Hijacked Accounts and AI Code: The Deadly New Playbook of Iranian APT ‘Boggy Serpens’
ID: 13674c13-6018-500b-869b-f3ff0ac9b08d
STIX ID: report--13674c13-6018-500b-869b-f3ff0ac9b08d
Feed Name: securityonline.info
Threat Score
Unit 42 reports that Boggy Serpens, an Iranian nation-state actor, has matured from noisy phishing to stealthy, multi-wave campaigns against energy, maritime, and financial targets by hijacking legitimate mailboxes to bypass reputation filters and deploying Rust-based backdoors (Nuso, BlackBeard, LampoRAT) and AI-assisted tooling; defenders are advised to focus on behavioral monitoring and strict macro execution controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
