⤷ Title: Iran APT SpearSpecter Uses Weeks-Long WhatsApp Lures and Fileless TAMECAT Backdoor to Hit Defense
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 00:30:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #Cloudflare C2 #fileless backdoor #IRGC_IO #SpearSpecter #TAMECAT #WebDAV Abuse #WhatsApp Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 00:30:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #Cloudflare C2 #fileless backdoor #IRGC_IO #SpearSpecter #TAMECAT #WebDAV Abuse #WhatsApp Espionage
Daily CyberSecurity
Iran APT SpearSpecter Uses Weeks-Long WhatsApp Lures and Fileless TAMECAT Backdoor to Hit Defense
Israel disclosed SpearSpecter: an IRGC-IO espionage campaign using weeks-long WhatsApp social engineering and search-ms/WebDAV abuse to deploy the fileless TAMECAT PowerShell backdoor with Discord/Telegram C2.
⤷ Title: APT42 Escalation: ‘SpearSpecter’ Targets Officials and Relatives with Custom Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 03:20:39 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #CloudflareWorkers #Espionage #IRGC #IsraelNationalDigitalAgency #SocialEngineering #SpearSpecter #Tamecat
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 18 Nov 2025 03:20:39 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #CloudflareWorkers #Espionage #IRGC #IsraelNationalDigitalAgency #SocialEngineering #SpearSpecter #Tamecat
Penetration Testing Tools
APT42 Escalation: 'SpearSpecter' Targets Officials and Relatives with Custom Malware
APT42 launched "SpearSpecter," a campaign targeting defense officials and their relatives. It uses personalized social engineering and the stealthy, PowerShell-based TAMECAT malware.
⤷ Title: TAMECAT Exposed: APT42’s Fileless Backdoor Targets Defense Chiefs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:17:59 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #cyber_espionage #Fileless Threat #IRGC #Israel National Digital Agency #PowerShell Malware #Pulsedive #social engineering #TAMECAT #Telegram C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:17:59 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT42 #cyber_espionage #Fileless Threat #IRGC #Israel National Digital Agency #PowerShell Malware #Pulsedive #social engineering #TAMECAT #Telegram C2
Daily CyberSecurity
TAMECAT Exposed: APT42's Fileless Backdoor Targets Defense Chiefs
APT42 targets defense officials with "TAMECAT," a modular PowerShell backdoor. The malware uses social engineering and Telegram C2 to steal secrets.
⤷ Title: Iran-Aligned TA453 Weaponizes ‘Operation Epic Fury’ for Cyber Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 02:05:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT42 #Charming Kitten #Credential Phishing #cyber_espionage #Middle East Cyber Threats #Operation Epic Fury #Proofpoint #social engineering #TA453 #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 02:05:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT42 #Charming Kitten #Credential Phishing #cyber_espionage #Middle East Cyber Threats #Operation Epic Fury #Proofpoint #social engineering #TA453 #threat intelligence
Daily CyberSecurity
Iran-Aligned TA453 Weaponizes 'Operation Epic Fury' for Cyber Espionage
Proofpoint reveals Iran-aligned TA453 is exploiting Operation Epic Fury to launch targeted credential phishing campaigns against U.S. think tanks.
⤷ Title: Iranian Cyber Threat Landscape: Espionage and Covert Access
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 03:12:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT42 #Critical Infrastructure #Cyber Espionage #Iranian hackers #SentinelLABS
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 03:12:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT42 #Critical Infrastructure #Cyber Espionage #Iranian hackers #SentinelLABS
Information Security News
Iranian Cyber Threat Landscape: Espionage and Covert Access
The Strategic Value of Silent Persistence Iranian threat actors operate with significantly greater stealth than conventionally perceived. Rather than executing immediate, high-profile disruptive a…
⤷ Title: APT42 TAMECAT Malware Grows with AI-Assisted Phishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 06:26:52 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI_assisted phishing #APT42 #Credential Phishing #cyber_espionage #Iranian Threat Actor #TA453 #TAMECAT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 06:26:52 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI_assisted phishing #APT42 #Credential Phishing #cyber_espionage #Iranian Threat Actor #TA453 #TAMECAT
Daily CyberSecurity
APT42 TAMECAT Malware Grows with AI-Assisted Phishing
At a glance Actor or group APT42 (Iran-linked; also tracked as TA453) Activity type AI-assisted spear-phishing, credential theft, TAMECAT backdoor delivery Targets or victims Defense and governmen…