SecurityWeek says Amir Barati, an alleged Mabna Institute operator, was extradited from Montenegro to the United States this week to face a 14-count indictment tied to a campaign that hit hundreds of universities, companies, and agencies in the US and abroad.
The indictment says the group used stolen credentials, spearphishing, and mailbox access to pull academic data and intellectual property, including employee email accounts and scientific research. In plain terms, once they got into campus or company email, they could use that foothold to copy material and move through the victim’s inboxes.
The significance here is legal and intelligence-related, not operational: extradition makes rare US prosecution of an Iran-linked operator possible, and court proceedings can surface tradecraft, infrastructure, and other people tied to the same campaign. For organizations hit by Mabna, the remaining exposure is what the case may reveal, not a new defensive step.
In Rare Move, Alleged Iranian State Hacker Extradited to US
Amir Barati, an alleged member of the Mabna Institute, was indicted for targeting universities, private organizations, and government entities in the US and abroad.