Iran TerrorismIBM Warns of Iran’s New Cyber Threats

IBM Warns of Iran’s New Cyber Threats

-

Iran hacking threats

By Pooya Stone

IBM has warned that state-sponsored Iranian hackers, notably APT34 “and at least one other group, [also] likely based out of Iran”, have created new “malicious malware” to target “industrial and energy sectors” in the Middle East.

Although no specific companies were identified, the nature of the attack is unsurprising as Iran’s ongoing conflict with America and its allies has made these sectors a target.

APT34 has been in the news several times over the past year, including through its use of LinkedIn during a phishing attack, but the identity of the other group that is more interesting. Cybersecurity experts believe that the other group is Iran’s APT33, possibly the most famous Iranian threat actor, because of the sectors it is targeting and its wiper malware.

APT33 is responsible for the Microsoft Outlook exploit in July, which used its own virtual private network (VPN) to conceal the attack, and the 2012 Shamoon attack on Saudi Aramco, which wiped most of the data from the state-owned energy company’s computers.

The new wiper malware has been named “ZeroCleare” by IBM’s X-Force team, who wrote in their report: “We were not surprised to find that ZeroCleare bears some similarity to the Shamoon malware—ZeroCleare aims to overwrite the Master Boot Record (MBR) and disk partitions on Windows-based machines.”

The malware used EldoS RawDisk to clear the MBR and damage disk partitions on many networked devices. IBM thinks this is the first time that this strain of malware has been used.

The report read: “[This sows] the seeds of a destructive attack that could affect thousands of devices and cause disruption that could take months to fully recover from.”

Iran’s hackers are demonstrating an increasingly advanced set of cyber weapons to target certain industries in the Middle East and this is a big concern for cybersecurity.

IBM said: “[The attacks represent a] low-cost, and potentially non-attributable means of conducting hostile, and even warlike activity, [which has the] potential to disrupt critical services, damage or destroy highly specialized equipment, and ultimately inflict detrimental cascading effects upon global energy security and industries.”

For the Iranian government, cyber warfare means that they can attack states, like Saudi Arabia, the US, and the UK, much more easily and with less danger of retaliation than if they conducted a military strike. Cyberwarfare has become a bigger threat in 2019 and it is only set to get worse in the years to come.

Latest news

Iran’s Regime Forms New Headquarters for Repression and Control of Cyberspace Amidst Internet Blackouts

As widespread internet disruptions and blackouts continue across Iran, reports indicate the formation of a new body called the...

Secret Execution of Two Kurdish Political Prisoners in Naqadeh Prison, Iran

In the early hours of Wednesday, May 20, the death sentences of two Kurdish political prisoners, Ramin Zeleh and...

City Council Member in Zanjan Runs Over Protesting Worker With Car

The state-run Rouydad24 news website wrote on May 19 regarding the protests by Zanjan municipality workers: "Disregard for workers'...

PMOI Confirms Deaths of Resistance Unit Members During 2025–2026 Iran Uprising

As further details emerge from the nationwide uprising that swept across Iran from late 2025 into early 2026, the...

Urban Poverty in Iran: The Collapse of the Economy of Life in Major Cities

Urban poverty in Iran has now reached a stage where it can no longer be explained merely through income...

Gasoline Price Hikes in Iran Trigger a New Battle Over People’s Livelihoods

As Iran’s economic crisis, inflation, and declining purchasing power continue, recent remarks by Hamid Rasai, a member of the...

Must read

Iran Understands Only One Language, the Language of Force

By Mehdi Around the world, people are worried about...

Dubai to curb reliance on Iranian condensate, ENOC’s CEO says

Bloomberg: Dubai’s state refining company, which buys most of...

You might also likeRELATED
Recommended to you