logo

LevelBlue SpiderLabs Breaks Down the Role of Cyber Operations Taken in the Iran Crisis

ID: e1197030-bab7-52b7-b1e0-34dcb2097436

STIX ID: report--e1197030-bab7-52b7-b1e0-34dcb2097436

Feed Name: LevelBlue SpiderLabs Blog

Threat Score
90/100

Date Published: 2026-03-04

Date Updated: 2026-04-28

Author: Gal Romano

...
...

LevelBlue SpiderLabs reports that the February 28, 2026 US-Israeli cyber-kinetic campaign (Operation Epic Fury) produced a near-total Iranian internet blackout and precipitated a rapid, large-scale cyber conflict: Iranian APTs (MuddyWater, Charming Kitten/APT42, OilRig/APT34, Elfin/APT33, etc.) and numerous hacktivist proxies launched espionage, DDoS, wiper, and hack-and-leak operations against US, Israeli, Gulf, and regional targets; the report includes observed TTPs, malware families (Shamoon/IOCONTROL/Tickler), IoCs, MITRE mappings, detection queries, and prioritized mitigations for OT/ICS and cloud environments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.