Iran-Linked Hackers Target Israeli Energy Firms in New Espionage Campaign

Related

In Praise of CISA

Lately, the Cybersecurity and Infrastructure Security Agency (CISA) has...

Cybersecurity Leaders to Watch: Louisiana Healthcare

Louisiana’s healthcare sector depends on cybersecurity leaders who can...

Anthropic Unveils Claude Mythos to Find Critical Software Flaws Before Attackers Do

What happened Anthropic unveiled Claude Mythos Preview as the model...

Microsoft Commits $10 Billion to Expand AI and Cybersecurity Infrastructure in Japan

What happened Microsoft announced a $10 billion investment to expand...

Share

What happened

Iran-linked threat group Scarred Manticore launched a new wave of attacks on Israeli organizations. The campaign used hijacked edge devices and advanced backdoors to gain long-term access to targeted networks.

Who is affected

Energy companies in Israel face the highest risk, along with other critical infrastructure and government-adjacent sectors that rely on exposed network appliances.

Why CISOs should care

The attackers used stealthy malware, persistence techniques, and infected edge devices. These methods bypass traditional controls and make detection harder. The campaign also shows a continued focus on industrial and national infrastructure, which raises the stakes for defenders.

3 practical actions

  1. Audit internet-facing devices and apply the latest patches.

  2. Deploy strict monitoring for unusual outbound traffic and persistence activity.

  3. Review incident response playbooks for edge device compromise and long-term intrusion scenarios.