Hijacking of Iranian hacking infrastructure
Date of report
  • October 2019
The Russian threat actor Turla took over an Iranian espionage operation belonging to Iranian-linked APT 34 (aka Oilrig) and used it to attack a number of targets while masquerading as Iran.
Suspected victims
  • Military, government, scientific organizations, and universities in the Middle East and across the world
Suspected state sponsor
  • Russian Federation
Type of incident
  • Espionage
Target category
  • Military
  • Government
  • Civil society