Iran MOIS Colludes With Criminals to Boost Cyberattacks
2026-03-13T08:51:41Z•46718f4d9cf64831d53edd2873eebe77a21af6f945cbd6bad5996372efb7966b
AI-enabled-attacksCVE-2026-21385ai-malwarecisco-firewallcloud-resiliencecommercial-spywarecybercrime-collaborationgithub-actionshealthcare-impactincident-responsenation-statepolicyprivileged-access-managementqualcomm-androidransomwaresupply-chain-compromisetag-poisoningvmware-ariavulnerabilitieszero-day
What happened
A DarkReading roundup of mid-March 2026 cybersecurity developments: widespread nation-state activity and cooperation with cybercriminals (notably Iranian MOIS and pro‑Iranian actors), APT shifts and resurgences (Russia, China, India, North Korea, Pakistan-linked groups) and rising use of AI for scams and malware. Multiple high-impact vulnerabilities and exploits were reported — including an actively exploited Qualcomm Android zero-day (CVE-2026-21385), an exploited VMware Aria Operations command‑injection flaw, and dozens of Cisco firewall bugs (including critical/CVSS 10 issues) — alongside a
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- 46718f4d9cf64831d53edd2873eebe77a21af6f945cbd6bad5996372efb7966b
- Enrichment time
- 2026-03-13T08:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.