Threat Actor
APT35
- First Reported
- Mar 4, 2026
- Latest Reported
- Mar 4, 2026
Reported Context (1)
- Tracked with 79 IPs, 2,211 hosts, and 67 SHA-256 hashes. Used WhatsApp spear-phishing and spoofed websites to steal credentials from security and defense-related individuals. Hunt.io Maps Infrastructure Linked to Iranian-Aligned Threat Actors
Malware (4)
Threat Actors (9)
MITRE ATT&CK (11)
Vendors (8)
Products (5)
Tools (3)
Industries (8)
Countries (5)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.