Google: Iranian, regional hacking operations that target Israel remain opportunistic but focused
ID: 31d81f1f-f4b1-5f29-b819-b5ae45d8d859
STIX ID: report--31d81f1f-f4b1-5f29-b819-b5ae45d8d859
Feed Name: CyberScoop
Google’s Threat Analysis Group and Mandiant report that multiple regional cyber groups, many with ties to Iran and Hezbollah and some linked to Hamas, adjusted operations around the Israel–Gaza conflict to conduct phishing, impersonation, hack‑and‑leak and destructive malware attacks. Notable activity includes fake emergency and missing‑persons sites used to distribute malware, destructive wipers disguised as official notices to demoralize civilians, and a defacement/utility compromise tied to IRGC‑CEC that affected an Israeli‑manufactured device and a U.S. water utility.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
