Iran Dupes US Military Contractors, Gov't Agencies in Years-Long Cyber Campaign
ID: da9c414e-63a0-530e-b783-c7de60ebdc20
STIX ID: report--da9c414e-63a0-530e-b783-c7de60ebdc20
Feed Name: Dark Reading
Date Published: 2024-04-24
Date Updated: 2026-04-21
Author: Tara Seals, Managing Editor, News, Dark Reading
An Iranian state-sponsored APT conducted a sophisticated, multiyear spearphishing and social-engineering campaign (2016–2021) using a custom tool called "Dandelion" to compromise hundreds of thousands of employee email accounts across US government agencies (including Treasury and State) and private-sector organizations; four individuals were indicted but remain at large and the full extent of data theft is unclear.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
