Attori Iraniani Intensificano Attacchi su Governo e Infrastrutture Critiche
Attori allineati all'Iran e gruppi hacktivist hanno intensificato attacchi cyber dopo i raid USA–Israele. Le operazioni documentate includono DDoS, data-wiping e intrusioni profonde contro governo, difesa e infrastrutture critiche negli USA e negli stati del Golfo. La ricognizione e l'accesso pre-posizionati, attribuiti anche a APT33 e APT42, rischiano di rimanere e riattivarsi quando la connettività tornerà.
Iran-linked ransomware gang targeted US healthcare org amid military conflict
The incident responders noted that there was no evidence that data was exfiltrated during the intrusion — an unusual development considering U.S. intelligence agencies previously said Pay2Key attacks were largely conducted for information theft.