MaxPinner Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
December 19, 2025
Last Seen
January 16, 2026

MaxPinner is a malware family linked to the Iranian Prince of Persia (PoP) APT in recent threat reporting.

Overview

MaxPinner is a malware family linked to the Iranian Prince of Persia (PoP) APT in recent threat reporting. The coverage indicates PoP is expanding its toolkit with multiple variants—Infy, Foudre, and Tonnerre—and introducing a revamped C2 infrastructure, signaling renewed capability and ongoing espionage activity.

Related Threat Clusters

Recent Intelligence Reports

  • Prince of Persia APT Analysis: Infy, Foudre, and Tonnerre Malware — Socprime · January 16, 2026
  • Iranian APT Prince of Persia returns with new malware and C2 infrastructure — Csoonline · December 19, 2025

CVSS v3.1 Breakdown