Operation IconCat — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
July 22, 2026
Last Seen
July 22, 2026

Operation IconCat is a threat campaign tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.

Operation IconCat is a threat campaign tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed July 22, 2026; most recent activity July 22, 2026.

Related Threat Clusters

  • MuddyWater Targets U.S. Entities Amid Geopolitical Tensions

    In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…

    16 articles · Updated July 22, 2026

Recent Intelligence Reports

  • Iran's APTs and the US Enterprise in 2026 — Kelacyber · July 22, 2026
  • MuddyWater in 2026: Iran's APT Hits U.S. Targets — Kelacyber · July 22, 2026

Frequently asked questions

What is Operation IconCat?

Operation IconCat is a threat campaign tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.

Is Operation IconCat still active?

The most recent intelligence report mentioning Operation IconCat on ThreatCluster is dated July 22, 2026.

What is Operation IconCat associated with?

Across ThreatCluster reporting, Operation IconCat most frequently co-occurs with Apt34, APT42, MuddyWater, Prince Of Persia, UNK_SmudgedSerpent, among 12 tracked related entities.

What are the latest developments involving Operation IconCat?

The most significant recent cluster is “MuddyWater Targets U.S. Entities Amid Geopolitical Tensions” (16 articles · Updated July 22, 2026). Operation IconCat appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on Operation IconCat?

Operation IconCat appears in 2 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown