Operations & Campaigns
Explore documented attack campaigns, coordinated threat actor operations, and the geopolitical dynamics behind them.
-

Iran Cyberwar Shifts to Spillover, Retaliation, and Control
The cyber dimension of the Iran war is no longer limited to isolated attacks. From internal repression and internet shutdowns to suspected Iran-linked retaliation abroad, a multi-layered cyber conflict is emerging with direct implications for healthcare, shipping, and critical infrastructure.
-

Trivy Supply Chain Attack Spreads Infostealer, Worm, and Kubernetes Wiper via Docker Hub
A supply chain attack targeting Aqua Security’s Trivy vulnerability scanner led to the distribution of malicious artifacts via Docker Hub, deploying TeamPCP infostealer, a worm, and a Kubernetes wiper.
-

North Korean Hackers Deploy StoatWaffle Malware via VS Code Projects
A North Korean threat actor, tracked as WaterPlum, is using malicious Visual Studio Code projects to distribute a new malware family called StoatWaffle. The campaign leverages a feature in VS Code to automatically execute code when a project is opened.
-

Baghdad to Ras Laffan: Iran-Linked Strikes Widen the Regional War
A three-day wave of Iran-linked drone, missile, and rocket attacks hit Iraqi bases, diplomatic facilities in Baghdad, and Gulf energy infrastructure, highlighting how the conflict is widening beyond direct strikes on Iran itself.
-

Lebanon Death Toll Tops 1,000 as Israeli Bombardment Continues
Lebanon’s Health Ministry says Israeli attacks have killed 1,001 people since March 2, including women, children and healthcare workers, as UN and rights groups warn the bombardment may amount to war crimes.
-

Pentagon Seeks $200 Billion for Iran War With No End Date in Sight
Pete Hegseth’s refusal to give a timeframe for the Iran war, alongside a reported $200 billion Pentagon funding request, has sharpened questions over congressional authority, fiscal support and war aims.
-

Trump’s Pearl Harbor Remark Exposes Japan’s Iran War Dilemma
Donald Trump’s Oval Office remark to Japanese Prime Minister Sanae Takaichi exposed the awkward politics of pressuring Tokyo to support Hormuz security operations while the Iran war drives energy and alliance strain.
-

Haifa Refinery Hit as Iran Expands Retaliation to Israeli Energy Sites
An Iranian strike on Haifa’s Oil Refineries Ltd site caused localized power disruption on March 19, extending the energy war from Gulf gas facilities into Israeli infrastructure even as officials said the damage was limited.
-

Who Commands Iran Now After Larijani’s Killing?
The killing of Ali Larijani has widened uncertainty around Iran’s wartime chain of command, raising new questions over succession, decision-making and operational coherence in Tehran.
-

Gulf Drug Supply Chains Strain as Hormuz Disruption Spreads
Disruption around the Strait of Hormuz is straining medicine supply chains into Gulf states, with importers and healthcare distributors scrambling to protect time-sensitive and temperature-controlled drug shipments.