Breaking 17:30 Ford prepares for possible Chinese auto competition in the United States 17:15 UEFA threatens World Cup boycott over FIFA private investment plan as football power struggle intensifies 17:00 SNCF strike disrupts train services in normandy through August 2 16:45 Scale AI appoints former Google Cloud executive Francis DeSouza as CEO 16:30 Xiaomi unveils SkyNomad SUV family as EV maker targets growth before Europe expansion 16:15 Hundreds of migrants break through security controls in Ceuta amid renewed border pressure 16:00 Morocco cuts forest fire damage by 31% as faster response limits burned areas 15:45 Ferrari boosts second-quarter profitability as premium models and customization drive growth 15:30 Houthi fighters allegedly launched Saudi Arabia attack from Iraq, sources say 15:15 Morocco's long-term development strategy earns praise from Japanese academic 15:00 Cyanide poisoning suspected in deaths of 15 elephants at Kenya's amboseli national park 14:45 Morocco and Spain agree to return all migrants who entered Ceuta irregularly 14:30 Argentina moves to bar foreigners accused of spreading anti-Argentina hate speech 14:29 HM King Mohammed VI presides over Throne Day reception in M’diq to mark 27th anniversary of accession 14:15 Spain wildfire destroys more than 11,000 hectares near Portugal border as hundreds evacuate 14:00 Japan slashes food consumption tax to 1% in bid to ease inflation pressure 13:45 Severe El Niño threatens Latin America as UN warns of mounting agricultural risks 13:30 US economy cools in second quarter as consumer spending and AI investment sustain growth 13:15 Amazon's Zoox secures historic US approval for steering-wheel-free robotaxis 13:00 Bank Of England holds rates steady as growing Hawkish bloc signals inflation concerns 12:45 ASE Technology boosts 2026 investment by $2 billion as AI demand accelerates chip packaging growth 12:30 Vedanta Aluminium triples quarterly profit as soaring metal prices fuel strong debut 12:15 Noma returns with micro-season menus as René Redzepi steps away from daily leadership 12:00 MTU warns Franco-German fighter split could jeopardize Safran engine alliance 11:45 Sterling edges higher against euro before Bank of England decision as dollar gains on geopolitical tensions 11:30 Casino reports stronger first-half profitability as debt restructuring advances 11:22 The Royal Speech… a message of continuity and confidence in achievement 11:15 L’Oréal targets 2028 debut for Gucci Beauty as luxury partnership enters new era 11:14 Prada grows first-half revenue as Americas demand offsets luxury market challenges 11:07 Bombardier returns to positive free cash flow as private jet demand strengthens 11:00 China’s Communist Party schedules October leadership meeting to strengthen internal governance 10:50 Meta’s massive AI investment strategy exposes growing pressure over computing costs 10:45 Amazon and Walmart AI tools detect false ‘Made in USA’ claims but fail to act, study finds 10:45 China rebukes New Zealand after parliamentary remarks trigger diplomatic dispute 10:41 China signals broader deployment of YJ-20 hypersonic anti-ship missile across naval fleet 10:30 Capgemini raises 2026 growth outlook as agentic AI fuels business momentum 10:15 Germany approaches 10,000 heat-related deaths as extreme temperatures intensify 10:00 FC Barcelona moves closer to Morocco friendly as Tangier prepares for August showdown 09:45 Samsung’s AI-driven chip boom fuels 19-fold surge in second-quarter operating profit 09:30 Bernard Cazeneuve sets sights on France’s 2027 presidential election 09:15 Crete wildfires force evacuation of 8,000 people as deadly blaze threatens tourist resort 09:00 France's private-sector employment slips again in second quarter despite economic growth 08:45 Stellantis returns to profit as second-quarter revenue jumps 13%, reaffirming 2026 outlook 08:30 Australia takes Telegram to court over alleged failure to remove terrorist content 08:15 BTS to boycott 2027 Grammy Awards over new Asian pop category 08:00 Drax first-half profit falls 39% as lower UK electricity prices weigh on earnings 07:45 Gillette India reports higher quarterly profit as grooming business fuels revenue growth 07:30 Spain's economy outperforms forecasts as second-quarter growth accelerates 07:15 Ugandan opposition leader Kizza Besigye hospitalized in intensive care after courtroom collapse 07:00 Greek wildfires claim three firefighters as Crete blaze enters second day

Iran’s decentralized cyber offensive heightens risk for U.S. firms

Monday 02 March 2026 - 15:30
Iran’s decentralized cyber offensive heightens risk for U.S. firms

As joint U.S. and Israeli airstrikes hit targets across Iran, security experts say a parallel and less predictable battle is unfolding in cyberspace, with potential long-term consequences for companies and critical infrastructure far beyond the region. Analysts warn that Iranian-aligned hackers and loosely affiliated sympathizers are turning to more decentralized and chaotic tactics, increasing the chance of disruptive attacks that are harder to anticipate or deter.

