Kaspersky Lab and Seculert worked together to sinkhole the Madi Command & Control (C&C) servers to monitor the campaign. Kaspersky Lab and Seculert id...

Threat Actor Profile

Madi

State-sponsored threat group originating from IR. Suspected sponsor: Iran (Islamic Republic of). Known to target Government, Private sector.

2 Industries Tracked Real-Time Alerts

Actor Overview

Origin Country
IR
Suspected Sponsor
Iran (Islamic Republic of)
Incident Types
Espionage

Target Industries

GovernmentPrivate sector

Suspected Victims

IranPakistanIsraelUnited States

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on Madi is published.

Actor Details

Primary Name
Madi
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →