Iranian hackers use CHOSEN BRICK Windows malware to spy on targets
Summary
Iranian state-linked hackers are deploying a new Windows malware called CHOSEN BRICK to spy on dissidents, activists, and journalists globally. The malware allows attackers to gain unauthorized access and exfiltrate sensitive information from compromised systems.
IFF Assessment
FOE
This is bad news for defenders as it highlights a new malware strain being used by a state-sponsored threat actor for espionage.
Defender Context
Defenders should be aware of CHOSEN BRICK as a potential threat vector for espionage campaigns, particularly those targeting politically sensitive individuals or organizations. Monitoring for unusual network activity, unauthorized access attempts, and data exfiltration patterns associated with this malware is crucial.