Threats & Adversaries · DDoS
Iran-aligned state actors and pro-West hacktivist fronts have increased DDoS, data-wiping and deep intrusion activity following recent US–Israeli military strikes.
18 sources · Mar 24
The Record from Recorded Future
Iran-linked ransomware gang targeted US healthcare org amid military conflict
The incident responders noted that there was no evidence that data was exfiltrated during the intrusion — an unusual development considering U.S. intelligence agencies previously said Pay2Key attacks were largely conducted for information theft.
originalArs Technica Security
Self-propagating malware poisons open source software and wipes Iran-based machines
Development houses: It's time to check your networks for infections.
originalSecurityWeek
Stryker Says Malicious File Found During Probe Into Iran-Linked Attack
The FBI has published an alert describing the malware used by Iranian government hackers.
originalPart of the PlainSec briefing for 2026-03-26
Every edition of this story: Iran-Related Cyber Campaigns Spike with Wipers and Ransomware