Threat Intelligence Brief
Curated summary with source attribution
Source: finance.biggo.com
Threat Risk: High
Victim: Global academic and research institutions
Incident: Large-scale exfiltration of 31 terabytes of research data from hundreds of universities globally.
Impact: Massive loss of intellectual property and the compromise of approximately 8,000 academic accounts.
Attacker: Mabna Institute (IRGC-affiliated)
Analysis: The Mabna Institute operated a contract-based hacking ring to benefit Iranian research institutions and the IRGC. By leveraging spear-phishing and credential theft, they compromised thousands of academic accounts to exfiltrate sensitive research. This operation underscores the persistent risk that state-sponsored actors pose to open academic environments.
Recommendations: Implement mandatory multi-factor authentication (MFA) for all academic and staff accounts.; Conduct targeted spear-phishing awareness training for high-value research faculty.; Monitor for unauthorized large-scale data exfiltration from institutional repositories.
Source: BigGo Finance
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source