2026伊朗-海湾危机追踪
CC
Events Archive
humanitarianMar 29, 2026

Hacked hospitals, hidden spyware: Israel-Iran conflict shows how digital fight is ingrained in warfare

Summary

WASHINGTON: As they fled an Iranian missile strike, some Israelis with Android phones received a text offering a link to real-time information about bomb shelters. But instead of a helpful app, the link downloaded spyware giving hackers access to the device's camera, location and all its data. The operation, attributed to Iran, showed sophisticated coordination and is just the latest tactic in a cyber conflict that pits the U.S. and Israel against Iran and its digital proxies. As Iran and its supporters seek to use their cyber capabilities to compensate for their military disadvantages, they are demonstrating how disinformation, artificial intelligence and hacking are now ingrained in modern warfare. Also read: A toothless Iran? Missile and drone strikes show it can still inflict pain The bogus texts received recently appeared to be timed to coincide with the missile strikes, representing a novel combination of digital and physical attacks, said Gil Messing, chief of staff at Check Point Research, a cybersecurity firm with offices in Israel and the U.S. "This was sent to people while they were running to shelters to defend themselves," Messing said. "The fact it's synced and at the same minute ... is a first." The digital fight is likely to persist even if a ceasefire is reached, experts said, because it's a lot easier and cheaper than conventional conflict and because it is designed not to kill or conquer, but to spy, steal and frighten. Check live updates of US-Israel war with Iran Investigators at the Utah-based security firm DigiCert have tracked nearly 5,800 cyberattacks so far mounted by nearly 50 different groups tied to Iran. While most of the attacks targeted U.S. or Israeli companies, DigiCert also found attacks on networks in Bahrain, Kuwait, Qatar and other countries in the region. Many of the attacks are easily thwarted by the latest cybersecurity precautions. But they can inflict serious damage on organizations with out-of-date security and impose a demand on resources even when unsuccessful. Then there's the psychological impact on companies that may do business with the military. "There are a lot more attacks happening that aren't being reported," said Michael Smith, DigiCert's field chief technology officer. A pro-Iranian hacking group claimed responsibility Friday for infiltrating an account of FBI Director Kash Patel, posting what appeared to be years-old photographs of him, along with a work resume and other personal documents. Many of those records appeared to be more than a decade old. It's similar to a lot of the cyberattacks linked to pro-Iran hackers: splashy and designed to boost morale among supporters, while undermining the confidence of the opponent but without much impact to the war effort. Smith said these high-volume, low-impact attacks are "a way of telling people in other countries that you can still reach out and touch them even though they're on a different continent. That makes them more of an intimidation tactic." Also read: US prepares for weeks of ground operations in Iran Iran also is targeting data centers with both cyber and conventional weapons, showing how important the centers have become to the economy, communications and military information security. This month, hackers supporting Iran claimed responsibility for hacking Stryker, a Michigan-based medical technology company. The group known as Handala claimed the strike was in retaliation for suspected U.S. strikes that killed Iranian schoolchildren. Cybersecurity researchers at Halcyon recently published the findings of another recent cyberattack targeting a health care company. Halcyon did not reveal the name of the company but said the hackers used a tool that U.S. authorities have linked to Iran to install destructive ransomware that shut the company out of its own network. The hackers never demanded a ransom, suggesting they were motivated by destruction and chaos, not profit. Together with the attack on Stryker, "this suggests a deliberate focus on the medical sector rather than targets of opportunity," said Cynthia Kaiser, senior vice president at Halcyon. "As this conflict continues, we should expect that targeting to intensify." But it's disinformation where AI has really demonstrated its corrosive impact on public trust. Supporters of both sides have spread bogus images of atrocities or decisive victories that never happened. One deepfake image of sunken U.S. warships has racked up more than 100 million views. Authorities in Iran have limited internet access and are working to shape the view Iranians receive of the war with propaganda and disinformation. Iranian state-run media, for instance, has begun labeling actual footage of the war as fake, sometimes substituting its own doctored images, according to research at NewsGuard, a U.S. company that tracks disinformation. Heightened concerns about the risks posed by AI and hacking prompted the State Department to open a Bureau of Emerging Threats last year focused on new technologies and how they could be used against the U.S. It joins similar efforts already underway at agencies including the Cybersecurity and Infrastructure Security Agency and the National Security Agency. AI also plays a role in defending against cyberattacks by automating and speeding the work, Director of National Intelligence Tulsi Gabbard recently told Congress. The technology, she said, "will increasingly shape cyber operations with both cyber operators and defenders using these tools to improve their speed and effectiveness," Gabbard said. While Russia and China are seen as greater cyberthreats, Iran has nonetheless launched several operations targeting Americans. In recent years, groups working for Tehran have infiltrated the email system of President Donald Trump's campaign, targeted U.S. water plants and tried to breach the networks used by the military and defense contractors. They have impersonated American protesters online as a way to covertly encourage protests against Israel. (You can now subscribe to our Economic Times WhatsApp channel) The operation, attributed to Iran, showed sophisticated coordination and is just the latest tactic in a cyber conflict that pits the U.S. and Israel against Iran and its digital proxies. As Iran and its supporters seek to use their cyber capabilities to compensate for their military disadvantages, they are