CISA provides advice on Iranian brokers selling access to critical infrastructure

Iranian hackers act as Initial Access Brokers (IAB), selling access to critical infrastructure organizations in the West to the highest bidder.

A joint safety advice recently published by the US Cybersecurity and Infrastructure Agency (CISA), together with the FBI, NSA, the Communications Security Establishment Canada (CSE), the Australian Federal Police (AFP) and the Australian Cyber ​​Security Center of the Australian Signals Directorate ( ASCS), claims that Iranian threat actors are actively involved in brute force attacks (password distribution, MFA push bombing and the like).