logo

Weaponizing Trust: FBI Warns Iran’s MOIS is Using Telegram as a Malware C2 Hub

ID: e8339556-e8b2-5050-8219-e6a9f40b95fe

STIX ID: report--e8339556-e8b2-5050-8219-e6a9f40b95fe

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-03-22

Date Updated: 2026-04-23

Author: Ddos

...
...

The FBI issued a FLASH warning that Iran’s MOIS operators have weaponized Telegram as a clandestine command-and-control channel to push malware at Iranian dissidents, journalists, and opposition groups globally, enabling intelligence collection, data exfiltration, and reputational harm; the alert describes social-engineering lures, automated updates via the Telegram API, and data staging for exfiltration, and recommends strict file hygiene, MFA, endpoint protection, and network monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.