Iranian Chafer APT Targeted Air Transportation and Government in Kuwait and Saudi Arabia
released on 2020-05-26 @ 06:38:04 PM
Chafer APT is a threat group with an apparent Iranian link. Bitdefender researchers have found attacks conducted by this actor in the Middle East region, dating back to 2018. The campaigns were based on several tools, including "living off the land" tools, which makes attribution difficult, as well as different hacking tools and a custom built backdoor. Victims of the analyzed campaigns fit into the pattern preferred by this actor, such as air transport and government sectors in the Middle East.