ITG18
Named by IBMSuspected state sponsor: Islamic Republic of IranITG18 is IBM X-Force's designation for the Iranian threat cluster widely known as Charming Kitten and APT35. Active since at least 2014, the group conducts credential harvesting and espionage operations targeting journalists, NGO workers, US military personnel, and political figures. IBM has documented ITG18's use of elaborately produced phishing videos to train operators on targeting techniques, as well as its extensive use of fake login pages mimicking Google, Microsoft, and Yahoo. The cluster is assessed to operate in support of IRGC intelligence priorities.
Targeted Regions
GreeceGreece
Apr 2020 ~ Jul 2020
Apr 2020 ~ Jul 2020
United StatesUnited States
Apr 2020 ~ Jul 2020
Apr 2020 ~ Jul 2020
Targeted Sectors
Recent Indexed Reports
Disclaimer: We are working on indexing and analyzing relevant data and this process is not fully completed yet. Therefore, displayed details and statistics may will change in the future.