Magic Hound
Named by Palo AltoSuspected state sponsor: Islamic Republic of IranMagic Hound is Palo Alto Networks Unit 42's designation for the Iranian state-sponsored threat actor known as Charming Kitten and APT35. Active since at least 2014, the group has targeted organizations in Saudi Arabia and across the Middle East, as well as government, defense, and academic targets globally. Magic Hound is characterized by its use of IRC-based malware, spear phishing campaigns, and exploitation of vulnerabilities such as Log4Shell and ProxyShell in enterprise systems. Unit 42 has documented the group's rapid adaptation of newly disclosed vulnerabilities for initial access into targeted environments.
Targeted Regions
Saudi ArabiaSaudi Arabia
May 2016 ~ Feb 2017
May 2016 ~ Feb 2017
May 2016 ~ Feb 2017
Targeted Sectors
Recent Indexed Reports
Disclaimer: We are working on indexing and analyzing relevant data and this process is not fully completed yet. Therefore, displayed details and statistics may will change in the future.