Canadian Centre for Cyber Security warns of sophisticated Iranian social engineering campaigns

Imported from official source

Announcement

The Communications Security Establishment (CSE) today releases a report warning of the continued and growing sophistication of social engineering campaigns run by Iranian cyber threat actors.

Canada’s foreign signals intelligence agency is warning of the continued and growing sophistication of social engineering campaigns run by Iranian cyber threat actors.

Published today by the Canadian Centre for Cyber Security (Cyber Centre), a part of the Communications Security Establishment Canada (CSE), the report outlines how Iranian cyber threat actors zero in on targets, with the goal of accessing information of political, economic, or military intelligence value to Iran.

The Cyber Centre is releasing this report through CSE’s mandate to provide information assurance on cyber security: acquiring, using, and analyzing information from the global information infrastructure, or from other sources, to provide advice, guidance, and services to help protect electronic information and information infrastructures – to keep Canadians safe and secure.

In the report, the Cyber Centre assesses that Iranian cyber threat actors are using sophisticated social engineering methods to enhance their spear phishing activities, including:

  • Creating fake accounts with credible, attractive personas on multiple platforms
  • Using professional interactions on social media platforms to build relationships with targets over long periods of time
  • Luring their targets into engaging with them by referring to highly emotional content on geopolitical issues or traumatic events
  • A fake persona may reach out posing as someone with a potential job opportunity, a representative of a think tank or research institute, or a journalist. They are known to target defence contractors, aerospace employees, energy sector employees, journalists, academics, activists, politicians, diplomats, and civil society groups.

    This is an extract. The publication continues at the source.

    Read the original at the source: https://www.canada.ca/en/communications-security/news/2024/12/canadian-centre-for-cyber-security-warns-of-sophisticated-iranian-social-engineering-campaigns.html

    Officially imported this from Communications Security Establishment’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

    Provenance

    Organization
    Communications Security Establishment — imported from official source
    Official source
    https://api.io.canada.ca/io-server/gc/news/en/v2?dept=communicationssecurity&sort=publishedDate&orderBy=desc&publishedDate%3E=2021-07-23&pick=50&format=atom&atomtitle=Communications%20Security%20Establishment ATOM
    Imported
    October 03, 2026 20:43
    Versions
    1 recorded
    Identity
    https://www.canada.ca/en/communications-security/news/2024/12/canadian-centre-for-cyber...

    Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.