Cyber Retaliation: Analyzing Iranian Cyber Activity Following Operation Epic Fury

2026-03-12T20:52:22Z88e1cc2b8af35b07aaf3b1e7cacd890a84f71a512f4e2837fc21acc8d52c610f
DDoSIP camera vulnerabilitiesMOISOperation Epic FuryTenable RSOattribution evasionbotnet activitycritical infrastructurecyber retaliationiranian threat actorsransomwaretechnology sector targetingwiper

What happened

Tenable Research (RSO) reports that following Operation Epic Fury Iranian-linked threat actors have shifted from espionage to coordinated, hybrid offensive operations focused on disruptive and destructive attacks against critical infrastructure and opportunistic targets. MOIS-associated actors are increasingly leveraging cybercriminal infrastructure to frustrate attribution, and there is a notable rise in exploitation of known vulnerabilities in IP cameras; the analysis was updated to note increased targeting of technology companies. Tenable recommends patching known exploitable flaws, hard‑en

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
tenable_blog
Record identifier
88e1cc2b8af35b07aaf3b1e7cacd890a84f71a512f4e2837fc21acc8d52c610f
Enrichment time
2026-03-12T20:52:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Cyber Retaliation: Analyzing Iranian Cyber Activity Following Operation Epic Fury · Baitaphish