[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fke2HFbY9frDutcqLL6PJInOF2SDcer_ttflWfA0cQfc":3},{"article":4,"iocs":36,"watch_terms":44},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":10,"published_at":12,"ingested_at":13,"relevance_score":14,"entities":15,"category_id":16,"category":17,"article_tags":20},"0281f741-5d3f-42d5-a44e-42117f99103d","Fata Morgana: Watering hole attack on shipping and logistics websites","fata-morgana-watering-hole-attack-on-shipping-and-logistics-websites","ClearSky Cyber Security has detected a watering hole attack on at least eight Israeli websites. The attack is highly likely to be orchestrated by a nation-state actor from Iran, with a low confidence specific attribution to Tortoiseshell (also called TA456 or Imperial Kitten). The Infected sites collect preliminary user information through a script. We have […]","ClearSky Cyber Security discovered a watering hole attack targeting at least eight Israeli shipping and logistics websites, likely orchestrated by an Iranian nation-state actor with possible attribution to Tortoiseshell (TA456\u002FImperial Kitten). The compromised sites deployed malicious scripts to collect preliminary user information from visitors. This attack demonstrates a sophisticated supply-chain-adjacent approach targeting critical infrastructure sectors.",null,"https:\u002F\u002Fwww.clearskysec.com\u002Ffata-morgana\u002F","2023-05-23T08:15:18+00:00","2026-03-15T06:36:29.357651+00:00",8,[],"6cbdd207-aaa1-4176-9534-e156b125e917",{"id":16,"icon":10,"name":18,"slug":19},"Nation-state","nation-state",[21,26,31],{"category":22},{"id":23,"icon":10,"name":24,"slug":25},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":27},{"id":28,"icon":10,"name":29,"slug":30},"c5eccf7c-abbc-4bd3-bbed-e6da5cba8e73","Incident Response","incident-response",{"category":32},{"id":33,"icon":10,"name":34,"slug":35},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[37,41],{"type":38,"value":39,"context":40},"mitre_attack","T1189","Watering hole attack technique used to compromise legitimate websites",{"type":25,"value":42,"context":43},"Tortoiseshell","Iranian APT group (TA456\u002FImperial Kitten) suspected of orchestrating the attack",[]]