FireEye Report: Iranian Hacker Group Becoming More Sophisticated
ID: 095b804a-3215-51ef-ac8c-6713b1e33a5a
STIX ID: report--095b804a-3215-51ef-ac8c-6713b1e33a5a
Feed Name: Security Ledger
FireEye's 'Operation Saffron Rose' links an Iranian group known as Ajax/Ajax Security Team to advanced cyber operations: the group has evolved from website defacements to malware-driven espionage, deploying a custom Trojan named 'Stealer' (bundled with anti-censorship tools and VPNs) and phishing sites that spoof services like Outlook Web Access and VPN portals to harvest credentials, screenshots, and browser histories from Iranian dissidents and Western targets including the U.S. defense industrial base.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
