
Iran Cyber Threat Intelligence Assessment 2026
CYBER THREAT INTELLIGENCE
This cyber threat intelligence assessment examines the evolving cyber security risks linked to escalating geopolitical tensions between Iran, Israel and the United States in the Persian Gulf.
Understand the cyber threat landscape as the US-Israel-Iran conflict evolves. LRQA's specialist threat intelligence team has produced an urgent assessment of Iranian cyber actor capability, intent, and activity - giving your organisation the situational awareness needed to act now.
What’s inside
-
Expert profiles of Iranian APT groups: OilRig (APT34), MuddyWater, Void Manticore, Scarred Manticore, Peach Sandstorm (APT33), Lemon Sandstorm, Pink Sandstorm and Prince of Persia, including behaviours, targets and tooling
-
Immediate impact assessment: how the internet blackout and kinetic strikes have affected Iranian cyber actor capability, opportunity and intent
-
Reported activity since the conflict began: DDoS claims, a SCADA compromise in Jordan, SMS phishing spoofing Israel's national alert service, and hacktivist sock puppet activity
-
Strait of Hormuz cyber risk: threats to shipping, energy infrastructure and global supply chains, including the precedent set by the 2025 Lab Dookhtegan attack
-
Kinetic impact on cloud infrastructure: AWS data centre strikes, widespread UAE banking disruption and what physical attacks mean for digital resilience
-
Future threat projections: regime change scenarios, targeting shifts and the long-term cyber risk outlook for organisations with Gulf exposure
