APT42, an Iran-linked cyber espionage group, has expanded its phishing operations with AI-assisted research, convincing personas, and a more resilient version of its TAMECAT malware.
The campaign has targeted senior government and defense officials, policy experts, and, in some cases, family members connected to high-value individuals.