Uptime Hamster: 10d 18h 4mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Cyber Toufan

Cyber Toufan

0 incidentes 0 paises 0 sectores apt IR Ultimo: -
Ver en IntelTracker → APTTrail →
Cyber Toufan, also known as Cyber Toufan al-Aqsa or Toufan Hackers, first emerged in November 2023. This group is assessed with high confidence to be of Iranian origin, functioning as a state-sponsored entity whose activities align with broader geopolitical objectives in the Middle East. Their primary motivation is not financial gain but political and psychological disruption, specifically targeting entities connected to Israel to damage reputations, erode trust, and generate public pressure through widespread data leaks. What specifically distinguishes Cyber Toufan from other groups is their consistent reliance on exploiting basic cybersecurity vulnerabilities, such as weak or reused credentials and a lack of multi-factor authentication, rather than employing sophisticated zero-day exploits or unique custom malware. They frequently execute supply chain attacks by compromising third-party service providers to gain access to a multitude of primary targets.

Actores similares

toufanransomware · 2apt-cyberbitactor · 1cyber-berkutactor · 1cyber-fighters-of-izz-adactor · 1cyber-caliphate-army--ccaactor · 1cyber-partisansactor · 1newromanic-cyber-army-teaactor · 1Cyber Army of Russia Rebornapt · 0Cyber Partisansapt · 0Cyber Av3ngersapt · 0
Tecnicas MITRE
T1059.001, T1203, T1078.003, T1566.001
Tipo
apt
Pais origen
IR
Motivacion
-
Impacto
31
Actualizado
Sat, 13 Ja

Sectores objetivo (SOCRadar)

Grantmaking and Giving ServicesNational Security and International AffairsComputer Systems Design and Related ServicesResearch and Development in the Social Sciences and HumanitiesNational Security