Cybersecurity & Privacy — 2026-03-18

Palo Alto Unit 42 Threat Brief: Iran Cyber Escalation Reaches Critical Infrastructure

Palo Alto's Unit 42 published a comprehensive threat brief documenting the surge in Iranian state-sponsored cyber operations since the war began. The brief identifies specific TTPs including destructive wipers deployed against energy sector targets, credential harvesting campaigns against defense contractors, and coordinated hacktivist operations providing cover for state-directed intrusions. US defense contractors, government vendors, hospitals, ports, and power stations are assessed as primary targets.

View in full brief →

UNCLASSIFIED // OPEN SOURCE