[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$frVpVAET4fMdEkVacm7PSn-OyKOlUOvGllp2euP3JmrE":3},{"article":4,"iocs":36,"watch_terms":50},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":10,"published_at":12,"ingested_at":13,"relevance_score":14,"entities":15,"category_id":16,"category":17,"article_tags":20},"71ee655a-391f-4dcb-bbfd-aa53ca9e9bb0","Iranian “Dream Job” Campaign 11.24","iranian-dream-job-campaign-11-24","ClearSky Cyber Security research identified a campaign named “Iranian Dream Job campaign”, in which the Iranian threat actor TA455 targeted the aerospace industry by offering fake jobs. The campaign distributed the SnailResin malware, which activates the SlugResin backdoor. ClearSky attributes both malware programs to a subgroup of Charming Kitten. However, some cyber research companies detected […]","ClearSky Cyber Security identified an Iranian state-sponsored campaign attributed to TA455 (Charming Kitten subgroup) targeting the aerospace industry through fake job offers. The campaign distributed SnailResin malware, which deploys the SlugResin backdoor for post-compromise access.",null,"https:\u002F\u002Fwww.clearskysec.com\u002Firdreamjob24\u002F","2024-11-12T09:23:04+00:00","2026-03-15T06:36:29.357651+00:00",9,[],"6cbdd207-aaa1-4176-9534-e156b125e917",{"id":16,"icon":10,"name":18,"slug":19},"Nation-state","nation-state",[21,26,31],{"category":22},{"id":23,"icon":10,"name":24,"slug":25},"26b0b636-0e31-4db1-bffb-61bdf9f20a58","Supply Chain","supply-chain",{"category":27},{"id":28,"icon":10,"name":29,"slug":30},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":32},{"id":33,"icon":10,"name":34,"slug":35},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[37,40,43,47],{"type":30,"value":38,"context":39},"SnailResin","Malware distributed in Iranian Dream Job campaign targeting aerospace sector",{"type":30,"value":41,"context":42},"SlugResin","Backdoor activated by SnailResin malware, attributed to Charming Kitten subgroup",{"type":44,"value":45,"context":46},"mitre_attack","TA455","Iranian threat actor conducting social engineering campaign via fake job postings",{"type":44,"value":48,"context":49},"Charming Kitten","Iranian state-sponsored APT group; TA455 is attributed subgroup",[]]