Thamar Reservoir – An Iranian cyber-attack campaign against targets in the Middle East

This report reviews an ongoing cyber-attack campaign dating back to mid-2014. Additional sources indicate it may date as far back as 2011. We call this campaign Thamar Reservoir, named after one of the targets, Thamar E. Gindin, who exposed new information about the attack and is currently assisting with the investigation. The campaign includes several different attacks with the […]

Read More

Attacks against Israeli & Palestinian interests

Recently Clearsky’s researchers collaborated with PwC’s intelligence team while investigating Attacks against Israeli & Palestinian interests. The full post can be read at PwC’s Cyber security updates blog. Here’s the excerpt: “This short report details the techniques being used in a series of attacks mostly against Israel-based organisations. The decoy documents and filenames used in the attacks […]

Read More

Gholee – a “protective edge” themed spear phishing campaign

Introduction During the 2014 Israel–Gaza conflict, dubbed by Israel as “operation protective edge”, a raise in cyber-attacks against Israeli targets was reported. In this report we analyze one case of an operation protective edge themed spear phishing attack. That email contained a malicious excel file, which once opened and its VBA code executed, would infect […]

Read More