logo

Iranian APT Groups Intensify Cyberattacks on Critical Infrastructure Amid Rising Geopolitical Tensions

ID: 7ca5d61d-09de-5efc-a1b8-49bd9255baae

STIX ID: report--7ca5d61d-09de-5efc-a1b8-49bd9255baae

Feed Name: GBHackers

Threat Score
85/100

Date Published: 2026-03-04

Date Updated: 2026-04-22

Author: Mayura Kathir

...
...

During recent Middle Eastern kinetic escalation, Iran-linked APTs (MuddyWater/APT34, OilRig, APT33, UNC1549) increased cyber operations against critical infrastructure—particularly energy, transportation, aerospace, defense, and telecom—producing a notable spike in alerts. The report highlights common TTPs (spear-phishing, credential theft, web shells, living-off-the-land binaries, password spraying, scanning), elevated regional vulnerability severity and EPSS exposure, and recommends continuous OT monitoring, updated threat feeds, prompt patching, credential hygiene, and incident response preparation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.