Loading...

30 Mar 2026 11:03

Editor's Pick Media-Avataar Insights Tech & Start Up

Cyberattacks Intensify on UAE & KSA Key Industries

Positive Technologies: cyberattackers targeting telecommunications and the military-industrial complex in the Middle East

The region’s most-attacked countries are Saudi Arabia and the UAE

Positive Technologies has conducted a comprehensive research into the activities of the APT groups targeting organizations in the Middle East . The experts say that 88% of the groups under review were attacking Saudi Arabia, and the five most-attacked sectors were government agencies, manufacturing, telecommunications, the military-industrial complex, and energy. To gain initial access, malicious actors mostly sent phishing email and exploited vulnerabilities in public-facing applications.

According to the analyzed data, malicious actors’ seven key targets were Saudi Arabia (88%), the UAE (75%), Israel (63%), Jordan (56%), Egypt (50%), Kuwait (50%) and Lebanon (44%) .

“An overwhelming majority of APT groups active in the Middle East had attacked governments (94%) and industry (81%) at least once, and 69% had attacked the energy sector,” says Yana Avezova, a senior analyst with the Positive Technologies research team. “It is worth noting that government agencies were the most attractive targets for all malicious actors: in 2022–2023, these accounted for 22% of total attacks on organizations in the Middle East.”

According to the report, two of the five most-attacked sectors, targeted by half of all groups, were telecommunications and the military-industrial complex (MIC).

The Positive Technologies believe that the MIC rose to the top of the rankings due to the specific nature of the region. Compared with other regions of the world, Middle Eastern media, too, have often found themselves a target of cyberattacks and historically have ranked high on the list. Experts attribute cybercriminals’ heightened interest in the telecommunication sector to attacks by China-linked groups, as telecoms have long been one of their targets of choice.

According to the analysis by Positive Technologies, the methods of obtaining initial access varied: 69% of groups relied on phishing email campaigns, 31% exploited flaws in public-facing applications, and 19% deployed malware on industry websites.

“Complex, targeted attacks begin with reconnaissance,” says Alexander Badaev, an information security threat researcher at Positive Technologies Expert Security Center. “Attackers may conduct extensive network scanning to identify suitable targets. This gives them enough information for the initial stage of penetration. The information may include a list of applications installed on the target server and its versions containing known vulnerabilities. After reconnaissance comes the preparation of tools for the attacks. Cybercriminals may register fake domains and create email or social media accounts for spear phishing.”

According to Badayev, after successfully gaining initial access, the attackers seek to establish a foothold in the infrastructure. To do this, 69% of APT groups leveraged the task scheduler, an OS component that runs applications or scripts at a predefined time or in response to a certain event, as in the case of a campaign that targeted the UAE government, where a group named OilRig created a MicrosoftEdgeUpdateService scheduled task that ran every five minutes, launching malware. Most attackers (56%) configured malware to auto-run. A third of APT groups (31%) gained a foothold in victim companies’ systems by setting up malware to run on a certain event.

After penetrating a corporate network, attackers examine the devices they have managed to gain access to, to understand how to proceed. According to the analysis, 94% of groups looked for data on the operating system and architecture of the compromised host, and information about software versions, installed patches, and updates. A large number of groups (81%) sought to identify the users of the compromised host and find how active they are, 63% looked into processes running on the compromised hosts, and 56% searched files and directories for useful information.

It is crucial for APT groups to remain undetected in the compromised environment for as long as possible, says Positive Technologies. Adversaries employ various methods to hide traces of their presence. They typically pre-test samples of their malware and subsequently modify these to bypass antivirus detection. A common technique is to disguise malware as legitimate files or applications. Over half (56%) of APT groups removed signs of their activity by clearing event logs and network connection history, and modifying timestamps. This makes it much more difficult for cybersecurity professionals to investigate the incident.

To build effective defenses against complex targeted attacks, Positive Technologies recommends that organizations pay attention to the fundamentals of results-oriented cybersecurity, which includes the following:

• Asset management
• Incident monitoring and response
• Cybersecurity training
• Security assessments

The full list of tactics and techniques used by APT groups active in the Middle East is available in the report published on the website.

