Tech »  Topic »  Iranian Hackers Use Fake Job Lures to Breach Europe’s Critical Industries

Iranian Hackers Use Fake Job Lures to Breach Europe’s Critical Industries


New research from Check Point Research reveals the Iranian cyber group Nimbus Manticore is targeting defence, telecom, and aerospace companies in Europe with fake job offers. Learn how they use advanced malware to steal sensitive data.

A group of Iranian hackers known as Nimbus Manticore is expanding its operations, now focusing on major companies across Europe. According to new research from the cybersecurity firm Check Point Research (CPR), the group is targeting businesses in the defence, telecommunications, and aerospace sectors to steal sensitive information.

Nimbus Manticore, also called UNC1549 or Smoke Sandstorm, has been actively tracked since early 2025 and previously ran the Iranian Dream Job campaign. These campaigns align with the strategic intelligence-gathering goals of Iran’s IRGC, especially during times of heightened geopolitical tension.

Attack Flow Explained

The attack starts with a fake email invitation to a job application. This email, which looks very real, directs victims to ...


Copyright of this story solely belongs to hackread.com . To see the full text click HERE