Cybersecurity

United States Offers $10M Bounty on Iranian Leader Over Critical Infrastructure Cyberattacks

FORTSECURE GLOBAL· 2026-09-06🛰 DataBreaches.net
#Cybersecurity#Incident Response#Network Security#Cyber Risk

The U.S. Department of State has announced a $10 million reward targeting the leadership of the IRGC Cyber-Electronic Command. Critical infrastructure operators are urged to enhance network monitoring against nation-state activity.

State-Sponsored Cyber Threats Against Critical Infrastructure

The U.S. Department of State's Rewards for Justice program has announced a bounty of up to $10 million for actionable intelligence regarding Amir Yaryab, a high-ranking official accused of heading the Islamic Revolutionary Guard Corps’ (IRGC) Cyber-Electronic Command (CEC). Yaryab reportedly directed multiple Iranian threat groups tasked with attacking key critical infrastructure sectors, including defense, maritime shipping, and media outlets.

State-sponsored adversaries increasingly focus on operational technology (OT) and industrial control environments. Tactics include exploiting zero-day vulnerabilities in edge networking appliances, spear-phishing administrative staff, and conducting destructive wiper attacks designed to cause operational paralysis and geopolitical disruption.

Hardening Critical Systems Against Advanced Persistent Threats (APTs)

Critical infrastructure operators must prepare for sophisticated cyber threats by improving threat detection and architecture isolation:

  • Segment Information Technology (IT) and Operational Technology (OT): Enforce strict network segmentation utilizing demilitarized zones (DMZs) and unidirectional security gateways to isolate critical control equipment.
  • Harden Edge Infrastructure: Regularly patch firewalls, VPN concentrators, and internet-facing routers, ensuring administrative ports are hidden from public indexing engines.
  • Threat Intelligence Integration: Integrate government and commercial threat feeds to monitor for indicators of compromise (IoCs) linked to known IRGC hacking groups.
  • Continuous Monitoring: Implement Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) systems with 24/7 incident response readiness.

แหล่งที่มา: DataBreaches.net เผยแพร่ครั้งแรก: Sun, 06 Sep 2026 11:11:48 +0000 บทความต้นฉบับ: อ่านต้นฉบับ

Source Attribution

แหล่งที่มา: DataBreaches.net

เผยแพร่ครั้งแรก: Sun, 06 Sep 2026 11:11:48 +0000

บทความต้นฉบับ: https://databreaches.net/2026/09/06/us-offers-10-million-for-info-on-iranian-allegedly-behind-cyberattacks-on-critical-infrastructure/

อ่านบทความต้นฉบับ ↗
ถูกใจบทความนี้

* Facebook / LinkedIn ไม่อนุญาตให้ใส่ข้อความให้ล่วงหน้า — กดปุ่มจะคัดลอกข้อความให้ก่อน เปิดหน้าแชร์แล้ววาง (paste) ได้เลย พรีวิวการ์ดจะแสดงอัตโนมัติเมื่อวางลิงก์

← กลับไปหน้า Blog