Cyber fallout from the Iran war: What to have on your radar
ID: 206d44da-e4df-575c-8cc2-0870a6994695
STIX ID: report--206d44da-e4df-575c-8cc2-0870a6994695
Feed Name: WeLiveSecurity (ESET Research)
This report describes a surge in Iran-aligned and pro-Iranian cyber activity surrounding a kinetic conflict, detailing APT and hacktivist campaigns that include supply-chain compromises, MSP-targeting, destructive wipers (data-wiping attacks), and offensive use of cloud and OT/ICS vectors; it highlights recent disruptive incidents (AWS-region impact from kinetic strikes, Stryker wiper incident), common TTPs (spearphishing from compromised inboxes, MFA push-bombing, RMM abuse), and recommends defensive measures such as inventorying internet-facing assets, enforcing phishing-resistant MFA, auditing third-party access, mapping cloud dependencies, and air-gapped backups.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
