Get a Pentest and security assessment of your IT network.

News

Iran-linked APT34: Analyzing the webmask project

Security expert Marco Ramilli published the findings of a quick analysis of the webmask project standing behind the DNS attacks implemented by APT34 (aka OilRig and HelixKitten) The group conducts operations primarily in the Middle East, targeting financial, government, energy, chemical, telecommunications and other industries. The use of infrastructure tied to Iranian operations, timing and alignment with the national interests of Iran also lead FireEye to assess that APT 34 acts on behalf of the Iranian government. The leaked source code shows three main folders: webmask, poisonfrog and Webshells_and_Panel.”]

Source: https://securityaffairs.co/wordpress/84370/apt/iran-apt34-webmask-project.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Who and why is attacking companies in the Nordic Countries?

News

Shamoon Malware, cyber espionage tool, cyber weapon or