30 year old Iranian hacker Nima Golestaneh was extradited to the US from Turkey last year suspected of hacking attack against American military aerospace contractor Arrow Tech Associates (Vermont, USA).
In October 2012 Golestaneh broke into the servers of the company which builds ballistics prediction and testing software, and accessed its databases in attempt to steal software worth $millions.
US investigators identified that Golestaneh was in Turkey and he was then extradited to the US last year for trial on charges of wire fraud, unauthorized access to computers and money laundering.
However Golestaneh was pardoned by the United States and sent back to the Islamic Republic before being sentenced.
It seems that Golestaneh was part of an active Iranian hacking team that targets both US infrastructure and defense companies as well as the Las Vegas Sands casino email system.
Showing posts with label hacker. Show all posts
Showing posts with label hacker. Show all posts
Thursday, January 21, 2016
US Releases Iranian Hacker
Labels:
Arrow Tech,
casino,
email,
hacker,
Iranian,
las vegas,
Nima Golestaneh,
Sands,
Turkey,
USA
Thursday, May 15, 2014
Operation Saffron Rose
Ajax
Security Team
which has been targeting both US defense companies as well as those
in Iran is using popular anti-censorship tools to bypass internet
censorship controls in the country.
This
group which has its roots in popular Iranian hacker forums such as
Ashiyane
and Shabgard,
has engaged in website defacements since 2010. However by 2014 this
group is transitioned to malware-based espionage with use of
methodology consistent with other advanced persistent threats in this
region.
It
is unclear if the Ajax Security Team operates in isolation or is part
of a larger coordinated effort. We observed this group uses varied
social engineering tactics to lure targets to infect themselves with
malware. They use malware tools that do not appear to be publicly
available. Although we did not see the use of to infect victims,
members of the Ajax Security Team previously used exploit code in web
site defacement operations.
The
objectives of this group are consistent with Iran’s efforts to
control political dissent and expand offensive cyber capabilities but
we believe that members of the group may also be involved in
traditional cybercrime. This indicates that there is a considerable
gray area between the cyber espionage capabilities of Iran hacker
groups and any direct Iranian government or military involvement.
Although
the Ajax Security Team’s capabilities remain unclear, we believe
that their current operations are somewhat successful. We assess that
if these actors continued the current pace of their operations they
will improve their capabilities in the mid-term.
Labels:
Ajax Security Team,
anti-censorship,
Ashiyane,
cybercrime,
defacement,
hacker,
iran,
malware,
Shabgard,
social engineering,
US
Subscribe to:
Posts (Atom)
-
Last month the UN General Assembly once again condemned Iran for its continuing and systematic violations of human rights. Sunday 10 Decembe...
-
Since my last post in October, there has been no confirmation of which group was behind the cyber-attack on Westminster, or the role of the ...
-
Iranian Hacking group Phosphorus also known as APT35 and Charming Kitten Cyber Reason reports that Iranian Hacking group Phosphorus als...
-
In September Iran newspaper Khabaronline claimed that Viber conversations can be monitored by Iranian government agencies. In...
-
Turkey is in process of recovering from a major power cut that brought the country almost to a stop. According to some media reports...
-
Local media in India report that cyber attacks from Iran are on the rise. Local media reports indicate that schools and banks as well as gov...
-
On one of the official webpages of the popular TrueCrypt encryption program it is written that development has ended suddenly and warn...
-
Numerous sources have reported that the Iranian regime launched a missile called Zoljaneh a day after its commitment to resume nuclear talks...

