Iranian Ransomware Programs Take Cybersecurity Experts by Surprise

Ransomware encrypts files on a victim’s computer. The perpetrator then demands ransom payments in exchange for decrypting the files and sometimes also threatens to leak the victim’s data. (Reuters)
Ransomware encrypts files on a victim’s computer. The perpetrator then demands ransom payments in exchange for decrypting the files and sometimes also threatens to leak the victim’s data. (Reuters)
TT

Iranian Ransomware Programs Take Cybersecurity Experts by Surprise

Ransomware encrypts files on a victim’s computer. The perpetrator then demands ransom payments in exchange for decrypting the files and sometimes also threatens to leak the victim’s data. (Reuters)
Ransomware encrypts files on a victim’s computer. The perpetrator then demands ransom payments in exchange for decrypting the files and sometimes also threatens to leak the victim’s data. (Reuters)

Iranian hackers have recently launched cyberattacks against vital institutions and facilities in the United States, raising the concern of law enforcement authorities in the country.

These attacks are added to various others launched by several parties against the US.

With much attention this year on Russian ransomware attacks against the US, the Iranian threat may come as a surprise, said a report by the Foreign Policy magazine, adding that Iranian ransomware groups were quietly emerging as a global force to be reckoned with elsewhere in the world.

On November, the US, Britain and Australia issued a joint warning that Iranian actors have conducted ransomware attacks against US targets and gained access to a wide range of critical infrastructure networks, including the children’s hospital, that would enable more attacks, the report read.

Experts in the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), the Australian Cyber Security Center (ACSC) and the United Kingdom’s National Cyber Security Center (NCSC) found out that an ongoing malicious cyber activity by an advanced persistent threat (APT) group is associated with the government of Iran.

Ransomware encrypts files on a victim’s computer. The perpetrator then demands ransom payments in exchange for decrypting the files and sometimes also threatens to leak the victim’s data.

“The Iranian government-sponsored APT actors are actively targeting a broad range of victims across multiple US critical infrastructure sectors,” the experts warned.

While Iranian ransomware may be relatively unfamiliar to Americans, it has been a part of everyday life in Israel for more than a year, the US magazine noted.

“Iranian actors have targeted almost every sector of Israel’s economy and society.”

The report pointed out that Iran’s successful use of ransomware against Israel has likely emboldened it to expand its focus to the United States.

In September 2020, an Israeli cybersecurity firm first detected Iranian ransomware activity against unspecified “prominent Israeli organizations.”

Another hacking group, Black Shadow, believed to be linked to Iran, was accused of carrying out a major cyberattack in October targeting an Internet service provider in Israel.

The report warned that Iran’s ransomware campaign appears to be on the brink of global expansion.

In 2019, a report prepared by researchers at the US giant Microsoft Corporation said that Iranian hackers are working to infiltrate systems, companies and governments around the world, causing damages amounting to hundreds of millions of dollars.

Some believe these attacks may be part of Iran’s attempts not only to influence cybersecurity and its open conflict with its “rivals” but also to obtain foreign cash, especially the US dollar, to break the blockade imposed on it.



Russia: Man Suspected of Shooting Top General Detained in Dubai

An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
TT

Russia: Man Suspected of Shooting Top General Detained in Dubai

An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova
An investigator works outside a residential building where the assassination attempt on Russian Lieutenant General Vladimir Alexeyev took place in Moscow, Russia February 6, 2026. REUTERS/Anastasia Barashkova

Russia's Federal Security Service (FSB) said on Sunday that the man suspected of shooting top Russian military intelligence officer Vladimir Alexeyev in Moscow has been detained in Dubai and handed over to Russia.

Lieutenant General Vladimir Alexeyev, deputy head of the GRU, ⁠Russia's military intelligence arm, was shot several times in an apartment block in Moscow on Friday, investigators said. He underwent surgery after the shooting, Russian media ⁠said.

The FSB said a Russian citizen named Lyubomir Korba was detained in Dubai on suspicion of carrying out the shooting.

Russian Foreign Minister Sergei Lavrov accused Ukraine of being behind the assassination attempt, which he said was designed to sabotage peace talks. ⁠Ukraine said it had nothing to do with the shooting.

Alexeyev's boss, Admiral Igor Kostyukov, the head of the GRU, has been leading Russia's delegation in negotiations with Ukraine in Abu Dhabi on security-related aspects of a potential peace deal.


Factory Explosion Kills 8 in Northern China

Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
TT

Factory Explosion Kills 8 in Northern China

Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo
Employees work on an electric vehicle (EV) production line at the Volkswagen Anhui factory in Hefei, Anhui province, China, February 4, 2026. REUTERS/Florence Lo

An explosion at a biotech factory in northern China has killed eight people, Chinese state media reported Sunday, increasing the total number of fatalities by one.

State news agency Xinhua had previously reported that seven people died and one person was missing after the Saturday morning explosion at the Jiapeng biotech company in Shanxi province, citing local authorities.

Later, Xinhua said eight were dead, adding that the firm's legal representative had been taken into custody.

The company is located in Shanyin County, about 400 kilometers west of Beijing, AFP reported.

Xinhua said clean-up operations were ongoing, noting that reporters observed dark yellow smoke emanating from the site of the explosion.

Authorities have established a team to investigate the cause of the blast, the report added.

Industrial accidents are common in China due to lax safety standards.
In late January, an explosion at a steel factory in the neighboring province of Inner Mongolia left at least nine people dead.


Iran Warns Will Not Give Up Enrichment Despite US War Threat

Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
TT

Iran Warns Will Not Give Up Enrichment Despite US War Threat

Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)
Traffic moves through a street in Tehran on February 7, 2026. (Photo by ATTA KENARE / AFP)

Iran will never surrender the right to enrich uranium, even if war "is imposed on us,” its foreign minister said Sunday, defying pressure from Washington.

"Iran has paid a very heavy price for its peaceful nuclear program and for uranium enrichment," Abbas Araghchi told a forum in Tehran.

"Why do we insist so much on enrichment and refuse to give it up even if a war is imposed on us? Because no one has the right to dictate our behavior," he said, two days after he met US envoy Steve Witkoff in Oman.

The foreign minister also declared that his country was not intimidated by the US naval deployment in the Gulf.

"Their military deployment in the region does not scare us," Araghchi said.