Iran-linked password‑spraying campaign hits 300+ Israeli Microsoft 365 organisations — regional cyber risk rises
- Check Point and other researchers attribute large password‑spraying waves to Iran‑linked actors targeting Microsoft 365 tenants across Israel (March activity reported; broader regional risk).
- Campaign hit government, energy and critical‑service organisations; could be precursor to ransomware or account takeover operations.
- Immediate mitigation recommended: enforce MFA, monitor failed login spikes, block legacy auth, and review conditional access policies.
The Hacker News · 2026-04-06
Cisco names Bader Almadi Vice‑President to lead Saudi strategy and operations
- Cisco appointed Bader Almadi as Vice‑President for Saudi Arabia to lead growth, networking and security strategy from Riyadh.
- Significance: strengthens vendor leadership presence ahead of increased local demand for networking, data‑centre and cybersecurity solutions.
- Opportunities: potential for public‑private collaboration on skills programmes, data‑centre projects, and national cyber resilience initiatives.
Gulf Daily News · 2026-04-06
Check Point documents Iranian password‑spraying waves against governments and energy firms in Israel and UAE
- Check Point Research reports coordinated password‑spraying campaigns affecting Microsoft 365 environments across the Middle East.
- Primary targets: governments, energy companies and organisations with legacy authentication exposed.
- Advisory: tighten identity controls, apply zero‑trust access rules, and conduct password‑rotation and incident readiness checks.
Industrial Cyber · 2026-04-06
Data embassies and safeguarding digital assets during wartime — Gulf data‑centre risks exposed
- Rest of World examines recent strikes and threats against cloud infrastructure in the Gulf and the concept of 'data embassies' as a wartime resilience measure.
- Key risks: physical strikes on hyperscaler presence, jurisdictional seizure, and cascading outages affecting regional services.
- Policy implication: governments should formalise offsite sovereign backups, diversify cloud regions, and accelerate local resilience plans.
Rest of World · 2026-04-06