Iranian state-sponsored cyber espionage group tasked with conducting information collection and surveillance operations against individuals and organi...

Threat Actor Profile

APT42

State-sponsored threat group originating from IR. Suspected sponsor: Iran (Islamic Republic of). Known to target Education, Government, Military and 11 other sectors.

14 Industries Tracked Real-Time Alerts

Actor Overview

Origin Country
IR
Suspected Sponsor
Iran (Islamic Republic of)
Incident Types
Espionage

Target Industries

EducationGovernmentMilitaryDefenseEnergyFinanceHealthcarePharmaceuticalsCivil SocietyLegalManufacturingMediaNGOsPharmaceuticals

Suspected Victims

AustraliaEuropeIsraelMiddle EastUS

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on APT42 is published.

Actor Details

Primary Name
APT42
Known Aliases
UNC788, CALANQUE
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →