{"id":10723,"date":"2021-08-04T00:00:00","date_gmt":"2021-08-04T00:00:00","guid":{"rendered":"http:\/\/localhost\/cyber-operations\/targeting-of-iranian-reformists\/"},"modified":"2021-08-04T00:00:00","modified_gmt":"2021-08-04T00:00:00","slug":"targeting-of-iranian-reformists","status":"publish","type":"post","link":"https:\/\/www.cfr.org\/cyber-operations\/targeting-of-iranian-reformists","title":{"rendered":"Targeting of Iranian reformists"},"content":{"rendered":"<p>Iranian-linked threat actor Charming Kitten deployed Android malware and WhatsApp exploits to spy on reformist politicians within the country. The Android malware, known as LittleLooter, was especially sophisticated and was able to record almost all actions taken on a compromised device.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Iranian-linked threat actor Charming Kitten deployed Android malware and WhatsApp exploits to spy on reformist politicians within the country. The Android malware, known as LittleLooter, was especially sophisticated and was able to record almost all actions taken on a compromised device.<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_cloudinary_featured_overwrite":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[2],"tags":[],"cyber_operation":[49],"state_sponsor":[76],"victim_category":[32],"victim_government_response":[],"victim":[77],"class_list":["post-10723","post","type-post","status-publish","format-standard","hentry","category-incident","cyber_operation-espionage","state_sponsor-iran-islamic-republic-of","victim_category-civil-society","victim-iran-islamic-republic-of"],"acf":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts\/10723","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/comments?post=10723"}],"version-history":[{"count":0,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/posts\/10723\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/media?parent=10723"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/categories?post=10723"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/tags?post=10723"},{"taxonomy":"cyber_operation","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/cyber_operation?post=10723"},{"taxonomy":"state_sponsor","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/state_sponsor?post=10723"},{"taxonomy":"victim_category","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim_category?post=10723"},{"taxonomy":"victim_government_response","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim_government_response?post=10723"},{"taxonomy":"victim","embeddable":true,"href":"https:\/\/www.cfr.org\/cyber-operations\/wp-json\/wp\/v2\/victim?post=10723"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}