Iran-linked threat actors are actively exploiting edge infrastructure, targeting critical systems, and using destructive malware in live campaigns.

Iran has had near-zero connectivity for 31+ days. But still the cyber operations haven’t slowed. Instead, they’ve intensified.


Four things Cyber security leaders MUST know now:

  • IRGC drones struck three AWS data centers, the first kinetic strike on hyperscale cloud
  • MuddyWater is confirmed pre-positioned inside a US bank, a US airport, and a defense contractor
  • 9 new Iranian malware families surfaced in March alone, including wipers being deployed at scale
  • CISA published an active advisory.
  • The FBI seized MOIS domains. Handala restored them in 24 hours.

We’ve pulled the full picture into one brief: Actors, CVEs being exploited, and sectors being hit. 


As a security leader, it will aid you to figure out what to prioritize.

READ THE IRAN THREAT BRIEF - PART 2
READ THE THREAT BRIEF - PART 2
HivePro Logo

13800 Coppermine Road Dulles Corner, 1st-3rd Floors, Herndon, VA 20171