Friday, May 8, 2026
Law And Order News
  • Home
  • Law and Legal
  • Military and Defense
  • International Conflict
  • Crimes
  • Constitution
  • Cyber Crimes
No Result
View All Result
  • Home
  • Law and Legal
  • Military and Defense
  • International Conflict
  • Crimes
  • Constitution
  • Cyber Crimes
No Result
View All Result
Law And Order News
No Result
View All Result
Home Cyber Crimes

Iran-linked hackers target Kurdish and Iraqi officials in long-running cyberespionage campaign

Iran-linked hackers target Kurdish and Iraqi officials in long-running cyberespionage campaign



A cyberespionage group with suspected ties to Iran has been concentrating on Kurdish and Iraqi authorities officers in a years-long cyber espionage marketing campaign, based on a brand new report.

Researchers on the Slovakia-based cybersecurity agency ESET attributed the exercise to a menace actor dubbed BladedFeline, believed to be a subgroup of OilRig, a well-documented Iranian state-backed actor energetic since at the least 2014.

In response to ESET, BladedFeline has been working since at the least 2017, initially breaching techniques belonging to the Kurdistan Regional Authorities (KRG). Since then, the hackers have continued to evolve their toolkit and develop their attain, concentrating on each the KRG and the central authorities of Iraq, in addition to a telecommunications supplier in Uzbekistan.

The group first got here to ESET’s consideration in 2023, when it deployed a easy backdoor generally known as Shahmaran towards Kurdish diplomatic officers. The malware allowed distant attackers to add and obtain recordsdata and execute instructions on compromised units.

Since then, ESET has recognized two further malicious instruments linked to the group: Whisper and PrimeCache. Whisper communicates with attackers by electronic mail attachments despatched through compromised Microsoft Alternate webmail accounts, whereas PrimeCache bears similarities to RDAT, a backdoor beforehand related to OilRig.

Whereas ESET couldn’t affirm the preliminary intrusion vector in all instances, researchers consider BladedFeline could have gained entry to Iraqi authorities techniques by exploiting vulnerabilities in internet-facing servers, utilizing a webshell referred to as Flog to take care of management.

ESET warned that the group is more likely to proceed creating its malware arsenal to retain entry to compromised techniques for cyberespionage functions.

“The KRG’s diplomatic relationship with Western nations, coupled with the oil reserves within the Kurdistan area, makes it an attractive goal for Iran-aligned menace actors to spy on and probably manipulate,” researchers stated. 

“In Iraq, these menace actors are most likely making an attempt to counter the affect of Western governments following the US invasion and occupation of the nation.”

OilRig — additionally tracked as APT34 or Hazel Sandstorm — has beforehand focused entities within the chemical, vitality, finance, and telecom sectors throughout the Center East. The group is understood for utilizing compromised organizations to conduct provide chain assaults on different authorities entities.

Final 12 months, researchers warned that OilRig stepped up its assaults towards authorities companies within the United Arab Emirates (UAE) and the broader Persian Gulf area, underscoring their “ongoing dedication” to exploiting vulnerabilities inside crucial infrastructure and authorities networks in geopolitically delicate areas.

Get extra insights with the

Recorded Future

Intelligence Cloud.

Study extra.



Source link

Tags: campaigncyberespionageHackersIranlinkedIraqiKurdishlongrunningofficialsTarget
Previous Post

Second man charged in burglary crew that used SUVs and chains to steal ATMs

Next Post

Trial Preparation Checklist: Steps, Procedures, and What to Expect in Court

Related Posts

50 Years Of Apple Computer: The Most Complete Collection In The U.S.
Cyber Crimes

50 Years Of Apple Computer: The Most Complete Collection In The U.S.

May 7, 2026
Conti, Akira ransomware affiliate given 8-year sentence
Cyber Crimes

Conti, Akira ransomware affiliate given 8-year sentence

May 5, 2026
Black Hat USA 2026, Aug. 1-6. Las Vegas. REGISTER & Save with the CODE: CYBERCRIME
Cyber Crimes

