Iranian hackers with multiple faces wreak havoc in Albania and Israel

Published:

spot_img

Check Point Research Exposes Iranian Threat Actor Void Manticore’s Tactics

Iranian Threat Actor Conducts Destructive Wiping Attacks and Influence Operations

A recent report by Check Point Research has uncovered a series of destructive wiping attacks and influence operations conducted by an Iranian threat actor affiliated with the Ministry of Intelligence and Security (MOIS). Known as Void Manticore, this threat actor has been targeting countries like Israel and Albania with sophisticated cyberattacks.

Void Manticore is known for adopting various online personas, such as “Homeland Justice” and “Karma,” to carry out its operations in different regions. The threat actor’s tactics involve a dual approach, combining data destruction with psychological warfare to maximize the impact of its attacks.

According to researchers, Void Manticore utilizes custom wipers for both Windows and Linux systems to disrupt operations through file deletion and shared drive manipulation. The group’s tactics are relatively straightforward yet effective, targeting critical files and partition tables to render data inaccessible.

Furthermore, the report highlights the coordination between Void Manticore and another threat actor, Scarred Manticore, in targeting victims. Scarred Manticore is responsible for initial access and data exfiltration, while Void Manticore executes the destructive phase of the operation, amplifying the scale and impact of the attacks.

The overlap in attacks against Israel and Albania suggests a systematic victim targeting strategy by MOIS. Void Manticore’s recent deployment of the BiBi Wiper, named after Israel’s Prime Minister Benjamin Netanyahu, showcases the group’s evolving and sophisticated techniques in cyber warfare.

As cyber threats continue to evolve, it is crucial for organizations and governments to stay vigilant and implement robust cybersecurity measures to protect against such malicious actors.

spot_img

Related articles

Recent articles

Alert: CVE-2025-65998 Exposes Apache Syncope Password Vulnerabilities

A Serious Vulnerability Found in Apache Syncope A new security vulnerability has been identified in Apache Syncope, a popular open-source identity management system. This flaw...

Nemetschek Group Speeds Up Digital Transformation for Big 5 Global 2025

Transforming the Built Environment: The Nemetschek Group at Big 5 Global 2025 As digital tools increasingly shape the future of the construction industry, the Nemetschek...

Why Are Developers and Pen Testers Seeking Dark Web Opportunities?

The Rise of Cybercrime Careers: An In-Depth Look at the Dark Web Job Market Introduction to the Dark Web Job Surge Recent research by Kaspersky has...

Enhancing Data Security with AI Tools

25 Nov AI Tools and Data Security: A Closer Look Jack Fletcher, Senior Director at FTI Consulting, shares insights on AI's growing presence in workplaces...