• Business
  • Markets
  • Politics
  • Crypto
  • Finance
  • Intelligence
    • Policy Intelligence
    • Security Intelligence
    • Economic Intelligence
    • Fashion Intelligence
  • Energy
  • Technology
  • Taxes
  • Creator Economy
  • Wealth Management
  • LBNN Blueprints
  • Business
  • Markets
  • Politics
  • Crypto
  • Finance
  • Intelligence
    • Policy Intelligence
    • Security Intelligence
    • Economic Intelligence
    • Fashion Intelligence
  • Energy
  • Technology
  • Taxes
  • Creator Economy
  • Wealth Management
  • LBNN Blueprints

CyberAv3ngers: The Iranian Saboteurs Hacking Water and Gas Systems Worldwide

Simon Osuji by Simon Osuji
April 15, 2025
in Artificial Intelligence
0
CyberAv3ngers: The Iranian Saboteurs Hacking Water and Gas Systems Worldwide
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


That initial wave of CyberAv3ngers hacking, both real and fabricated, appears to have been part of a tit-for-tat with another highly aggressive hacker group that is widely believed to work on behalf of Israeli military or intelligence agencies. That rival group, known as Predatory Sparrow, repeatedly targeted Iranian critical infrastructure systems while similarly hiding behind a hacktivist front. In 2021, it disabled more than 4,000 Iranian gas stations across the country. Then, in 2022, it set a steel mill on fire in perhaps the most destructive cyberattack in history. Following CyberAv3ngers’ late 2023 hacking campaign, and missile launches against Israel by Iranian-backed Houthi rebels, Predatory Sparrow retaliated again by knocking out thousands of Iran’s gas stations in December of that year.

“Khamenei!” Predatory Sparrow wrote on X, referring to the supreme leader of Iran in Farsi. “We will react against your evil provocations in the region.”

Predatory Sparrow’s attacks have been tightly focused on Iran. But CyberAv3ngers hasn’t limited itself to Israeli targets, or even Israeli-made devices used in other countries. In April and May of last year, Dragos says, the group breached a US oil and gas firm—Dragos declined to name which one—by compromising the company’s Sophos and Fortinet security appliances. Dragos found that in the months that followed, the group was scanning the internet for vulnerable industrial control system devices, as well as visiting the websites of those devices’ manufacturers to read about them.

Following its late 2023 attacks, the US Treasury sanctioned six IRGC officials that it says were linked to the group, and the State Department put its $10 million bounty on their heads. But far from being deterred, CyberAv3ngers has instead shown signs of evolving into a more pervasive threat.

Last December, Claroty revealed that CyberAv3ngers had infected a wide variety of industrial control systems and internet-of-things (IOT) devices around the world using a piece of malware it developed. The tool, which Claroty calls IOControl, was a Linux-based backdoor that hid its communications in a protocol known as MQTT used by IOT devices. It had been planted on everything from routers to cameras to industrial control systems. Dragos says it found devices infected by the group worldwide, from the US to Europe to Australia.

According to Claroty and Dragos, the FBI took control of the command-and-control server for IOControl at the same time as Claroty’s December report, neutralizing the malware. (The FBI didn’t respond to WIRED’s request for comment about the operation.) But CyberAv3ngers’ hacking campaign nonetheless shows a dangerous evolution in the group’s tactics and motives, according to Noam Moshe, who tracks the group for Claroty.

“We’re seeing CyberAv3ngers moving from the world of opportunistic attackers where their whole goal was spreading a message into the realm of a persistent threat,” Moshe says. In the IOControl hacking campaign, he adds, “they wanted to be able to infect all kinds of assets that they identify as critical and just leave their malware there as an option for the future.”

Exactly what the group might have been waiting for—possibly some strategic moment when the Iranian government could gain a geopolitical advantage from causing widespread digital disruption—is far from clear. But the group’s actions suggest that it’s no longer seeking to merely send a message of protest against Israeli military actions. Instead, Moshe argues, it’s trying to gain the ability to disrupt foreign infrastructure at will.

“This is like a red button on their desk. At a moment’s notice they want to be able to attack many different segments, many different industries, many different organizations, however they choose,” he says. “And they’re not going away.”



Source link

Related posts

Why the Artemis II Crew Stays in Quarantine Before Their Journey to Moon

Why the Artemis II Crew Stays in Quarantine Before Their Journey to Moon

February 7, 2026
New York Is the Latest State to Consider a Data Center Pause

New York Is the Latest State to Consider a Data Center Pause

February 7, 2026
Previous Post

Meta Helps MTN Boost WhatsApp Call Quality Across Africa

Next Post

Shell commends Oloibiri Lecture Series as platform for change – EnviroNews

Next Post
Shell commends Oloibiri Lecture Series as platform for change – EnviroNews

Shell commends Oloibiri Lecture Series as platform for change - EnviroNews

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

FTC seeks to modify rule to combat deepfakes

FTC seeks to modify rule to combat deepfakes

2 years ago
Kenya diaspora remittances grew as shilling drops against us dollar

Kenya diaspora remittances grew as shilling drops against us dollar

3 years ago
President Suluhu’s mention of the word ‘Azimio alarms Ruto

President Suluhu’s mention of the word ‘Azimio alarms Ruto

2 years ago
Giant Shepard Fairey work calling for ceasefire in Gaza unfurled at Reina Sofia museum in Madrid

Giant Shepard Fairey work calling for ceasefire in Gaza unfurled at Reina Sofia museum in Madrid

2 years ago

POPULAR NEWS

  • Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    0 shares
    Share 0 Tweet 0
  • The world’s top 10 most valuable car brands in 2025

    0 shares
    Share 0 Tweet 0
  • Top 10 African countries with the highest GDP per capita in 2025

    0 shares
    Share 0 Tweet 0
  • Global ranking of Top 5 smartphone brands in Q3, 2024

    0 shares
    Share 0 Tweet 0
  • When Will SHIB Reach $1? Here’s What ChatGPT Says

    0 shares
    Share 0 Tweet 0

Get strategic intelligence you won’t find anywhere else. Subscribe to the Limitless Beliefs Newsletter for monthly insights on overlooked business opportunities across Africa.

Subscription Form

© 2026 LBNN – All rights reserved.

Privacy Policy | About Us | Contact

Tiktok Youtube Telegram Instagram Linkedin X-twitter
No Result
View All Result
  • Home
  • Business
  • Politics
  • Markets
  • Crypto
  • Economics
    • Manufacturing
    • Real Estate
    • Infrastructure
  • Finance
  • Energy
  • Creator Economy
  • Wealth Management
  • Taxes
  • Telecoms
  • Military & Defense
  • Careers
  • Technology
  • Artificial Intelligence
  • Investigative journalism
  • Art & Culture
  • LBNN Blueprints
  • Quizzes
    • Enneagram quiz
  • Fashion Intelligence

© 2023 LBNN - All rights reserved.