Tuesday, June 17, 2025
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

Iran-aligned BladedFeline spies on Iraqi and Kurdish officials, ESET Research discovers

June 5, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 5 mins read
5
SHARES
243
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • ESET researchers have revealed that Iran-aligned threat group BladedFeline targeted Kurdish and Iraqi government officials with array of malicious tools discovered within their systems.
  • ESET discovered and analyzed two reverse tunnels (Laret and Pinar), a backdoor (Whisper), a malicious IIS module (PrimeCache), and various supplementary tools.
  • With high-confidence ESET Researchers assess that BladedFeline is a subgroup within Iran-aligned OilRig, as the initial implants used there can be traced back to OilRig group.
  • BladedFeline already compromised Kurdish diplomatic officials with the group’s Shahmaran signature backdoor in 2023.

MONTREAL and BRATISLAVA, Slovakia, June 05, 2025 (GLOBE NEWSWIRE) — The Iran-aligned threat group BladedFeline has targeted Kurdish and Iraqi government officials in a recent cyber-espionage campaign, according to ESET researchers. The group deployed a range of malicious tools discovered within the compromised systems, indicating a continued effort to maintain and expand access to high-ranking officials and government organizations in Iraq and the Kurdish region. The latest campaign highlights BladedFeline’s evolving capabilities, featuring two tunneling tools (Laret and Pinar), various supplementary tools, and, most notably, a custom backdoor Whisper and a malicious Internet Information Services (IIS) module PrimeCache, both identified and named by ESET.

Whisper logs into a compromised webmail account on a Microsoft Exchange server and uses it to communicate with the attackers via email attachments. PrimeCache also serves as a backdoor: it is a malicious IIS module. PrimeCache also bears similarities to the RDAT backdoor used by OilRig Advanced Persistent Threat (APT) group.

Based on these code similarities, as well as on further evidence presented in this blogpost, ESET assesses that BladedFeline is a very likely subgroup of OilRig, an Iran-aligned APT group going after governments and businesses in the Middle East. The initial implants in the latest campaign can be traced back to OilRig. These tools reflect the group’s strategic focus on persistence and stealth within targeted networks.

BladedFeline has worked consistently to maintain illicit access to Kurdish diplomatic officials, while simultaneously exploiting a regional telecommunications provider in Uzbekistan, and developing and maintaining access to officials in the government of Iraq.

ESET Research assesses that BladedFeline is targeting the Kurdish and Iraqi governments for cyberespionage purposes, with an eye toward maintaining strategic access to the computers of high-ranking officials in both governmental entities. The Kurdish diplomatic relationship with Western nations, coupled with the oil reserves in the Kurdistan region, makes it an enticing target for Iran-aligned threat actors to spy on and potentially manipulate. In Iraq, these threat actors are most probably trying to counter the influence of Western governments following the US invasion and occupation of the country.

In 2023, ESET Research discovered that BladedFeline targeted Kurdish diplomatic officials with the Shahmaran backdoor, and previously reported on its activities in ESET APT Activity reports. The group has been active since at least 2017, when it compromised officials within the Kurdistan Regional Government, but is not the only subgroup of OilRig that ESET Research is monitoring. ESET has been tracking Lyceum, also known as HEXANE or Storm-0133, as another OilRig subgroup. Lyceum focuses on targeting various Israeli organizations, including governmental and local governmental entities and organizations in healthcare.

ESET expects that BladedFeline will persist with implant development in order to maintain and expand access within its compromised victim set for cyberespionage.

For a more detailed analysis and technical breakdown of BladedFeline’s tools used in Operation RoundPress, check out the latest ESET Research blogpost “Whispering in the dark” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET
ESET® provides cutting-edge digital security to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown— securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.

ShareTweet1ShareSendShare2
Previous Post

LyondellBasell enters into an agreement and exclusive negotiations with AEQUITA for the sale of four European Strategic Assessment assets

Next Post

ZenaTech Launches Drone as a Service (DaaS) for US Defense and Government Agencies with New Partnerships

Related Posts

Introducing Kreebo: The AI Storytelling App Helping Kids Unlock Their Inner Genius – Safely and Creatively

Video: https://www.youtube.com/embed/TicW_4AOGVE?si=gr3pgA5OwbsYtBv8New York, NY - 16 June, 2025 - In a world where technology is everywhere and screen time is often met with guilt, one app is flipping the narrative for families. Meet Kreebo, the AI-powered storytelling companion built especially for children-a magical space where imagination blossoms, creativity flows freely,...

Read moreDetails

GL.iNet Launches Comet (GL-RM1): Cutting-Edge Remote KVM Device for Seamless 4K Control and Global Connectivity

Image: https://www.abnewswire.com/upload/2025/06/51d3de8364c79369400d6af37eeb59ba.jpgJune 16, 2025 - GL.iNet , a global leader in secure networking hardware, proudly unveils Comet (GL-RM1) - a plug-and-play remote KVM device, ultra-low latency 4K@30FPS video resolution access to your systems from anywhere in the world. Designed for developers, IT teams, and remote workers, Comet enables full keyboard,...

