Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

CTM360 exposes global WhatsApp hijacking campaign: HackOnChat

New Sturnus Android Trojan silently captures encrypted chats and hijacks devices

Small satellites that have a big impact

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Iran-linked hackers map ship’s AIS data days before actual attempted missile attack
Identity

Iran-linked hackers map ship’s AIS data days before actual attempted missile attack

userBy userNovember 20, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

November 20, 2025Ravi LakshmananCyberwarfare/Threat Intelligence

Iranian-linked attackers are engaging in cyber warfare as part of efforts to facilitate and intensify real-world physical attacks, a trend Amazon refers to as cyber-enabled dynamic targeting.

The development shows that the line between state-sponsored cyberattacks and violent warfare is becoming increasingly blurred, necessitating a new category of warfare, the tech giant’s threat intelligence team said in a report shared with Hacker News.

While traditional cybersecurity frameworks have treated digital and physical threats as separate areas, CJ Moses, CISO at Amazon Integrated Security, said these boundaries are artificial and nation-state threat actors engage in cyber reconnaissance operations that enable dynamic targeting.

Moses added, “These are not just cyberattacks that happen to cause physical damage, but coordinated campaigns with digital operations specifically designed to support physical military targets.”

DFIR retainer service

As an example, Amazon said it observed Imperial Kitten (also known as Tortoise Shell), a hacker group believed to be affiliated with the Iranian Islamic Revolutionary Guards Corps (IRGC), conducting digital reconnaissance from December 2021 to January 2024 targeting ships’ Automatic Identification System (AIS) platforms to gain access to critical transportation infrastructure.

The attacker was subsequently identified attacking additional maritime shipping platforms, and in one case even gained access to CCTV cameras mounted on maritime vessels, providing real-time visual information.

The attack progressed to a targeted intelligence gathering phase on January 27, 2024, when Imperial Kitten conducted targeted searches of AIS location data for specific transport vessels. Just days later, the same ship was the target of an unsuccessful missile attack by Iran-backed Houthi militants.

Houthi forces are believed to have been involved in a series of missile attacks on commercial ships in the Red Sea in support of the Palestinian militant group Hamas in its war with Israel. On February 1, 2024, Yemen’s Houthis claimed to have attacked a US merchant ship named KOI with “several appropriate naval missiles.”

“This incident shows how cyber operations can provide adversaries with the precise information they need to launch targeted physical attacks against maritime infrastructure, which is a critical component of global commerce and military logistics,” Moses said.

Another case study concerns MuddyWater, a threat actor associated with Iran’s Ministry of Intelligence and Security (MOIS), which established infrastructure for cyber network operations in May 2025 and then used that server a month later to access another compromised server containing live CCTV streams from Jerusalem and gather real-time visual intelligence of potential targets.

CIS build kit

On June 23, 2025, around the time Iran launched a widespread missile attack on the city, Israel’s National Cyber ​​Directorate revealed that “Iranians were trying to connect cameras to improve accuracy and understand what was happening and where the missiles hit.”

To carry out these multi-layered attacks, threat actors allegedly routed traffic through anonymizing VPN services, obscuring its true origin and complicating attribution efforts. This finding highlights that espionage-focused attacks may eventually become a launching pad for dynamic targeting.

“State actors are recognizing the force multiplier effect of combining digital reconnaissance with physical attacks,” Amazon said. “This trend represents a fundamental evolution in warfare, as the traditional boundaries between cyber and kinetic operations are dissolving.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleWhere particle physics meets quantum science and technology
Next Article Strengthening the planet’s health through biotech innovation
user
  • Website

Related Posts

CTM360 exposes global WhatsApp hijacking campaign: HackOnChat

November 20, 2025

New Sturnus Android Trojan silently captures encrypted chats and hijacks devices

November 20, 2025

TamperedChef malware spreads via fake software installer in ongoing global campaign

November 20, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

CTM360 exposes global WhatsApp hijacking campaign: HackOnChat

New Sturnus Android Trojan silently captures encrypted chats and hijacks devices

Small satellites that have a big impact

McGill’s multidisciplinary approach to antimicrobial resistance

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Meet Your Digital Twin: Europe’s Cutting-Edge AI is Personalizing Medicine

TwinH: The AI Game-Changer for Faster, More Accessible Legal Services

Immortality is No Longer Science Fiction: TwinH’s AI Breakthrough Could Change Everything

The AI Revolution: Beyond Superintelligence – TwinH Leads the Charge in Personalized, Secure Digital Identities

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.