ICYMI

ICYMI: Iranian Hackers Conducted Cyber Attacks on Israelis Under Guise of Supporting Hostages Held by Hamas


Feb 29, 2024

FOR IMMEDIATE RELEASE
Contact: [email protected]

ICYMI: IRANIAN HACKERS CONDUCTED CYBER ATTACKS ON ISRAELIS UNDER GUISE OF SUPPORTING HOSTAGES HELD BY HAMAS

WASHINGTON, D.C. – Iranian hackers conducted cyber attacks against Israelis by creating a fake “Bring Them Home Now” website that purported to support the hostages held by Hamas, according to the Jerusalem Post. The hacker group behind the fake website is closely linked to Iran’s Islamic Revolutionary Guard Corps (IRGC). The group used the fake website to spread malware and spam with false job offers, and reportedly targeted Middle Eastern aerospace, aviation, and defense industries.

READ THE FULL JERUSALEM POST PIECE HERE

KEY EXCERPTS

  • Iranian hackers reportedly created a fake site in support of the Israeli hostages held by Hamas to carry out cyber attacks against Israeli targets, the Google-owned cybersecurity firm Mandiant announced on Wednesday.
  • According to Mandiant, the hacker group identified as UNC1546, or Tortoiseshell, is heavily linked to Iran’s Islamic Revolutionary Guard Corps (IRGC).
  • In its most recent activity, under the cover of the Bring Them Home Now movement, calling for the return of the hostages, the hackers spread malware entitled MINIBUS. Installing it triggered a decoy under the guise of an application related to the hostages.
  • According to the cybersecurity firm, as part of the hackers’ activity, the group also targeted Middle Eastern aerospace, aviation, and defense industries, according to the cybersecurity firm. It lists with certitude that Israel and the United Arab Emirates, with Turkey, India, and Albania being additional potential targets.

###

Sign Up for The 10/7 Project Daybook Newsletter
Jump to Content