US agencies raise alarm on cyber threat from Iranian-linked groups

September 2, 2024
1 min read

TLDR:

  • US agencies issue cybersecurity advisory on Iranian-linked cyber threat groups targeting critical infrastructure
  • Groups identified as Pioneer Kitten, UNC757, Parisite, Rubidium, and Lemon Sandstorm

U.S. agencies have issued a cybersecurity advisory alerting critical infrastructure organizations about cyber actors, identified as Iranian-linked groups, targeting various sectors in the U.S. and other countries. These actors, known by different names such as Pioneer Kitten, UNC757, and others, are linked to the Government of Iran (GOI) and have been deploying ransomware attacks to gain network access. The groups target organizations through VPN vulnerabilities and device exploits, collaborating with ransomware affiliates to extort victims.

They also conduct hack-and-leak campaigns and steal sensitive data. The FBI and CISA recommend implementing mitigations against vulnerabilities, testing security programs, and validating security controls to defend against these cyber threats based on known indicators of compromise and tactics used by the hackers.

Latest from Blog

Cyber insurance changes shape of security for good and bad

TLDR: Key Points: Cyber-insurance landscape is shifting to encourage greater cyber resiliency Rising costs of cyberattacks are prompting insurers to re-examine underwriting How Cyber-Insurance Shifts Affect the Security Landscape The article discusses