Iran-Linked Hackers Target Israeli Energy Firms in New Espionage Campaign

Related

Iran-Linked Password-Spraying Campaign Targets More Than 300 Israeli Microsoft 365 Organizations

What happened An Iran-linked password-spraying campaign targeted Microsoft 365 environments...

FBI Takes Down Leak Sites Tied to Iran’s MOIS Cyber Operations

What happened The FBI seized four domains used by Iran’s Ministry...

Share

What happened

Iran-linked threat group Scarred Manticore launched a new wave of attacks on Israeli organizations. The campaign used hijacked edge devices and advanced backdoors to gain long-term access to targeted networks.

Who is affected

Energy companies in Israel face the highest risk, along with other critical infrastructure and government-adjacent sectors that rely on exposed network appliances.

Why CISOs should care

The attackers used stealthy malware, persistence techniques, and infected edge devices. These methods bypass traditional controls and make detection harder. The campaign also shows a continued focus on industrial and national infrastructure, which raises the stakes for defenders.

3 practical actions

  1. Audit internet-facing devices and apply the latest patches.

  2. Deploy strict monitoring for unusual outbound traffic and persistence activity.

  3. Review incident response playbooks for edge device compromise and long-term intrusion scenarios.

49d906b3470b7a39a77b0ee86a2350afcd336d56fb93d43f08f7ff248882d10d?s=150&d=mp&r=g
+ posts