Skip to main content
Cyber Security Firm Warns About Iran Hacking ThreatTerrorism 15 December 2017
Iran Focus
London, 15 Dec - Two cyber security firms have warned the US against underestimate Iranian hackers in the wake of successful operations and advised that they need to be tracked more closely.
These hackers, who target enemies of Iran and promote the Regime’s political agenda, have become more advanced in their attacks, which led advanced-threat protection firms FireEye and ClearSky to warn that the Regime is fast turning into a cyber crimes giant.Attacks
In November, Iranian agents attacked Microsoft Office software in order to target a Middle Eastern government according to FireEye. The suspects are an Iranian cyber-espionage threat group, known as APT34.
This group, more well known as OilRig, has a history of operations that align with Iran’s political agenda, which means that they are likely working under direction from the Regime, and conduct their attacks in a very different way.
Fred Plan, a senior analyst with FireEye, told eWEEK: “One thing that sets the Iranian cyber-espionage groups apart is they are not that reliant on technical solutions. They do not—like the Chinese and Russians—have a pile of zero days. They do a lot more basic social engineering.”
The problem is that the US is also dealing with cyber espionage from other states- like North Korea, China, and Russia- and don’t spend a lot of time on Iran’s operations. This needs to change.
Earlier this month, Israeli cyber-security consultancy ClearSky Cyber Security found that a lot of attacks against human-right activists and media organizations were conducted by Iranian hackers as well. Given the Regime’s relationship with journalists and human rights, it seems likely that they order this attack too.
Plan said: “In the case of Iran, it is [similar] to China and Russia—there is a spectrum of activity and many different actor groups. Some are very closely tied to what the government is doing, while others are nationalistic actors that get together and have a particular set of skills.”
Although Plan wants to be cautious about this, from what we know about the Regime it is unlikely anyone would target enemies of the Regime without being told to.
APT34 has targeted the financial, government, energy, chemical and telecommunications industries in the Middle East, using a spearphishing campaign and the MS Office vulnerability to install malware.
Given their speed at exploiting vulnerabilities, it is hard to believe that they aren’t being funded and instructed by the mullahs.

Comments

Popular posts from this blog

19 Million Dollar Scam in Tehran Sparks Protests19 June 2018

19 Million Dollar Scam in Tehran Sparks Protests19 June 2018 Iran Focus London, 19 Jun - In the Gisha area, a builder pre-sold several housing units that were under construction to several people simultaneously. After issuing a tracking code, the builder fled with over 80 billion tomans (approximately 19 million USD). On Monday, June 18th, a group of the betrayed home buyers staged a protest against the million-dollar scam of the Gisha housing construction in Tehran, Iran. A protester spoke about the details of this million-dollar fraud. “The housing maker, who at the same time has two real estate consultant offices in the Gisha area, was abusing access to the information system of the real estate sales by tampering the postal code contained in tracking code system, issued multiple letter of credits with official code tracking codes for various units and presold each unit at the same time to several individuals.” He added, “These plundered buyers trusted the letter of credits which ...
WE SHOULD LISTEN CLOSELY TO IRAN Created: 26 January 2018 Iran Maryam Rajavi NCRI PMOI/MEK Human rights Protests United States Opinion JCPOA Paris Middle East Supreme Leader of Iran, Ali Khamenei (Photo by Supreme Leader Press Office / Handout/Anadolu Agency/Getty Images) By Heshmat Alavi As the world continues to debate the recent Iranian outburst of protests, its "lack of leadership" as they claim, and the road ahead, there is no doubt in the minds of senior Iranian regime officials over who led, and continues to lead, this latest uprising that continues to rattle the very pillars of the mullahs' rule.Iran’s Supreme Leader Ali Khamenei made his thoughts crystal clear.“The incidents were organized” and carried out by the Iranian opposition People's Mojahedin Organization of Iran (PMOI/MEK), he said although using a different term. “The [MEK] had prepared for this months ago” and “the [MEK’s] media outlets had called for it.” The MEK is best known ...
THE MAGAZINE: From the August 21 Issue Tortured by 'Moderates' Iran's dissidents deserve a hearing AUG 21, 2017 | By KELLY JANE TORRANCE Shabnam Madadzadeh, her brother Farzad, and Arash Mohammadi. Photo credit: KELLY JANE TORRANCE / THE WEEKLY STANDARD Hassan Rouhani was sworn in for his second term as president of Iran on August 5, surrounded by fresh flowers, fervent followers, and around 500 foreign officials. Representatives of the United Kingdom, France, the United Nations, and the Vatican rubbed shoulders with the Syrian prime minister, Hezbollah second-in-command Naim Qassem, Palestinian Islamic Jihad leader and FBI Most Wanted Terrorists list member Ramadan Abdullah Shallah, and murderous Zimbabwean dictator Robert Mugabe. The Westerners didn’t seem uncomfortable in such company; indeed, European Union foreign policy chief Federica Mogherini was described as the star of the show after Iranian members of parliament elbowed through the crowd to take selfies with the...