This is the Trace Id: acb0c5096b18bd9d873e7275a8c4286f

Nation State Actor

Hazel Sandstorm

A close-up of a planet
Hazel Sandstorm (formerly EUROPIUM) has been publicly linked to Iran’s Ministry of Intelligence and Security (MOIS). Microsoft assessed with high confidence that on July 15, 2022, actors sponsored by the Iranian government conducted a destructive cyberattack against the Albanian government, disrupting government websites and public services. Microsoft Threat Intelligence teams assess with moderate confidence that the actors linked to the state-sponsored actor, Hazel Sandstorm, gained initial access and exfiltrated data as part of this destructive cyberattack.

Country of origin:                                                                    Industries targeted:

 

Iran                                                                                             Government

                                         

Countries targeted:

 

Albania    

Microsoft Threat Intelligence: Recent Hazel Sandstorm Articles

Microsoft investigates Iranian attacks against the Albanian government