demonstrating how disinformation, artificial intelligence and hacking are now ingrained in modern warfare. Also read: A toothless Iran? Missile and drone strikes show it can still inflict pain The bogus texts received recently appeared to be timed to coincide with the missile strikes, representing a novel combination of digital and physical attacks, said Gil Messing, chief of staff at Check Point Research, a cybersecurity firm with offices in Israel and the U.S. "This was sent to people while they were running to shelters to defend themselves," Messing said. "The fact it's synced and at the same minute ... is a first." The digital fight is likely to persist even if a ceasefire is reached, experts said, because it's a lot easier and cheaper than conventional conflict and because it is designed not to kill or conquer, but to spy, steal and frighten. Check live updates of US-Israel war with Iran Iran-linked groups are turning to high-volume, low-impact cyberattacksWhile high in volume, most of the cyberattacks linked to the war have been relatively minor when it comes to damage to economic or military networks. But they have put many U.S. and Israeli companies on the defensive, forcing them to quickly patch old security weaknesses. Investigators at the Utah-based security firm DigiCert have tracked nearly 5,800 cyberattacks so far mounted by nearly 50 different groups tied to Iran. While most of the attacks targeted U.S. or Israeli companies, DigiCert also found attacks on networks in Bahrain, Kuwait, Qatar and other countries in the region. Many of the attacks are easily thwarted by the latest cybersecurity precautions. But they can inflict serious damage on organizations with out-of-date security and impose a demand on resources even when unsuccessful. Then there's the psychological impact on companies that may do business with the military. "There are a lot more attacks happening that aren't being reported," said Michael Smith, DigiCert's field chief technology officer. A pro-Iranian hacking group claimed responsibility Friday for infiltrating an account of FBI Director Kash Patel, posting what appeared to be years-old photographs of him, along with a work resume and other personal documents. Many of those records appeared to be more than a decade old. It's similar to a lot of the cyberattacks linked to pro-Iran hackers: splashy and designed to boost morale among supporters, while undermining the confidence of the opponent but without much impact to the war effort. Smith said these high-volume, low-impact attacks are "a way of telling people in other countries that you can still reach out and touch them even though they're on a different continent. That makes them more of an intimidation tactic." Also read: US prepares for weeks of ground operations in Iran Health care and data centers have been a targetIran is likely to target the weakest links in American cybersecurity: supply chains that support the economy and the war effort, as well as critical infrastructure like ports, rail stations, water plants and hospitals. Iran also is targeting data centers with both cyber and conventional weapons, showing how important the centers have become to the economy, communications and military information security. This month, hackers supporting Iran claimed responsibility for hacking Stryker, a Michigan-based medical technology company. The group known as Handala claimed the strike was in retaliation for suspected U.S. strikes that killed Iranian schoolchildren. Cybersecurity researchers at Halcyon recently published the findings of another recent cyberattack targeting a health care company. Halcyon did not reveal the name of the company but said the hackers used a tool that U.S. authorities have linked to Iran to install destructive ransomware that shut the company out of its own network. The hackers never demanded a ransom, suggesting they were motivated by destruction and chaos, not profit. Together with the attack on Stryker, "this suggests a deliberate focus on the medical sector rather than targets of opportunity," said Cynthia Kaiser, senior vice president at Halcyon. "As this conflict continues, we should expect that targeting to intensify." Artificial intelligence is providing a boostAI can be used both to increase the volume and speed of cyberattacks as well as allow hackers to automate much of the process. But it's disinformation where AI has really demonstrated its corrosive impact on public trust. Supporters of both sides have spread bogus images of atrocities or decisive victories that never happened. One deepfake image of sunken U.S. warships has racked up more than 100 million views. Authorities in Iran have limited internet access and are working to shape the view Iranians receive of the war with propaganda and disinformation. Iranian state-run media, for instance, has begun labeling actual footage of the war as fake, sometimes substituting its own doctored images, according to research at NewsGuard, a U.S. company that tracks disinformation. Heightened concerns about the risks posed by AI and hacking prompted the State Department to open a Bureau of Emerging Threats last year focused on new technologies and how they could be used against the U.S. It joins similar efforts already underway at agencies including the Cybersecurity and Infrastructure Security Agency and the National Security Agency. AI also plays a role in defending against cyberattacks by automating and speeding the work, Director of National Intelligence Tulsi Gabbard recently told Congress. The technology, she said, "will increasingly shape cyber operations with both cyber operators and defenders using these tools to improve their speed and effectiveness," Gabbard said. While Russia and China are seen as greater cyberthreats, Iran has nonetheless launched several operations targeting Americans. In recent years, groups working for Tehran have infiltrated the email system of President Donald Trump's campaign, targeted U.S. water plants and tried to breach the networks used by the military and defense contractors. They have impersonated American protesters online as a way to covertly encourage protests against Israel. (You can now subscribe to our Economic Times WhatsApp channel) (You can now subscribe to our Economic Times WhatsApp channel) Prime ExclusivesInvestment IdeasStock Report PlusePaperWealth Edition

Actors involved

IsraelIran

Sources

See this event through different lenses

Compare how Western, Iranian, Israeli, Global South, and Pro-Peace perspectives frame this event.