 

(Visited 72 times, 1 visits today)
peri hokiperihokiduta76duta 76ABC1131 - MPO SLOTABC1131 Bandar Slot Togelmix parlay agen slot qrisMPOGALAXYslot thailandAWSBEThttps://premium-soft.com/Consulta-Licencias/https://abc1131aa.com/kincir88Slot mahjongABC1131ABC1131 LOGINhttps://abc1131.hartanzah.com/https://www.abc1131.it.com/taktik tingkat tinggi mahjong wild deluxe dadu sicbo pola jitu untuk maksimalkan rtp live perihokistrategi pintar mahjong ways 2 pgsoft baccarat starlight princess teknik rtp live dan pola peluang jitu perihokipeluang terbaik mahjong wins 3 pragmatic blackjack sweet bonanza strategi rtp live dan pola sakti perihokicara cerdas mahjong ways 2 pgsoft roulette wild bounty showdown peluang analisa teknik terbaru perihokimenaklukkan peluang mahjong wins 3 pragmatic blackjack sugar rush sv388 dengan teknik rtp pola sejejer perihokimengenal taktik mahjong wild deluxe dadu sicbo gates of olympus wild deluxe mengoptimalkan peluang rtp live jitu duta76cara paling efektif menang mahjong ways 2 pgsoft baccarat starlight princess dengan teknik analisis rtp pola duta76optimalkan rtp live mahjong wins 3 pragmatic blackjack sweet bonanza teknik analisis peluang besar duta76taktik mudah menaklukkan mahjong ways 2 pgsoft roulette wild bounty showdown strategi teknik pola unik duta76analisa rtp live dan pola mahjong wins 3 pragmatic blackjack sugar rush sv388 teknik peluang profit terbaru duta76aws rtp live pgsoft malamaws rtp live simbol emasaws scatter merah rtp mahjongaws scatter presisi mahjong multiplieraws super scatter rtp mahjonge3 kisah andi konsistensi di dunia digital mengantarkannya ke bisnis impiane3 kisah kevin disiplin di dunia digital membuka jalan bisnis barue3 kisah nyata arif konsisten berproses berbuah bisnis yang berkembange3 kisah rizky langkah kecil di dunia digital berujung bisnis nyatae3 metode akurat memahami pola scatter dan wild dengan dukungan datae3 metode konsisten membaca pergerakan scatter dan wild secara terukure3 optimalisasi permainan digital melalui data rtp hariane3 pendekatan analitis membaca pola scatter dan wild dengan presisi tinggie3 pendekatan terstruktur dalam membaca pola scatter dan wilde3 peran data rtp harian dalam menyusun strategi permainan digitale3 perjalanan dimas dari awal sederhana hingga miliki usaha sendirie3 perjalanan fajar dari konsistensi harian menuju kesuksesan usahae3 perjalanan riko dari dunia digital hingga sukses bangun usaha sendirie3 riset mendalam slot online mengenai mahjong ways dan perkembangan data permainane3 riset permainan online seputar mahjong ways dan perubahan pola permainannyae3 riset slot online tentang pola pergerakan mahjong ways berdasarkan data permainane3 saat data rtp harian menjadi dasar strategi permainan digital moderne3 saat data rtp harian menjadi fondasi strategi permainan moderne3 saat evaluasi rtp harian mengarahkan strategi bermain profesionale3 saat pendekatan rtp harian mengubah cara bermain digitale3 saat rtp harian dijadikan referensi utama strategi bermaine3 strategi berbasis algoritma untuk mengidentifikasi momentum scatter dan wilde3 strategi berbasis tren rtp harian untuk permainan lebih terarahe3 strategi data driven untuk memahami momentum scatter dan wilde3 strategi ketahanan mental agar modal tetap terjaga di mahjong ways 2e3 strategi khusus membaca pergerakan scatter dan wild lewat evaluasi algoritma terkinie3 strategi permainan modern yang berawal dari analisis rtp hariane3 strategi terukur membaca pola scatter dan wild berbasis algoritmakisah bangkit baccarat profit stabil data akuratindikator balikan aztec bonanza intensitas sesirotasi mingguan jokers jewels putaran efisienpola unik mahjong ways sesi seru 2026model akumulasi jutaan mahjong ways 1 saldo stabil Top