Threat Intelligence Brief
Curated summary with source attribution
Source: courthousenews.com
Threat Risk: High
Victim: Academic institutions and research organizations
Incident: A long-term state-sponsored espionage campaign targeting global universities and government agencies.
Impact: Theft of over 31 terabytes of intellectual property and academic data.
Attacker: Mabna Institute (Iran-backed)
Analysis: The attackers leveraged sophisticated spearphishing campaigns tailored to academic interests to lure targets to credential-harvesting sites. By mimicking legitimate university domains, they successfully exfiltrated over 31 terabytes of sensitive data. This operation highlights the persistent threat of state-sponsored hacking-for-hire firms targeting research institutions.
Recommendations: Implement phishing-resistant Multi-Factor Authentication (MFA) across all institutional accounts; Conduct targeted security awareness training for researchers and faculty on identifying sophisticated spearphishing; Deploy domain monitoring tools to detect and block look-alike domains mimicking organizational infrastructure
Source: Courthouse News Service
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source