Dust Specter: Iran-Linked Hackers Weaponize Iraqi Government Sites in New Cyber Espionage Campaign
ID: 6ef7c0ad-cc4f-547c-b804-0f98889adc3c
STIX ID: report--6ef7c0ad-cc4f-547c-b804-0f98889adc3c
Feed Name: securityonline.info
Zscaler ThreatLabz reports that a suspected Iran-nexus APT, dubbed Dust Specter, is conducting a targeted espionage campaign against Iraqi government officials by compromising Iraqi government infrastructure (e.g., ca.iq) to host malicious payloads and using tailored social engineering (spoofed Ministry communications, fake Webex government invites, and 'ClickFix' prompts) to deliver custom .NET droppers and backdoors (SPLITDROP, TWINTASK, TWINTALK, GHOSTFORM); defenders are advised to secure public-facing government assets and strengthen email filtering.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
