Map of Iran depicted in blue binary code.

Prepare for heightened risk of Iranian cyberattacks

Information security officials warn of potential threats from nation-state bad actors

PorMegan Ryan and Krista Taylor
24 de junio de 2025Lectura de 3 minutos

PUNTOS CLAVE

  • Heightened threats: Following recent military strikes, U.S. companies face increased risks from Iranian state-sponsored cyberattacks.
  • Proactive measures: Implement multifactor authentication, strong passwords and employee training to enhance cybersecurity resilience.
  • Supply chain security: Evaluate and secure your supply chain to prevent breaches through compromised third-party software.

Following last weekend’s American military strikes in Iran, the Department of Homeland Security has issued a warning for companies to be vigilant in defending their information security systems and infrastructure. The warning says "low-level cyberattacks against U.S. networks by pro-Iranian 'hacktivists' are likely" with a particular focus on "poorly secured U.S. networks and internet-connected devices."

The Cybersecurity and Infrastructure Security Agency (CISA) has urged companies to improve resilience against nation-state cyber threats by proactively assessing their cyber preparedness, enhancing defenses, monitoring suspicious activity, and educating employees on reporting suspicious emails and links.

“It is important to be on the lookout for retaliation through cyberattacks directed at U.S. critical infrastructure and organizations,” said Paul Tucker, chief information security officer at BOK Financial®.

Cybersecurity experts have identified multiple distinct Iranian state-sponsored or pro-Iran hacktivist threat actor groups who are financially motivated cybercriminals and have historically targeted U.S. organizations during heightened conflicts. Preparedness is crucial, as cyberattacks targeting other countries, like Israel, could indirectly affect U.S. companies due to network interconnectedness.

Historically, Iranian state-sponsored advanced persistent threat (APT) actors have used common but effective tactics to gain initial access to target networks including:

  • Spear phishing: An attack involving emails that are highly customized to the individual, making it appear like it's coming from one of your providers or vendors.
  • Brute force: A hacking method using trial and error to crack passwords, login credentials and encryption keys.
  • Exploiting known vulnerabilities against accounts and networks with weak security.

Reciente Iranian state-sponsored activity has included malicious cyber activity against operational technology devices by Iranian Government Islamic Revolutionary Guard Corps (IRGC)-affiliated APT cyber actors. The following actions are key to strengthening operational resilience against this threat:

  • Implement multifactor authentication for all accounts, especially privileged ones.
  • Use contraseñas seguras y únicas.
  • Establezca políticas de bloqueo de cuentas después de un número limitado de intentos fallidos de inicio de sesión.
  • Check systems for default passwords still in use.

"Businesses and local municipalities should remain vigilant to Iranian threats and remind employees to stay alert," emphasized Tucker. "Cybersecurity today means protecting what we cannot see, in places we cannot reach. The best defense against attacks is preventing them."

Sea proactivo
The heightened risk of attacks also can serve as a reminder for cybersecurity best practices. CISA's checklist for organizations of all sizes provides guidance on being prepared, detection and response if an intrusion occurs.

"En el panorama cambiante de hoy, las empresas deben asegurarse de que sus empleados estén bien capacitados y atentos contra los ataques cibernéticos, especialmente los ataques de phishing", dijo Tucker.

"It's imperative that employees take a moment to verify emails before interacting with them and report suspicious activity. A single click can have far-reaching consequences."
- Paul Tucker, chief information security officer at BOK Financial

But it's more than just monitoring emails. Preventative measures also include:

  • Prepárate. Asegúrese de tener un plan de respuesta a incidentes y continuidad del negocio, y pruébelo rutinariamente, para estar preparado en caso de ransomware.
  • Minimice su superficie de ataque. Keep systems and software up to date and remediate known system vulnerabilities. Aplique la autenticación multifactor para el acceso remoto y actualice las vulnerabilidades conocidas (use Herramientas gratuitas de CISA si es necesario).
  • Evalúe la seguridad de su cadena de suministro. Los actores han obtenido acceso inicial a las organizaciones víctimas al comprometer el software de terceros de confianza.
  • Increase employee awareness. Cybersecurity awareness training plays a crucial role in preventing cyberattacks of any kind, especially to prevent phishing attacks and password compromises.
  • Vet your suppliers. Make certain your critical vendors have strong security measures and contingency plans to ensure continued service if an incident occurs.
  • Supervise la guía de CISA. El Shields Up site provides guidelines for companies of all sizes plus detailed recommendations for business leaders.

"Estar preparado, tener un libro de jugadas de ciberseguridad y programas sólidos, e invertir en educar a los empleados sobre la importancia de la seguridad cibernética contribuirá en gran medida a proteger su negocio y sus clientes", dijo Tucker.


Contenido relacionado

    BOK Financial Corporation es una compañía regional de servicios financieros de más de $50 mil millones cuya casa central se encuentra en Tulsa, Oklahoma, y con más de $105 mil millones de activos bajo su gestión y administración. Las acciones de la compañía se comercializan públicamente en NASDAQ en la bolsa de mercados globales selectos (BOKF). Las participaciones de BOK Financial Corporation incluyen BOKF, NA; BOK Financial Securities, Inc. y BOK Financial Private Wealth, Inc. Las acciones de BOKF, NA incluyen TransFund y Cavanal Hill Investment Management, Inc. BOKF, NA opera divisiones bancarias en ocho estados como: Bank of Albuquerque; Bank of Oklahoma; Bank of Texas y BOK Financial (en Arizona, Arkansas, Colorado, Kansas y Missouri); además de tener oficinas de propósito limitado en Nebraska, Wisconsin, Connecticut y Tennessee. Las entidades en poder de BOK Financial Corporation se denominan periódicamente BOK Financial Corporation Group. A través de sus subsidiarias, BOK Financial Corporation ofrece servicios bancarios comerciales y de consumo, servicios de corretaje, inversión, fideicomisos, iniciación y administración de hipotecas y una red de transferencia electrónica de fondos. Para más información, visite www.bokf.com.

    Los servicios de títulos, seguros y asesoramiento se ofrecen a través de BOK Financial Securities, Inc., miembro de  FINRA/SIPC y un asesor de inversiones registrado en la SEC. Los servicios pueden prestarse bajo nuestro nombre comercial, BOK Financial Advisors.

    Todas las inversiones implican un riesgo, incluso la pérdida de capital. El desempeño pasado no garantiza resultados futuros. No hay garantías de que el proceso de inversión termine en una inversión exitosa. La asignación de activos y la diversificación no eliminan el riesgo de experimentar pérdidas de inversión. Los riesgos aplicables a cualquier portafolio son aquellos relacionados con sus valores subyacentes.

    PRODUCTOS DE INVERSIONES Y SEGUROS: NO ASEGURADOS POR LA FDIC | SIN AVAL DEL BANCO O SUS AFILIADAS | SIN DEPÓSITOS | SIN SEGURO DE AGENCIAS FEDERALES DEL GOBIERNO | PUEDEN PERDER VALOR.

    El contenido de este artículo tiene fines informativos y educativos solamente, y no debe interpretarse como asesoramiento legal, impositivo o de inversión. Siempre consulte a un profesional financiero, contador o abogado calificado si desea recibir asesoramiento legal, impositivo o sobre inversiones. Ni BOK Financial Corporation ni sus afiliadas ofrecen asesoramiento legal.

    BOK Financial® es una marca comercial de BOKF, NA. Miembro de FDIC. Equal Housing Lender . © 2025 BOKF, NA.