Iran Has Stopped A Large Scale Infrastructure Attack

The Iranian AFTA Strategic Management Centre, which is the national  presidential strategic management centre, have stopped a widespread cyber attack on the country's infrastructure.  

According to a statement AFTA says it has  succeeded in fending off the cyber attack on the back of “timely action” taken by its security operations command centre. 

The cyber attackers apparently were planning to exploit a security gap in software most widely used by infrastructure organisations in Iran.

“The hackers were planning to exploit the security hole in one of the widely used applications at Iranian organisations to get access to the infrastructures and their data, inject them their own malware, and give them their desired commands,” said AFTA  in a statement . AFTA experts managed to discover the “clues and the behavioral patterns” used in the cyber raid and detect the ultimate targets, which included over 100 important e-services in both state and private sectors of the country.

AFTA claimed that they succeeded in denying permission for IP addresses from the Netherlands, US and UK from accessing "back doors" in the flawed software.

Iran’s state organisations and nuclear facilities have repeatedly been the target of cyber assaults by Israel and the United States. In one of the latest such acts of sabotage, an Israeli cyber raid caused a temporary outage at gas stations in large cities across Iran in October 2021. In 2011, the US and Israel collaborated in a cyber attack on Iran’s nuclear program, using a piece of malware known as Stuxnet

In December 2021 Iran's Ambassador to the United Nations underlined Tehran’s opposition to inference in the internal affairs of the states, saying that his country is itself a victim of cyberattacks by the US and Israel. “Iran has been the victim of a number of cyber-attacks, including the 2010 Stuxnet malware attacks against its critical infrastructure by the US and Israel. Since 2010, these illegal acts have intensified and still continue.... We believe that this Group is in the best position to address this irresponsible behavior and build upon the desire to end such reckless activities,” the ambassador said.

Iran says that like many other countries in the world, it is exposed to cyber threats, and the country has been one of the main targets of cyber attacks by enemies against its peaceful nuclear program, oil infrastructure and government institutions in recent years.

It also says that there is ample evidence that many attacks around the world using advanced cyber weapons are carried out jointly by the US National Security Agency (NSA), the Zionist regime and British intelligence agencies, including the Government Communications Headquarters (GCHQ), in some cases, criminal groups also carry out these attacks on their behalf, Iranian sources claim.

JPost:    IFPNews:    FarsNews:    MiddleEast24:     Iran Press

You Might Also Read: 

Israel & Iran Locked In Cyber Conflict:
 

« Elon Musk's Deal To Buy Twitter
Cyber Security Weak Points That Business Leaders Should Know About »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

Watch this webinar to hear security experts from Amazon Web Services (AWS) and SANS break down the myths and realities of what an NGFW is, how to use one, and what it can do for your security posture.

VMworld

VMworld

VMworld is a global conference for virtualization and cloud computing, including associated security issues.

Howden Broking Group

Howden Broking Group

Howden provides a range of specialist insurance solutions to clients around the world including Cyber Liability insurance.

Rhebo

Rhebo

Rhebo Industrial Protector monitors and ensures the continuous, correct, and predictable operation of real-time Industrial Control Systems to prevent outages and reduce downtimes.

Cyber Security Raad (CSR) - Netherlands

Cyber Security Raad (CSR) - Netherlands

The Cyber Security Council (CSR) is a national, independent advisory body of the Dutch government undertaking efforts at strategic level to bolster cyber security in the Netherlands.

CloudVector

CloudVector

CloudVector's API Detection & Response platform is the only API Threat Protection solution that goes beyond the gateway to provide Shadow API Prevention and Deep API Risk Monitoring and Remediation.

Startup Wise Guys

Startup Wise Guys

Startup Wise Guys is a mentorship-driven accelerator program for early stage B2B SaaS, Fintech, Cybersecurity & Defense AI startups.

CYRISMA

CYRISMA

CYRISMA is a revolutionary cybersecurity platform that helps organizations manage risk without the usual headaches associated with enterprise cybersecurity tools.

Control System Cyber Security Association International (CS2AI)

Control System Cyber Security Association International (CS2AI)

CS2AI is the premier global not for profit workforce development organization supporting professionals of all levels charged with securing control systems.

EYE Security

EYE Security

EYE provides enterprise-grade cyber security services and cyber insurance to SMEs in Europe, Cyber Incident Response and strategic advice in board rooms.

Secureframe

Secureframe

Companies from startups to enterprises use Secureframe to automate SOC 2 and ISO 27001 compliance, complete audits, and continuously monitor their security.

Maxxsure

Maxxsure

Maxxsure provides a platform for executive management, leveraging proprietary technology that identifies, measures, and scores a company’s cyber risks.

Obrela Security Industries

Obrela Security Industries

Obrela provides security analytics and risk management services to identify, analyze, predict and prevent highly sophisticated security threats in real time.

Stack Identity

Stack Identity

Stack Identity protects access to cloud data by prioritizing identity and access vulnerabilities via a live data attack map.

Methods

Methods

Methods is the leading digital transformation partner for the UK public sector. We care deeply about making our public services better and have been doing this for over 28 years.

Pvotal Technologies

Pvotal Technologies

Pvotal Technologies engineer complex, automated processes aligned with best AIOps, BizDevOps, DevSecOps, CloudOps, and ITOps practices.

Beazley Security

Beazley Security

Beazley Security is a global cyber security firm committed to helping clients develop true cyber resilience: the ability to withstand and recover from any cyberattack.