Cyber Threat Report: 'Nation-state threat actor Mint Sandstorm refines tradecraft to attack high-value targets'

Report Author Microsoft Threat Intelligence
Publication Date 2023-04-18
Original Reporting Source
Attributed to Nation Iran
Related Intrusion Sets Mint Sandstorm
Related Threat Actors Islamic Revolutionary Guard Corps (IRGC)
Identified CVEs CVE-2021-45046 , CVE-2022-47966 , CVE-2021-44228 , CVE-2022-47986
Victim Sectors Utilities, Energy, Transportation

This report from Microsoft Threat Intelligence describes a subset of activity related to the Mint Sandstorm actor. The campaign includes the theft of sensitive information from high value targets. Microsoft describe this Mint Sandstorm subgroup as technically and operational mature and detail their use of bespoke tooling and 'n-day' exploits.

Cyber Threat Graph Context

Explore how this report relates to the wider threat graph