The evolving campaign has been galvanized by the formation of what militants call the “Great Epic” cyber offensive, a loose framework bringing together pro-Iranian hacktivist groups and cyber units that share tools, targets, and propaganda but operate with significant autonomy. Rather than relying solely on traditional state-directed operations, these actors are increasingly leveraging online forums, encrypted messaging platforms, and public code repositories to coordinate attacks and recruit volunteers with varying levels of technical skill. This shift, specialists say, blurs the line between state operations and crowd‑sourced digital retaliation, complicating efforts to attribute incidents and respond in a targeted way.

One of the most visible signs of this change has been a marked push toward public recruitment. The hacker collective Islamic Cyber Resistance has issued open calls for what it describes as “general mobilization,” inviting security researchers, developers, and other technology professionals to join a “great circle of war” in defense of Iran and its allies. Recruitment messages shared in Arabic and English urge prospective volunteers to contact coordinators directly, promising integration into a wider digital “resistance” network aimed at attacking infrastructure and information systems in the United States, Israel, and regional partners. Cyber analysts say this model resembles a crowdsourcing approach to offensive capabilities, dramatically expanding the pool of potential operators and amplifying both the scale and unpredictability of operations.

The air and cyber offensive launched by the United States and Israel at the end of February, under the operational names Epic Fury and Roaring Lion, has further destabilized Iran’s traditional command structures and appears to be accelerating this decentralization. Military and policy assessments describe the operation as a combined kinetic and digital strike designed to paralyze key regime institutions, including elements of the Revolutionary Guard, intelligence services, and critical communications systems. Analysts argue that by degrading central control, the campaign may unintentionally push more responsibility and initiative to loosely managed cyber affiliates and ideologically motivated hacktivists, who are less constrained by state policy or diplomatic considerations.

Threat intelligence firms report that pro-Iranian operators operating under the broader “Cyber Islamic Resistance” label have claimed responsibility for attacks on gas stations in Jordan as well as against U.S. and Israeli defense and technology contractors. These operations have ranged from data‑wiping attempts and website defacements to psychological warfare, where hackers publish screenshots and boast of their exploits in Telegram channels and other social platforms to amplify perceived impact. Verification of these claims often lags behind the propaganda, which can fuel confusion for targeted organizations and complicate incident response.

The hacking of the BadeSaba Calendar prayer app has become a defining example of how cyber tools are being used for psychological operations rather than purely technical disruption. With more than 5 million downloads, BadeSaba is widely used in Iran to track prayer times and religious observances, and is seen by many users as a trusted, apolitical utility. Over the weekend, the app sent push notifications reading “Help has arrived!” and calling for the formation of a “People’s Army” to support “Iranian brothers,” followed by messages directing lower‑ranking members of the Revolutionary Guard to surrender and pointing protesters toward alleged safe gathering points. Cybersecurity researchers say this incident illustrates how compromising a familiar consumer app can be used to seed disinformation, erode trust in digital services, and inflame tensions at moments of maximum uncertainty.

Researchers at firms such as CloudSEK and Flashpoint have documented a sharp escalation in hacktivist activity since the launch of Operation Epic Fury and Roaring Lion, counting more than a hundred claimed incidents in the space of just a few days. The attacks have targeted a wide range of sectors, including energy, finance, government services, and information technology, often through low‑cost methods such as website defacement, denial‑of‑service attacks, and data leaks. While many incidents cause only temporary disruption, experts warn that the volume of activity increases the likelihood that a more sophisticated intrusion could compromise sensitive systems or trigger cascading failures in connected networks.

For U.S. companies, the primary risk is no longer limited to traditional data theft or espionage campaigns tied to identifiable Iranian advanced persistent threat (APT) groups. Instead, executives and security leaders must prepare for a more diffuse threat landscape in which semi‑independent actors, inspired or encouraged by Tehran, seek to undermine public trust, disrupt operations, or damage reputations through targeted leaks and false information. That could mean attacks designed to manipulate internal communication tools, alter content on corporate websites, or flood customer‑facing channels with forged messages that appear to come from trusted sources.

Security practitioners say this environment demands a stronger emphasis on resilience and detection rather than reliance on traditional deterrence or diplomatic pressure. Companies are being urged to test incident response plans, harden access to cloud and identity systems, and train employees to treat unexpected messages and alerts with skepticism, even when they appear to originate from familiar apps or internal services. Critical infrastructure providers, including in the energy, transportation, and financial sectors, are under particular pressure to improve segmentation between operational and administrative networks, as well as to share real‑time intelligence about suspicious activity with industry peers and government partners.

Analysts caution that the decentralization of Iran‑aligned cyber activity is likely to persist as long as the broader confrontation continues, and may even outlast any ceasefire or reduction in direct military hostilities. In practical terms, that means organizations with U.S., Israeli, or allied ties could remain on target lists long after the latest round of strikes fades from headlines, especially if they are seen as symbolically important or vulnerable. For many security teams, the challenge will be to sustain higher levels of vigilance over months or years, adjusting to a threat model in which small, loosely coordinated groups can still inflict outsized damage on public confidence and digital infrastructure.

 


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

Read more

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.