A new piece of malware called IOCONTROL is targeting IoT devices in critical infrastructure organizations.
The malware, suspected to be developed by an Iranian state-sponsored group known as CyberAv3ngers, can target routers, firewalls, fuel systems, and other devices.
IOCONTROL is modular and capable of data exfiltration and service disruption.
The majority of the attacks have occurred in late 2023, with new campaigns spotted in mid-2024.