Threat Intelligence Brief
Curated summary with source attribution
Source: cybermagazine.com
Threat Risk: High
Victim: Academic institutions, government agencies, and private corporations
Incident: State-sponsored cyber espionage and intellectual property theft.
Impact: Theft of 31 terabytes of sensitive data and massive financial losses related to IP value and remediation.
Attacker: Mabna Institute (IRGC)
Analysis: The Mabna Institute, acting on behalf of the IRGC, executed a long-term espionage campaign targeting academic and corporate entities since 2013. Attackers employed password spraying and spearphishing to compromise over 8,000 email accounts and exfiltrate 31 terabytes of data. This operation demonstrates a strategic reliance on ‘hackers for hire’ to facilitate large-scale intellectual property theft.
Recommendations: Enforce multi-factor authentication (MFA) across all institutional accounts to neutralize password spraying; Implement advanced email filtering and phishing awareness training for high-value research staff; Establish strict access controls and monitoring for proprietary research and intellectual property databases
Source: Cyber Magazine
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source