IRIDIUM
- Origin
- IR
- Primary motivation
- espionage
- Sophistication
- advanced
- Resource level
- government
- Actor type
- nation-state
- Profile updated
- 2026-07-07 11:56:37
Targeted industries: government-and-public-sector defense-and-aerospace
Targeted regions: country_code:au country_code:ca country_code:nz country_code:gb country_code:us
Context
Resecurity’s research indicates that the attack on Parliament is a part of a multi-year cyberespionage campaign orchestrated by a nation-state actor whom we are calling IRIDIUM. This actor targets sensitive government, diplomatic, and military resources in the countries comprising the Five Eyes intelligence alliance (which includes Australia, Canada, New Zealand, the United Kingdom and the United States)
Related threat objects
- Seashell Blizzard (threat-actor)
Reports & references
- nbcnews.com — Iranian Backed Hackers Stole Data Major U S Government Contractor N980986 (report)
- threatpost.com — 142688 (report)
- hub.packtpub.com — Resecurity Reports Iriduim Behind Citrix Data Breach 200 Government Agencies Oil And Gas Companies And Technology Companies Also Targeted (report)