‘CanisterWorm’ Springs Wiper Attack Targeting Iran
By DAPSSA AI Desk | 2026-04-03T18:55:32.884Z

Summary
A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on infected systems that use Iran's time zone or have Farsi set as the default language.
Key Points
- A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly...
- Source: ‘CanisterWorm’ Springs Wiper Attack Targeting Iran
- Published: Mon, 23 Mar 2026 15:43:04 +0000
Why It Matters
A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on infected systems that use Iran's time zone or have Farsi set as the default language. Teams should review impact, affected syste...