logo

Black Industry: IRGC-Linked offensive OT framework

ID: e9981e68-f8ea-577f-a127-fdacb096fd64

STIX ID: report--e9981e68-f8ea-577f-a127-fdacb096fd64

Feed Name: Lab52 Blog

Threat Score
85/100

Date Published: 2026-01-28

Date Updated: 2026-04-28

Author: Dio

...
...

**A new offensive OT framework is being promoted on a TOR-based marketplace by a group identified as “APT Iran” (linked to CyberAv3ngers and potentially the IRGC), offering a purchasable platform (ADV-PLATFORM-01) with modules for industrial protocol scanning, exploitation, PLC firmware backdoors, HMI manipulation, and grid control; the report assesses the offering as likely functional and highlights the high-risk implications for critical industrial and military infrastructure despite limited direct evidence of active exploitation.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.