Compare Perspectives

Community Notes

Community Notes

Loading notes...

Related events

humanitarianUnverifiedUSIsraelIranRussiaChina
1 source

Tuesday, June 16, 2026 75° Today's Paper Today Already a Honolulu Star-Advertiser subscriber? Log in now to continue reading. From as low as $12.95 /mo. A recent comprehensive global survey study of tens of thousands of people in nearly 100 countries found the vast majority see the United States as the biggest threat to the world.

At the same time, more nations say they prefer China over the U.S. China’s approval rating has risen dramatically in the Global South, where support for the U.S. has plummeted. These were the results of the 2026 Democracy Perception Index, an annual study conducted by a group called the Alliance of Democracies.

The survey asked 23,968 respondents in 84 countries which nation they consider to be “the biggest threat to the world.” Most people in 65 out of 84 countries said the United States is the largest danger. Another 10 countries (almost all in Europe) said Russia is the biggest threat.

Seven (in West Asia and North Africa) said Israel. Israel said Iran. Japan said China. Trevor Tyler Halawa Stay in touch with breaking news, as it happens, conveniently in your email inbox. It's FREE! EXPRESS YOURSELF The Honolulu Star-Advertiser welcomes all opinions.

Want your voice to be heard? Submit a letter to the editor. >> Write us: We welcome letters up to 150 words, and guest columns of 500-600 words. We reserve the right to edit for clarity and length. Include your name, address and daytime phone number.

>> Mail: Letters to the Editor, Honolulu Star-Advertiser 7 Waterfront Plaza, 500 Ala Moana, Suite #7-500 Honolulu, HI 96813 >> Contact: 529-4831 (phone), [email protected], staradvertiser.

humanitarianUnverifiedUSIsraelIranRussiaChina
1 source

“We want them [Iran] to behave like a normal country,” said US Vice President JD Vance regarding the US-Iran memorandum of understanding (MoU) during a Monday night interview with CBS News. Vance explained that if Tehran complies with the points outlined in the MoU, including giving up its stockpile of enriched uranium, stopping funding to terrorist organizations, and making the country investible, then “benefits will float to them.

” Uranium stockpile at center of deal The most important thing to focus on, said Vance, is the enriched uranium, which, according to the MoU, would be destroyed by the International Atomic Energy Agency (IAEA) and the US. “We want them to have a successful country, but only if they do what's necessary to commit long-term to not building a nuclear weapon,” said Vance.

Vance rejects Obama comparison In a video shown to Vance by the CBS interviewer, former US President Barack Obama is seen saying that any agreement that arises between the US and Iran is “not going to be significantly different, or a significant improvement from the deal that we had in the first place and that we had worked for for a long stretch of time.

” Vance responded that Obama’s claims are “fundamentally not right.” “If you go back to the Obama JCPOA (Joint Comprehensive Plan of Action), what it did was it took an Iranian nuclear program that it accelerated. It basically bribed the Iranians to stop that program.

The JCPOA was an Obama-led multilateral agreement between Iran and the US, UK, France, China, Russia, and Germany to limit Iran’s nuclear development. Vance argued that Trump’s administration is in a different position. “The Iranian nuclear program has been completely destroyed, and what we’re saying is: make the long-term commitment to not rebuild it, and you will get the benefits that come with that.

” Vance addresses Israeli concerns The vice president also noted that the Gulf States, whom he claims have been threatened by the Iranian regime for 47 years, “hated the JCPOA because they felt that it empowered Iran to be a bad regional actor.” The same countries, argued Vance, have called Trump’s plan “amazing because it transforms the Middle East in a way that makes them more peaceful and more prosperous.

” When asked about Israeli involvement in the MoU, Vance responded that it is normal for close allies to have disagreements. “What we know,” he said, “is that this agreement is going to make Israel safer, going to make the entire region safer. We feel quite confident that the Israelis are going to be brought in on this agreement once we get a little further down the road.

Location: Jerusalem
humanitarianUnverifiedIsraelProxy
1 source

On March 2, 2026, Hezbollah fired at Israel two days after US and Israeli strikes on Iran, initiating exchanges in which Israeli forces have targeted Hezbollah infrastructure in southern Lebanon and Hezbollah has struck northern Israel and Israeli positions in Lebanon.

Lebanon's Health Ministry has reported more than 3,213 deaths and over 1 million people displaced after nearly three months of strikes. Israeli Prime Minister Benjamin Netanyahu stated that Hezbollah's use of explosive drones requires increased operations, while US and Israeli officials have described the Lebanon conflict as separate from negotiations with Iran.

Location: Tehran