Iran-aligned #TA453 ( #CharmingKitten #APT42 ) recently attempted credential phishing against a US think tank.
Notably, the email exchange began before the conflict, indicating continued prioritization of longstanding intelligence targets.
APT35 Sızıntısı: Siber casusluktan fiziksel suikast planlarına
#apt35 #CharmingKitten #İran #nationstate
webrecord.media/apt35-sizint...
Leaked documents expose the inner workings of Iranian cyber-espionage group Charming Kitten, revealing key personnel and thousands of compromised systems. #CyberSecurity #APT35 #CharmingKitten Link: thedailytechfeed.com/leaked-docum...
Leaked documents expose APT35's cyber espionage tactics targeting Middle Eastern and Asian entities. Stay informed and secure. #CyberSecurity #APT35 #CharmingKitten #CyberEspionage Link: thedailytechfeed.com/leaked-docs-...
Exposing the identity of "Unit 40" managers of IRGC intelligence;
Tehran's largest espionage intelligence database #APT35 #CharmingKitten
content.iranintl.com/unit40/index...
Subtle Snail, gruppo iraniano UNC1549, usa phishing LinkedIn e backdoor Azure per spionaggio su telecom e aerospazio.
#backdoor #CharmingKitten #evidenza #IRGC #linkedin #MicrosoftAzure #MINIBIKE #phishing #prodaft #SubtleSnail #UNC1549
www.matricedigitale.it/2025/09/20/s...
#CharmingKitten #APT42 #TA453
Hash:
87144d0aa002a87376b673f7d0c0eb88
C2:
Telegram Bot used for error messages and auto-start messaging to the operator
computerlearning.ddns./net
Pivots:
bookstoragestore./com
lastfilterfile/.info
78.159.117./177
78.159.117./175
185.132.176./241
154.44.186./106
Still playing detective with your supply chain intel? Guess who’s already two steps ahead— #CharmingKitten and #Lazarus Group. 🐱🕵️♂️
Don’t let them crash your weekend plans. Dive into our latest insights and stay ahead of the game.
#SupplyChain intel feel like another DIY nightmare? Relax, #CharmingKitten & #Lazarus already RSVP'd your weekend 🐱🕵️♂️
We’ve got your back—peek inside.
blog.alphahunt.io/unveiling-su...
#AlphaHunt #AskYourTIP #CyberSecurity
Supply chain shakier than spring weather? 🌸❄️
Was #GitHub iced by #CharmingKitten or #Lazarus 🐱🕵️ ?
#CTI skills needed—stat. We got you.
blog.alphahunt.io/unveiling-su...
#AlphaHunt #AskYourTIP #CyberSecurity
Next members only #AlphaHunt newsletter drops tomorrow! We're talking #SupplyChain Don't miss it. 😼 🥷
blog.alphahunt.io
#CharmingKitten #Lazarus #SupplyChain #GitHub #CTI #AlphaHunt
BellaCiao,BellaCiao from the magic hound
to the poor sod who's account is browned
the magic that with the new year comes
spies and hounds and hides it's crumbs
whether social media or email links
do not click if it blinks or stinks
thehackernews.com/2024/12/iran...
#apt35 #charmingkitten #magichound
Iran’s Charming Kitten Deploys BellaCPP A New C++ Variant of BellaCiao Malware reconbee.com/irans-charmi...
#Iranian #iran #charmingkitten #BellaCPP #Bellaciaomalware #Bellaciao #malware #malwareattack
BellaCPP、C++ で書かれた魅力的な子猫の BellaCiao バリアント
BellaCPP, Charming Kitten’s BellaCiao variant written in C++ #SecurityAffairs (Dec 25)
#APT35 #CharmingKitten #BellaCPP #マルウェア #サイバー攻撃