Shamoon Group
0 incidentes
0 paises
0 sectores
apt IR Ultimo: -
Aliases: Cutting Sword of Justice
Shamoon Group is an Iranian state-linked threat actor primarily associated with destructive cyber operations that leverage wiper malware, first emerging in August 2012. The group's primary motivation is destructive cyber warfare, often politically motivated, aiming to render systems inoperable rather than financial gain. Shamoon is distinguished by its use of specialized wiper malware, known as Disttrack, which is designed to overwrite the Master Boot Record (MBR) and files on infected systems, causing irreversible data loss. The group has undergone notable evolutions, with new variants like Shamoon 2 (2016) and Shamoon 3 (2018) exhibiting refined destructive capabilities and expanded toolsets. The group is also known by the alias Cutting Sword of Justice, a name used to claim responsibility for its initial, high-profile attacks.
Sectores objetivo (SOCRadar)
National Security