Skip to content
Iran-Linked TA453 and TA473 Launch Phishing Campaigns Amid War Tensions

Iran-Linked TA453 and TA473 Launch Phishing Campaigns Amid War Tensions

First seen 13 Mar 2026, 16:14 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 15, 2026 at 09:31 UTC
  • •TA453 and TA473 are Iranian cyber groups targeting organizations through phishing.
  • •The campaigns exploit current geopolitical tensions related to Iran.
  • •Organizations in government, technology, and finance are particularly affected.

The Iranian cyber groups TA453 and TA473 have initiated phishing campaigns targeting various organizations, leveraging the current geopolitical tensions surrounding Iran. These campaigns primarily use social engineering tactics to deceive victims into revealing sensitive information. The attacks have been reported to affect individuals in sectors such as government, technology, and finance. Specific tools and techniques employed include malicious links and spoofed emails designed to mimic legitimate communications. The scope of the impact remains under assessment, but initial reports indicate a significant number of phishing attempts. Security experts are advising organizations to enhance their email filtering and user training to mitigate risks. The campaigns are ongoing, with no confirmed end date at this time. As the geopolitical situation evolves, the threat landscape is expected to remain dynamic.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 193d ago How this analysis works

Timeline

2026-03-13
Phishing campaigns by TA453 and TA473 reported
Recent
Security experts issue warnings and mitigation advice

More articles in this cluster (2)

Following this threat?

Track Ta453 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed