PULSE NAME
Middle East Conflict Fuels Opportunistic Cyber Attacks
WHITE Mustang Panda AlienVault 2026-03-06 Modified: 2026-04-05
34
IOCs
MEDIUM VOLUME
The ongoing conflict in the Middle East has triggered a surge in cybercriminal activity. Over 8,000 newly registered domains with conflict-related keywords have been identified, many of which may be weaponized in future campaigns. Multiple cases of malicious activity have been observed, including targeted attacks using conflict-themed lures, deployment of the LOTUSLITE backdoor, fake news blogs leading to StealC malware, phishing sites impersonating government portals, donation scams, fraudulent storefronts, and meme-coin pump-and-dump schemes. Threat actors are leveraging various techniques such as DLL sideloading, shellcode execution, and social engineering to compromise victims. The campaigns demonstrate the opportunistic nature of cybercriminals in exploiting geopolitical events for malicious purposes.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
LOTUSLITE StealC
Indicators of Compromise (34)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 098bc0dd6a02a777fabb1b7d6f2da505 2026-03-06
FileHash-MD5 10fb1122079b5ae8e4147253a937f40f 2026-03-06
FileHash-MD5 6accd57e48c34cadc998d00594229e42 2026-03-06
FileHash-MD5 722bcd4b14aac3395f8a073050b9a578 2026-03-06
FileHash-MD5 8c5a4dafed1586cec48d8eda267d8e42 2026-03-06
FileHash-MD5 972585e50798cb5f122f766d8f26637f 2026-03-06
FileHash-SHA1 1b3fa84de23c6e789958462e6185e9cf0680ed9c 2026-03-06
FileHash-SHA1 7d4e31c8b11be7c970860c4fbc8fe85c70724cb1 2026-03-06
FileHash-SHA1 b9dfc411699e07343b9b95daa79fe7e4b6811579 2026-03-06
FileHash-SHA1 be34901237c9fa9563e8dc9e71faf3a7e68f983f 2026-03-06
FileHash-SHA1 e5baecb74c456df26aa7e0fa1661838cd86ccfd7 2026-03-06
FileHash-SHA256 24b11b4b999b385bede48ad9f0570e2e5da4a2054b96738b1e4d4946ece94bc1 2026-03-06
FileHash-SHA256 4fb9b5d115bceee45a89447fb2565faef07452cda6b8e244e53ad91499c3d9b5 2026-03-06
FileHash-SHA256 819f586ca65395bdd191a21e9b4f3281159f9826e4de0e908277518dba809e5b 2026-03-06
FileHash-SHA256 8564763407064117726211ff8f89555e5a3b2b70bc9667032abd69cbe53b5216 2026-03-06
FileHash-SHA256 db40546435a7c42b32493301e333c8c0010e652fecd02463614a386f916055ec 2026-03-06
URL http://www.e-kflower.com/_prozn/_skin_mbl/home/KApp.rar 2026-03-06
URL http://www.e-kflower.com/_prozn/_skin_mbl/home/KAppl.rar 2026-03-06
URL https://www.360printsol.com/2026/alfadhalah/thumbnail?img=index.png. 2026-03-06
domain cfgomma.com 2026-03-06
domain e-kflower.com 2026-03-06
domain flourishingscreencousin.com 2026-03-06
domain irandonation.org 2026-03-06
domain khameneisol.xyz 2026-03-06
domain nowarwithiran.store 2026-03-06
hostname arch.megadatahost1.lol 2026-03-06
hostname arch2.maxdatahost1.cyou 2026-03-06
hostname arch2.megadatahost1.lol 2026-03-06
hostname media.hyperfilevault2.mom 2026-03-06
hostname media.maxdatahost1.cyou 2026-03-06
hostname media.megadatahost1.lol 2026-03-06
hostname media.megafilehost2.sbs 2026-03-06
hostname www.360printsol.com 2026-03-06
hostname www.e-kflower.com 2026-03-06