Iranian backed group steps up phishing campaigns against Israel, U.S.
What it means
MISP EudorIA ha pubblicato l'advisory "Iranian backed group steps up phishing campaigns against Israel, U.S.". Occorre verificarne l'applicabilita rispetto a prodotti e servizi in uso.
Why it matters
Un advisory attendibile puo richiedere verifiche, aggiornamenti o mitigazioni, ma l'applicabilita va confermata sul perimetro reale.
Recommended actions
- Verificare tecnologie, versioni e servizi interessati nel proprio inventario.
- Consultare la fonte originale prima di pianificare la mitigazione.
Text acquired from the source
Evento MISP pubblicato con TLP:CLEAR: Iranian backed group steps up phishing campaigns against Israel, U.S.. Report from - [URL rimossa] (1724066282) # Iranian backed group steps up phishing campaigns against Israel, U.S. Aug 14, 2024 [[read-time]] min read Share Twitter Facebook LinkedIn Mail Copy link Google Threat Analysis Group Share Twitter Facebook LinkedIn Mail Copy link article text Today Google’s Threat Analysis Group (TAG) is sharing insights on APT42, an Iranian government-backed threat actor, and their targeted phishing campaigns against Israel and Israeli targets. We are also confirming recent reports around APT42’s targeting of accounts associated with the U.S. presidential election. Associated with Iran’s Islamic Revolutionary Guard Corps (IRGC), APT42 consistently targets high-profile users in Israel and the U.S., including current and former government officials, political campaigns, diplomats, individuals who work at think tanks, as well as NGOs and academic institutions that contribute to foreign policy conversations. In the past six months, the U.S. and Israel accounted for roughly 60% of APT42’s known geographic targeting, including the likes of former senior Israeli military officials and individuals affiliated with both U.S. presidential campaigns. These activities demonstrate the group’s aggressive, multi-pronged effort to quickly alter its operational focus in support of Iran’s political and military priorities. Between February and late July 2024, APT42 heavi
- Source
- MISP EudorIA
- Publishing entity
- MISP EudorIA
- Entity type
- Intelligence community
- Area
- Global
- Original language
- it · translation not needed
- Publication
- 30/07/2026 02:52
- Sharing
- TLP:CLEAR
- Indicators reported by the source
- 49
- IOCs indexed for lookup
- 0 values within the retention period
- IOCs available in the STIX feed
- 27Last sharing verification: 2026-09-26T04:09:04.388529+00:00
- MISP event
- 99b108a2-e41f-4777-b535-658294e8250a
- MITRE ATT&CK
- Spear phishing messages with malicious links - T1369
- Classification
- Low
- Group attributed by the source
- APT42