The United States has indicted 17 Iranian nationals connected to the Mabna Institute, a hacking organization accused of orchestrating extensive cyberattacks against academic institutions and private organizations. The charges stem from a multi-year campaign that targeted hundreds of universities and companies across the U.S. and other countries, resulting in the theft of valuable research data and intellectual property.
The Mabna Institute operated as a front organization conducting cyber espionage on behalf of the Iranian government and private clients. The group's primary targets included universities, research institutions, and technology companies holding sensitive academic research and proprietary information. Prosecutors allege the hackers systematically compromised accounts to steal login credentials and access restricted databases.
The attackers employed phishing techniques and credential harvesting to gain unauthorized access to victim networks. Once inside, they exfiltrated terabytes of academic data, research materials, and intellectual property valued at billions of dollars. The stolen information reportedly benefited Iranian universities, scientific organizations, and government entities seeking to advance their research capabilities without conducting original work.
The indictment represents one of the largest coordinated actions against state-sponsored cyber operations targeting the education and research sectors. Hundreds of institutions across more than 20 countries were affected by the campaign, which compromised the accounts of thousands of professors and researchers. The theft of academic research undermines the integrity of scientific collaboration and gives adversaries unfair advantages in technological development.
The U.S. State Department's Rewards for Justice program is offering up to $10 million for information leading to the identification or location of five of the indicted individuals. Organizations should implement multi-factor authentication, conduct regular security awareness training focused on phishing recognition, and monitor for suspicious access patterns to academic databases. Research institutions should review access controls and consider implementing additional protections for sensitive intellectual property and ongoing research projects.
Source: https://www.securityweek.com/us-charges-17-iranian-hackers-offers-10-million-rewards-for-5-of-them/


