The group has used more than 30 custom tools, and especially likes to target government and telecommunications organizations.
Iranian state-sponsored threat actor UNC1860 is operating as an initial access provider to high-profile networks in the Middle East.
Mandiant links Iranian APT UNC1860 to MOIS, revealing its sophisticated remote access tools and persistent backdoors ...
The threat group UNC1860, linked to Iran's security intelligence agency, gains initial access into networks around the region ...
The latest version of the evolving threat is a multistage attack demonstrating a move away from ransomware to purely ...
The Iranian threat actor UNC1860 is a collector of specialized tooling and passive backdoors for gaining initial access and ...
With its comprehensive passive/listener-based utilities for initial access and lateral movement, UNC1860 may have supported ...
Stay in the loop with THN's Weekly Cybersecurity Recap! Get the last week's top security headlines, from data breaches to ...