Black Hat USA 2026, Aug. 1-6. Las Vegas. REGISTER & Save with the CODE: CYBERCRIME

May 4, 2026
Federal agencies must patch cPanel bug by Sunday, CISA says
Cyber Crimes

Federal agencies must patch cPanel bug by Sunday, CISA says

May 2, 2026
Ethical Hacking Gone Wrong In 1999: French Software Engineer Looks Back
Cyber Crimes

Ethical Hacking Gone Wrong In 1999: French Software Engineer Looks Back

May 1, 2026
Swiss police arrest 10 suspected members of Nigeria-linked crime group Black Axe
Cyber Crimes

Swiss police arrest 10 suspected members of Nigeria-linked crime group Black Axe

April 29, 2026
Next Post
Trial Preparation Checklist: Steps, Procedures, and What to Expect in Court

Trial Preparation Checklist: Steps, Procedures, and What to Expect in Court

Asylwende mit Hindernissen

Asylwende mit Hindernissen

  • Trending
  • Comments
  • Latest
Announcements: CfP Ljubljana Sanctions Conference; Secondary Sanctions and the International Legal Order Discussion; The Law of International Society Lecture; CfS Cyber Law Toolkit; ICCT Live Webinar

Announcements: CfP Ljubljana Sanctions Conference; Secondary Sanctions and the International Legal Order Discussion; The Law of International Society Lecture; CfS Cyber Law Toolkit; ICCT Live Webinar

September 29, 2024
Schools of Jurisprudence and Eminent Thinkers

Schools of Jurisprudence and Eminent Thinkers

June 7, 2025
June 2025 – Conflict of Laws

June 2025 – Conflict of Laws

July 5, 2025
Better Hope Judges Brush Up Their Expertise On… Everything – See Also – Above the Law

Better Hope Judges Brush Up Their Expertise On… Everything – See Also – Above the Law

June 29, 2024
Prisoner Exchanges and the Prospects for Peace Talks – PRIO Blogs

Prisoner Exchanges and the Prospects for Peace Talks – PRIO Blogs

August 9, 2024
India Legal: Latest Law News, Latest India Legal News, Legal News India, Supreme Court Updates, High Courts Updates, Daily Legal Updates India

India Legal: Latest Law News, Latest India Legal News, Legal News India, Supreme Court Updates, High Courts Updates, Daily Legal Updates India

August 26, 2025
Haitian illegal immigrant who fatally beat Florida store clerk with hammer will face death penalty

Haitian illegal immigrant who fatally beat Florida store clerk with hammer will face death penalty

May 8, 2026
When You Know It’s Time To Go

When You Know It’s Time To Go

May 8, 2026
With launches slated to grow a hundredfold, Space Force seeks more sites, money, people, and AI

With launches slated to grow a hundredfold, Space Force seeks more sites, money, people, and AI

May 8, 2026
On WPHT Afternoon Show: To Discuss FBI Data Errors and Transgender Violence – Crime Prevention Research Center

On WPHT Afternoon Show: To Discuss FBI Data Errors and Transgender Violence – Crime Prevention Research Center

May 7, 2026
Europe defense autonomy is in reach at €50 billion a year: German experts

Europe defense autonomy is in reach at €50 billion a year: German experts

May 7, 2026
Design Tips for Law Firm Website For Better Conversions – Legal Reader

Design Tips for Law Firm Website For Better Conversions – Legal Reader

May 7, 2026
Law And Order News

Stay informed with Law and Order News, your go-to source for the latest updates and in-depth analysis on legal, law enforcement, and criminal justice topics. Join our engaged community of professionals and enthusiasts.

  • About Founder
  • About Us
  • Advertise With Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact Us

Copyright © 2024 Law And Order News.
Law And Order News is not responsible for the content of external sites.

No Result
View All Result
  • Home
  • Law and Legal
  • Military and Defense
  • International Conflict
  • Crimes
  • Constitution
  • Cyber Crimes

Copyright © 2024 Law And Order News.
Law And Order News is not responsible for the content of external sites.