Uptime Hamster: 10d 13h 52mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Shamoon Group

Shamoon Group

0 incidentes 0 paises 0 sectores apt IR Ultimo: -
Aliases: Cutting Sword of Justice
Ver en IntelTracker → APTTrail →
Shamoon Group is an Iranian state-linked threat actor primarily associated with destructive cyber operations that leverage wiper malware, first emerging in August 2012. The group's primary motivation is destructive cyber warfare, often politically motivated, aiming to render systems inoperable rather than financial gain. Shamoon is distinguished by its use of specialized wiper malware, known as Disttrack, which is designed to overwrite the Master Boot Record (MBR) and files on infected systems, causing irreversible data loss. The group has undergone notable evolutions, with new variants like Shamoon 2 (2016) and Shamoon 3 (2018) exhibiting refined destructive capabilities and expanded toolsets. The group is also known by the alias Cutting Sword of Justice, a name used to claim responsibility for its initial, high-profile attacks.

Aliases del actor

Cutting Sword of Justice

Actores similares

silentransomgroupactor · 36GroupIB_TIactor · 11bonacigroupransomware · 2thegreenbloodgroupransomware · 2vanirgroupransomware · 2SilentRansomGroupactor · 2the-green-blood-groupactor · 2apt-equationgroupactor · 1apt-group5actor · 1apt-shamoonactor · 1
Tipo
apt
Pais origen
IR
Motivacion
-
Impacto
2
Actualizado
Tue, 14 Ap

Sectores objetivo (SOCRadar)

National Security