Перейти до основного вмісту

Iran-Linked Cavern Malware Targets Israeli IT and Government Sectors

Зображення до: Iran-Linked Cavern Malware Targets Israeli IT and Government Sectors

Check Point Research reported that Cavern Manticore, an Iran-nexus actor linked to Tehran's Ministry of Intelligence and Security, has used a modular .NET command-and-control framework against Israeli organizations, especially IT providers and government-sector targets. The report says the operators abused trusted RMM and supplier relationships, including a SysAid software-update path that loaded a trojanized uxtheme.dll agent, to move from an IT provider toward higher-value victims. The Cavern modules support file and database browsing, Active Directory reconnaissance, network scanning, brute-force attempts and tunneling. Iran's campaign against Israel continues in cyberspace even between missile rounds, so the finding reinforces the need for hardened supplier access, monitored remote-management tools and disciplined Israeli cyber defense.

Легенда

Первинні джерела:1Вторинні джерела:234

Пов’язані матеріали

  1. Tajik Illegal Resident Indicted for Spying for Iran
  2. Jerusalem Man Indicted in Iran Spy Case
  3. Tajik With Russian Passport Held for Iran Spying
  4. American in Israel Faces Charge of Spying for Iran
  5. Iran Cyberattacks Triple to 4,800 in June, Israel Cyber Chief Says

Щось пішло не так

Не вдалося виконати цю дію. Перевірте з’єднання та спробуйте ще раз.