Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor
By fabricating a phony webinar gateway, the threat actor Charming Kitten, who is of Iranian descent, has been connected to a fresh round of attacks targeting Middle East policy experts using a new backdoor known as BASICSTAR.
In the past, Charming Kitten—also known as APT35, CharmingCypress, Mint Sandstorm, TA453, and Yellow Garuda—has organized a variety of social engineering efforts that target a broad range of targets, frequently focusing on journalists, think tanks, and non-governmental organizations.
Researchers Ankur Saini, Callum Roxan, Charlie Gardner, and Damien Cash of Volexity noted that "CharmingCypress often employs unusual social-engineering tactics, such as engaging targets in prolonged conversations over email before sending links read more Iranian Hackers Target Mid...