Read moreDetails

Tire Recycling Downstream Products Market May See a Big Move | Major Giants Genan,EcoGreen,Granutech

Tire Recycling Downstream Products Market HTF MI just released the Global Tire Recycling Downstream Products Market Study, a comprehensive analysis of the market that spans more than 143+ pages and describes the product and industry scope as well as the market prognosis and status for 2025-2032. The marketization process is...

Read moreDetails

Car Wash Equipment Market is Going to Boom | Major Giants WashTec,PDQ,Istobal

Car Wash Equipment Market HTF MI just released the Global Car Wash Equipment Market Study, a comprehensive analysis of the market that spans more than 143+ pages and describes the product and industry scope as well as the market prognosis and status for 2025-2032. The marketization process is being accelerated...

Read moreDetails

Victus Global Launches Real-Time FX Tools Empowering Frontier Markets

Road Town, British Virgin Islands, June 16, 2025 (GLOBE NEWSWIRE) -- In many frontier and emerging markets, local currencies are not a source of stability—they are a source of fear. From Argentina to Nigeria, from Lebanon to Zimbabwe, the value of national currencies has been eroded by inflation, capital controls,...

Read moreDetails

A new way to mine? Use Quid Miner on your phone to solve it!

Cleveland, OH, June 16, 2025 (GLOBE NEWSWIRE) -- The British compliance platform Quid Miner officially released its mobile application, marking the official entry of cloud mining into the "palm-held era". It not only brings users a more convenient and flexible operating experience, but also makes "cloud mining anytime, anywhere" a...

Read moreDetails

Power Queen’s Father’s Day Hot Battery Offer Opens for a Limited Time

Shenzhen, China, June 16, 2025 (GLOBE NEWSWIRE) -- To Celebrate the Father's Day, Power Queen is still offering a special limited time offer on all lithium iron phosphate batteries to honor every father who silently guards his family with high performance and high safety products. Whether it's a father who loves...

Read moreDetails

OTOFIX Introduces the D1 Lite Diagnostic Tool, Purpose-Built for Small Garage Technicians

Shenzhen, China, June 16, 2025 (GLOBE NEWSWIRE) -- OTOFIX has just introduced the D1 Lite, a compact diagnostic tool designed for small garages, mobile technicians, and students in training. Available at https://otofix.store, it offers key diagnostic features typically found in higher-end models at a price point meant to support independent repair professionals and...

Read moreDetails

Kaleris and Port of Tanjung Pelepas Recognized for Advancement Optimization With 2025 Top Supply Chain Projects Award

ATLANTA, June 16, 2025 (GLOBE NEWSWIRE) -- Kaleris, a leading provider of supply chain execution software, and Port of Tanjung Pelepas (PTP), Malaysia’s largest transshipment hub, have been recognized with the 2025 Top Supply Chain Projects Award. Presented by Supply & Demand Chain Executive, the only publication covering the entire global...

Read moreDetails

Shoals Technologies Group, Inc. Appoints Industry Veteran, Bobbie L. King, Jr., as Chief Legal Officer

PORTLAND, Tenn., June 16, 2025 (GLOBE NEWSWIRE) -- Shoals Technologies Group, Inc. (“Shoals”), a leading provider of electrical balance of system solutions for the global energy transition market, announced today that it has further strengthened its executive team with the addition of Bobbie L. King, Jr. as Chief Legal Officer...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    62 shares
    Share 25 Tweet 16
  • Top Cross-Chain DeFi Solutions to Watch by 2025

    33 shares
    Share 13 Tweet 8
  • Discover 2025’s Top 5 Promising Low-Cap Crypto Gems

    53 shares
    Share 21 Tweet 13
  • Top 5 Wallets for Seamless Multi-Chain Trading in 2025

    33 shares
    Share 13 Tweet 8
  • Discover the Best Metaverse Crypto Projects and Virtual Worlds 2025

    41 shares
    Share 16 Tweet 10
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

Web 3.0 and AI Summit 2025

2025-09-11
Frankfurt
Summit

Latest on Web3Wire

  • Introducing Kreebo: The AI Storytelling App Helping Kids Unlock Their Inner Genius – Safely and Creatively
  • GL.iNet Launches Comet (GL-RM1): Cutting-Edge Remote KVM Device for Seamless 4K Control and Global Connectivity
  • Tire Recycling Downstream Products Market May See a Big Move | Major Giants Genan,EcoGreen,Granutech
  • Car Wash Equipment Market is Going to Boom | Major Giants WashTec,PDQ,Istobal
  • Victus Global Launches Real-Time FX Tools Empowering Frontier Markets

RSS Latest on Block3Wire

  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age
  • Cathedra Bitcoin Announces Leasing of 2.5-MW Bitcoin Mining Facility
  • Global Web3 Payments Leader, Banxa, Announces Integration With Metis to Usher In Next Wave of Cryptocurrency Users
  • Dexalot Launches First Hybrid DeFi Subnet on Avalanche

RSS Latest on Meta3Wire

  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
  • MetatronAI.com Unveils Revolutionary AI-Chat Features and Interface Upgrades
  • Purely.website – Disruptive new platform combats rising web hosting costs
  • WEMADE and Metagravity Sign Strategic Alliance MOU to Collaborate on Blockchain Games for the Metaverse
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Whitepaper | Tokenomics

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Media Portfolio: Block3Wire | Meta3Wire

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!
Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News
  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.