Iran-linked hackers target IP cameras across Israel and Gulf states for military intelligence
2026-03-07T14:51:45Z•e489aae3a6dbc703117ec55d5b8a400c107e03c2a8806b47e2bac11b01da454d
AppleCISA KEVCVE-2023-43000CVE-2026-20122CVE-2026-20128Cisco Catalyst SD-WANClickFixDindoorDust SpecterGoogle GTIGHikvisionIP cameras/BDA (battle damage assessment)Iran-linkedLumma StealerMuddyWaterRockwellSPLITDROPSeedWormTWINTALKTWINTASKWindows Terminalcyber-warfareespionagephishingzero-day
What happened
A recent SecurityAffairs feed highlights multiple high-impact cyber developments: Iran-linked actors are targeting IP cameras across Israel and Gulf states for military intelligence and battle-damage assessment; MuddyWater (SeedWorm) deployed a new Dindoor backdoor against U.S. organizations across critical sectors; Cisco warns active exploitation of two recently patched Catalyst SD‑WAN flaws (CVE-2026-20128, CVE-2026-20122); Microsoft describes a ClickFix social-engineering campaign abusing Windows Terminal to deliver Lumma Stealer; Iran-nexus Dust Specter is phishing Iraqi officials with new
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- e489aae3a6dbc703117ec55d5b8a400c107e03c2a8806b47e2bac11b01da454d
- Enrichment time
- 2026-03-07T14:51:45Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.