EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

Iranian backed group steps up phishing campaigns against Israel, U.S.

Verified open source
Intelligence with traceable provenance. EudorIA retains technical indicators acquired from supported feeds, with source, date and context. Shareable IOCs are available in the STIX feeds; detection and blocking actions require an assessment of validity, confidence and applicability to the customer's environment. Browse STIX feeds
EudorIA operational summary

What it means

Priority 55/100

MISP EudorIA ha pubblicato l'advisory "Iranian backed group steps up phishing campaigns against Israel, U.S.". Occorre verificarne l'applicabilita rispetto a prodotti e servizi in uso.

Why it matters

Un advisory attendibile puo richiedere verifiche, aggiornamenti o mitigazioni, ma l'applicabilita va confermata sul perimetro reale.

AudienceITSOCCISO

Text acquired from the source

Evento MISP pubblicato con TLP:CLEAR: Iranian backed group steps up phishing campaigns against Israel, U.S.. Report from - [URL rimossa] (1724066282) # Iranian backed group steps up phishing campaigns against Israel, U.S. Aug 14, 2024 [[read-time]] min read Share Twitter Facebook LinkedIn Mail Copy link Google Threat Analysis Group Share Twitter Facebook LinkedIn Mail Copy link article text Today Google’s Threat Analysis Group (TAG) is sharing insights on APT42, an Iranian government-backed threat actor, and their targeted phishing campaigns against Israel and Israeli targets. We are also confirming recent reports around APT42’s targeting of accounts associated with the U.S. presidential election. Associated with Iran’s Islamic Revolutionary Guard Corps (IRGC), APT42 consistently targets high-profile users in Israel and the U.S., including current and former government officials, political campaigns, diplomats, individuals who work at think tanks, as well as NGOs and academic institutions that contribute to foreign policy conversations. In the past six months, the U.S. and Israel accounted for roughly 60% of APT42’s known geographic targeting, including the likes of former senior Israeli military officials and individuals affiliated with both U.S. presidential campaigns. These activities demonstrate the group’s aggressive, multi-pronged effort to quickly alter its operational focus in support of Iran’s political and military priorities. Between February and late July 2024, APT42 heavi

Source
MISP EudorIA
Publishing entity
MISP EudorIA
Entity type
Intelligence community
Area
Global
Original language
it · translation not needed
Publication
30/07/2026 02:52
Sharing
TLP:CLEAR
Indicators reported by the source
49
IOCs indexed for lookup
0 values within the retention period
IOCs available in the STIX feed
27Last sharing verification: 2026-09-26T04:09:04.388529+00:00
MISP event
99b108a2-e41f-4777-b535-658294e8250a
MITRE ATT&CK
Spear phishing messages with malicious links - T1369
Classification
Low
Group attributed by the source
APT42
Open the original source