Government entities in the Middle East are the target of new phishing campaigns that are designed to deliver a new initial access downloader dubbed IronWind.
The activity, detected between July and October 2023, has beenΒ attributedΒ by Proofpoint to a threat actor it tracks under the nameΒ TA402, which is also known as Molerats, Gaza Cyber Gang, and sharesΒ tactical overlapsΒ with a pro-Hamas