ESPN DeportesEn caso Josh Jacobs piden pruebas bajo reservaDaily MaverickSARDINE SQUEEZE: DFFE limits catches to 25% while fish die-off impact uncertainInquirerZubiri: Tesda centers in Bukidnon underutilized, used as goat pensThe Jerusalem Post'NAZA' director has nothing to come back to in Israel, People of Israel chair Ofer Winter saysESPNThe 76ers' four 'super-users' have a math problem to solveוואלהדיווח: ממשל טראמפ מקדם מכירת 40 אלף פצצות במשקל טון לישראל ב-2.8 מיליארד דולרColliderIt’s Officially the End of an Era for HBO’s 'The Last of Us'BBC Mundo"No soy cómplice": Ed Sheeran asegura que no fue su decisión apartar al rapero Macklemore de su gira tras sus palabras a favor de una "Palestina libre"Rolling StoneTrump Is Reportedly Sending Israel $2.8 Billion in Bombs. You’re Paying for ThemThe Hollywood ReporterJustice Department Sides With Paramount on Demand That States Post $1.88 Billion BondABC News (Australia)Sturt versus Norwood stirs up 1978 controversy ahead of SANFL finalPremium TimesLagos assembly approves N4.445trn 2026 budget reordering
The Daily Newsstand · Free, Always
Tuesday, September 15, 2026

Iranian state actors targeting UK dissidents, activists and journalists with spyware

Translate

British intelligence has issued a warning after finding Iranian spies have targeted dissidents with spyware that can enable tracking of their movements.

Dissidents, activists and journalists were targeted by state actors that impersonated their contacts on messaging apps to trick them into downloading spyware called Chosen Brick, the National Cyber Security Centre, part of GCHQ, warned.

The malware gave agents access to the person’s contacts, emails and social media messages as well as a device’s microphone and content on the screen.

NCSC boss Richard Horne warned that hostile states could be linked to three quarters of cyber attacks on UK critical infrastructure

NCSC boss Richard Horne warned that hostile states could be linked to three quarters of cyber attacks on UK critical infrastructure (Getty)

The UK, alongside allies in the US and the Netherlands, discovered the plot which is targeting both British dissidents and others from a range of different countries. It remains unclear how many people were affected by the malware, although the FBI claimed that cyber actors had used the malware dating back to Autumn 2023.

Iranian agents used social engineering tricks to tailor their impersonations to areas of relevance or interest to their targets; in one instance, fake MRI test results lured a victim in.

The malware, targeting Windows operating systems, will survive a device being rebooted. Some stolen personal details have been posted on pro-Iranian leak sites, the NCSC said.

Paul Chichester, NCSC director of operations, said that the cyber campaign showed Iran’s ruthless use of digital surveillance to target dissidents.

“The details of this cyber campaign reveal how Iran ruthlessly uses digital surveillance in pursuit of its aim to repress critics of the regime, stealing emails and messages and accessing devices,” he said.

The GCHQ building in Cheltenham

The GCHQ building in Cheltenham (PA)

“With our international partners, we strongly encourage individuals at risk to familiarise themselves with the social-engineering techniques described in the advisory, and to act on the mitigation advice.

“We will continue to call out malicious cyber activity by the Iranian state and support communities with practical advice to strengthen their online personal security.”

The FBI issued its own advisory, and claimed the Iran government’s Ministry of Intelligence and Security (MOIS) was using the malware to “collect intelligence, conduct data leaks, and inflict reputational harm against their intended targets.”

Detailed technical advice about the malware was published on the NCSC website, as well as how to avoid falling prey to them.

Over the summer, NCSC chief Richard Horne warned that hostile states, such as Russia, China and Iran, were increasingly targeting the UK’s critical systems.

He said that three-quarters of cyber attacks impacting organisations within the UK’s critical infrastructure over the past year could be linked back to hostile state actors.

View the original on The Independent

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.