TI Mindmap HUB
Threat Intelligence Report

Government of Iran Cyber Actors Deploy Telegram C2 to Push Malware to Identified Targets

๐Ÿ“… March 21, 2026 ๐Ÿ“ฐ www.ic3.gov ๐Ÿ” 0 CVE(s) referenced

Iranian government-linked cyber actors are using Telegram as a command-and-control channel to deliver custom malware targeting dissidents, journalists, and opposition groups worldwide, enabling data theft, surveillance, and reputational attacks.

gov

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle