Mandiant Reports on UNC1549 Espionage Campaigns Targeting Aerospace and Defense
First seen 2 Dec 2025, 18:33 UTC
•


•25.6
Export
Article Content
Browse articles
Mandiant has identified a surge in targeted campaigns by the threat group UNC1549, suspected to be linked to Iran, focusing on the aerospace, aviation, and defense sectors in the Middle East. Since mid-2024, these campaigns have employed various tactics, techniques, and procedures (TTPs), including phishing lures to gain initial access to their targets.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Mirage Kitten Targets Aviation and FinTech with New Cross-Platform Malware
Iranian Hackers Target US Aviation with New Malware and SEO Poisoning
Tortoiseshell Expands Malware Arsenal with New Backdoor and SSH Tunneling Tool
Mirage Kitten Malware Targets Middle East and Africa with New Toolset
Critical Command Injection Vulnerability in Cobham SATCOM Routers
Nimbus Manticore APT Targets Aerospace Sector with Fake Job Schemes