Skip to content
Digital Deceit: Iran's Espionage Empire Exposed | Law-Order

Digital Deceit: Iran's Espionage Empire Exposed | Law-Order

Devdiscourse September 15, 2026

The UK, US, and Netherlands issued a joint advisory Iranian state-linked actors using spyware called 'CHOSEN BRICK' to target dissidents and journalists. The malware steals emails and sensitive data through spear-phishing on platforms like WhatsApp and Telegram, aiming to suppress regime critics.

On Tuesday, a joint cybersecurity advisory was released by Britain, the United States, and the Netherlands, exposing the use of spyware by Iranian state-linked actors to target dissidents, activists, and journalists.

Iranian cyber actors have been employing a spyware family known as "CHOSEN BRICK" to steal emails, messages, and other sensitive information through spear-phishing campaigns on messaging platforms such as WhatsApp and Telegram, according to Britain's National Cyber Security Centre.

The advisory reports that the malware can gather data from lists, emails, and social media accounts, and even access a device's microphone, revealing Iran's strategic use of cyber operations to suppress perceived threats.

(With inputs from agencies.)

Unmasking 'CHOSEN BRICK': Iran's Digital Surveillance Weapon

Unmasking 'CHOSEN BRICK': Iran's Digital Surveillance Weapon

U.S. Treasury Secretary Addresses Rising Bond Yields Amid Global Challenges

U.S. Treasury Secretary Addresses Rising Bond Yields Amid Global Challenges

U.S. Treasury Secretary to Meet Chinese Vice Premier Ahead of Trump-Xi Talks

U.S. Treasury Secretary to Meet Chinese Vice Premier Ahead of Trump-Xi Talks

Global Alert: Iranian Spyware Targeting Activists Revealed

Global Alert: Iranian Spyware Targeting Activists Revealed

Global Headlines: Sanctions, Politics & Social Unrest

Global Headlines: Sanctions, Politics & Social Unrest

Extracted Entities

Malware (1)

MITRE ATT&CK (1)

Platforms (2)