Tag: New BASICSTAR Backdoor

Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor
News

Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor

By fabricating a phony webinar gateway, the threat actor Charming Kitten, who is of Iranian descent, has been connected to a fresh round of attacks targeting Middle East policy experts using a new backdoor known as BASICSTAR. In the past, Charming Kitten—also known as APT35, CharmingCypress, Mint Sandstorm, TA453, and Yellow Garuda—has organized a variety of social engineering efforts that target a broad range of targets, frequently focusing on journalists, think tanks, and non-governmental organizations. Researchers Ankur Saini, Callum Roxan, Charlie Gardner, and Damien Cash of Volexity noted that "CharmingCypress often employs unusual social-engineering tactics, such as engaging targets in prolonged conversations over email before sending links read more Iranian Hackers Target Mid...