Particle.news

Download on the App Store

Predatory Sparrow Hackers Destroy Data at Iran’s IRGC-Linked Bank Sepah

Bank Sepah’s IT systems remain offline with branches closed nationwide as authorities vow to restore operations within hours.

A hooded man holds a laptop computer as cyber code is projected on him in this illustration picture taken on May 13, 2017. REUTERS/Kacper Pempel/Illustration/ File Photo
Image
ATMs belonging to the Sepah Bank are no longer operational
Image

Overview

  • Predatory Sparrow, known by its Persian name Gonjeshke Darande, claimed responsibility for the attack and said it targeted Bank Sepah for financing Iran’s military and nuclear programs.
  • The breach knocked ATMs and online services out of service across all 1,800 branches, leaving customers in Tehran, Isfahan, Shiraz, Yazd and Tabriz unable to access accounts.
  • Bank Sepah was the first Iranian bank sanctioned by the United States and the United Kingdom over its alleged support for ballistic missile development and proxy operations.
  • The IRGC’s Cyber Security Command banned officials from using devices on public networks and Fars news agency reported that systems should be restored within a few hours.
  • Cybersecurity experts note Predatory Sparrow’s past destructive operations against Iranian steel plants and gas stations and link the latest hack to rising IsraelIran cyber hostilities.