A reported campaign tied to an Iran-linked actor shows how a modular command-and-control stack and a foothold in IT service providers can turn trust into an attack path.
A destructive campaign reportedly affected organizations in the United States, Israel, Saudi Arabia, and Turkey, with systems and backups described as being wiped.