operations by Iranian state-sponsored APTs and pro-Iranian hacktivists following U.S. strikes, providing profiles of groups (APT35, APT33, Pioneer Kitten), their TTPs targeting cloud and Linux environments (credential theft, web shells, tunneling, malware and ransomware use), and prioritized detections and mitigations (MFA, patch exposed appliances, web shell/runtime detections, monitor tunneling/proxy activity, verify backups).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.