Washington Warns of Iranian Piracy Targeting World Sectors

An FBI special agent investigates a scene in Queens, New York March 25, 2010. (Reuters)
An FBI special agent investigates a scene in Queens, New York March 25, 2010. (Reuters)
TT

Washington Warns of Iranian Piracy Targeting World Sectors

An FBI special agent investigates a scene in Queens, New York March 25, 2010. (Reuters)
An FBI special agent investigates a scene in Queens, New York March 25, 2010. (Reuters)

In a joint US-UK operation, US security and law enforcement agencies issued a warning of Iranian-affiliated hacking operations targeting a range of government and private organizations in multiple sectors around the world.

The Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), and other British and US agencies were quoted by Reuters as saying that they had observed Iranian entities, known as MuddyWater, carrying out cyber-espionage targeting the defense, local government, oil and natural gas and telecommunications sectors across the globe.

An alert issued by the US Cyber Security Agency stated that it had revealed, in cooperation with the FBI, the US National Cyber Command Force, and the National Cyber Security Center in the United Kingdom, the presence of “a group of Iranian government-sponsored advanced persistent threat (APT) actors, known as MuddyWater, conducting cyber espionage and other malicious cyber operations targeting a range of government and private-sector organizations across sectors…”

The US Cyber Security Agency said that MuddyWater was a “subordinate element within the Iranian Ministry of Intelligence and Security” and had “conducted broad cyber campaigns in support of MOIS objectives since approximately 2018.”

“MuddyWater actors are positioned both to provide stolen data and accesses to the Iranian government and to share these with other malicious cyber actors,” according to the agency.

The alert read: “MuddyWater actors are known to exploit publicly reported vulnerabilities and use open-source tools and strategies to gain access to sensitive data on victims’ systems and deploy ransomware. These actors also maintain persistence on victim networks via tactics such as side-loading dynamic link libraries (DLLs)—to trick legitimate programs into running malware…”

The US warning comes less than two weeks after the Cyber Security Agency had cautioned against a “new storm” of cyber-attacks targeting individuals and facilities.

A report by the FBI and the Cyber Security Agency of the Department of Homeland Security on Feb. 10 disclosed major plans that some hackers might carry out to target civilian facilities and individuals with the aim to cause wider damage.

However, the latest warning pointed specifically to Iran’s MuddyWater which mainly targeted Middle Eastern, European and North American countries. The group’s victims are mainly in the telecommunications and government sectors, as well as oil.

The group was previously associated with the FIN7, but MuddyWater may have been motivated by espionage.

FIN7 has been working on active financially motivated threats since 2013 and primarily targeting the retail, restaurant and hospitality sectors in the United States, often using point-of-sale malware.



China Sends Naval, Air Forces to Shadow US Plane over Taiwan Strait

A ship sails between wind turbines in the Taiwan strait off the coast of Pingtan Island, Fujian province, China, April 10, 2023. (Reuters)
A ship sails between wind turbines in the Taiwan strait off the coast of Pingtan Island, Fujian province, China, April 10, 2023. (Reuters)
TT

China Sends Naval, Air Forces to Shadow US Plane over Taiwan Strait

A ship sails between wind turbines in the Taiwan strait off the coast of Pingtan Island, Fujian province, China, April 10, 2023. (Reuters)
A ship sails between wind turbines in the Taiwan strait off the coast of Pingtan Island, Fujian province, China, April 10, 2023. (Reuters)

China's military said on Tuesday it deployed naval and air forces to monitor and warn a US Navy patrol aircraft that flew through the sensitive Taiwan Strait, denouncing the United States for trying to "mislead" the international community.

Around once a month, US military ships or aircraft pass through or above the waterway that separates democratically governed Taiwan from China - missions that always anger Beijing.

China claims sovereignty over Taiwan and says it has jurisdiction over the strait. Taiwan and the United States dispute that, saying the strait is an international waterway.

The US Navy's 7th fleet said a P-8A Poseidon maritime patrol aircraft had flown through the strait "in international airspace", adding that the flight demonstrated the United States' commitment to a free and open Indo-Pacific.

"By operating within the Taiwan Strait in accordance with international law, the United States upholds the navigational rights and freedoms of all nations," it said in a statement.

China's military criticized the flight as "public hype", adding that it monitored the US aircraft throughout its transit and "effectively" responded to the situation.

"The relevant remarks by the US distort legal principles, confuse public opinion and mislead international perceptions," the military's Eastern Theater Command said in a statement.

"We urge the US side to stop distorting and hyping up and jointly safeguard regional peace and stability."

In April, China's military said it sent fighter jets to monitor and warn a US Navy Poseidon in the Taiwan Strait, a mission that took place just hours after a call between the Chinese and US defense chiefs.