logo

Dust Specter: Iran-Linked Hackers Weaponize Iraqi Government Sites in New Cyber Espionage Campaign

ID: 6ef7c0ad-cc4f-547c-b804-0f98889adc3c

STIX ID: report--6ef7c0ad-cc4f-547c-b804-0f98889adc3c

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-03-09

Date Updated: 2026-04-23

Author: Ddos

...
...

Zscaler ThreatLabz reports that a suspected Iran-nexus APT, dubbed Dust Specter, is conducting a targeted espionage campaign against Iraqi government officials by compromising Iraqi government infrastructure (e.g., ca.iq) to host malicious payloads and using tailored social engineering (spoofed Ministry communications, fake Webex government invites, and 'ClickFix' prompts) to deliver custom .NET droppers and backdoors (SPLITDROP, TWINTASK, TWINTALK, GHOSTFORM); defenders are advised to secure public-facing government assets and strengthen email filtering.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.