Actors Insights|Latest update28/05/2025
Magic Hound
Named by Palo AltoSuspected state sponsor: Islamic Republic of IranMagic Hound is an Iranian-sponsored threat group that conducts long term, resource-intensive cyber espionage operations, likely on behalf of the Islamic Revolutionary Guard Corps. They have targeted European, U.S., and Middle Eastern government and military personnel, academics, journalists, and organizations such as the World Health Organization (WHO), via complex social engineering campaigns since at least 2014.
First Seen:Jan 2014
Last Seen:Mar 2025
Indexed Reports:1
Public IOCs:80
also known as:
Newscaster Team (Symantec)Magic Hound (Palo Alto)G0059 (Mitre)PHOSPHORUS (Microsoft)Mint Sandstorm (Microsoft)TunnelVision (SentinelOne)COBALT MIRAGE (SecureWorks)APT35 (Mandiant)TA453 (Proofpoint)COBALT ILLUSION (SecureWorks)Charming Kitten (CrowdStrike)ITG18 (IBM)
Targeted Regions

Saudi ArabiaSaudi Arabia
May 2016 ~ Feb 2017
May 2016 ~ Feb 2017
May 2016 ~ Feb 2017
Jan 2016Aug 2025
Targeted Sectors
Government Agencies and ServicesInformation TechnologyEnergy
Recent Indexed Reports
Disclaimer: We are working on indexing and analyzing relevant data and this process is not fully completed yet. Therefore, displayed details and statistics may will change in the future.