Zscaler
Dust Specter APT Targets Iraqi Government Officials
First seen 2 Mar 2026, 18:08 UTC
•



+4
•83% similarity
•45.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
In January 2026, Zscaler ThreatLabz identified a suspected Iran-nexus threat actor targeting government officials in Iraq. The campaign involved previously undocumented malware, including SPLITDROP, TWINTASK, TWINTALK, and GHOSTFORM, indicating a significant overlap in tools and techniques with known Iran-nexus APT groups.
ThreatCluster AI
How this analysis works
Timeline
2026-01-01
Zscaler ThreatLabz observes activity by Iran-nexus threat actor
2026-01-01
Previously undocumented malware identified: SPLITDROP, TWINTASK, TWINTALK, GHOSTFORM
2026-03-02
Articles published reporting on the threat actor's activities