Iran MOIS Colludes With Criminals to Boost Cyberattacks

2026-03-13T08:51:41Z46718f4d9cf64831d53edd2873eebe77a21af6f945cbd6bad5996372efb7966b
AI-enabled-attacksCVE-2026-21385ai-malwarecisco-firewallcloud-resiliencecommercial-spywarecybercrime-collaborationgithub-actionshealthcare-impactincident-responsenation-statepolicyprivileged-access-managementqualcomm-androidransomwaresupply-chain-compromisetag-poisoningvmware-ariavulnerabilitieszero-day

What happened

A DarkReading roundup of mid-March 2026 cybersecurity developments: widespread nation-state activity and cooperation with cybercriminals (notably Iranian MOIS and pro‑Iranian actors), APT shifts and resurgences (Russia, China, India, North Korea, Pakistan-linked groups) and rising use of AI for scams and malware. Multiple high-impact vulnerabilities and exploits were reported — including an actively exploited Qualcomm Android zero-day (CVE-2026-21385), an exploited VMware Aria Operations command‑injection flaw, and dozens of Cisco firewall bugs (including critical/CVSS 10 issues) — alongside a

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
darkreading
Record identifier
46718f4d9cf64831d53edd2873eebe77a21af6f945cbd6bad5996372efb7966b
Enrichment time
2026-03-13T08:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.