🛰️ OSINT Update for 19 June 2025 🛰️
🇮🇷 Iran — Cyberattack • Financials • War
→ Hack on Nobitex exchange drained over $90 million; malware also disrupted Sepah Bank ATMs and services. Attribution pending.
→ Iran issued national security alert asking citizens to report suspected spies amid rising Israel‑focused tensions.
🇮🇱 Israel — Cyberattack • Drones • War
→ IDF intercepted approximately 150 Iranian drones and missiles targeting southern Israel—minimal damage reported.
→ Covert drone or missile strikes reportedly carried out inside Iran against air‑defence infrastructure.
→ Cyber‑defence operations continue targeting Iranian military control systems.
🇪🇺 European Union & Member States — MiCA • AI regulation • Encryption
→ MiCA licence schemes are advancing in Malta and Luxembourg; France pushing stronger stablecoin rules; Germany blocking proposals for encryption backdoors.
→ AI Act regulations now include robust limits on facial recognition and biometric surveillance in public spaces.
🇨🇳 China — Cyberattack • Online censorship
→ Chinese state actors linked to extensive phishing and malware campaigns targeting Japanese defence and technology sectors.
→ Domestic encryption tools facing greater restriction; ISPs now required to log encrypted traffic metadata.
🇯🇵 Japan — Cyberattack • Cyber policy
→ National alert issued after spear‑phishing attempts targeted Cabinet Office staff.
→ Active Cyber Defence Bill making legislative progress, empowering government agencies to take action against incoming cyber threats.
🇨🇦 Canada — AI regulation & Surveillance
→ Federal budget includes $240 million to build sovereign AI compute capabilities.
→ CSIS budget increased to add AI‑enabled domestic surveillance tools, including social platform monitoring.
🇩🇪 Germany — Crypto regulation • Facial recognition • Palantir
→ Bundestag debating classification of open‑source encryption libraries under dual‑use export controls.
→ Parliament and courts continue scrutiny of Palantir’s Gotham predictive policing platform.
→ Facial recognition systems on public transport scaled back amid public privacy concerns.
🇰🇵 North Korea — Military posture
→ Satellite imagery confirms troop and military gear movement near southern DMZ—indicative of ongoing training or mobilisation. No live‑fire activity noted.
🇷🇺 Russia — Cyberattack • Drones • BRICS
→ Russian APT and DDoS campaigns continue against Baltic states and Ukraine's logistical networks.
→ Unmanned Systems Regiment is now operational with laser‑drone defence capabilities.
→ BRICS digital‑ruble pilot advancing, with new policies in place on limiting capital outflows.
🇺🇦 Ukraine — Drones • Cyberattack • Capital controls
→ Use of AI‑driven FPV drone swarms confirmed in the Kharkiv region.
→ NATO cyber‑resilience drills underway.
→ Financial regulators pause capital control introduction; IMF engagement ongoing.
🇺🇸 United States — Cyberattack • ICE • AI regulation • Immigration
→ National cyber alert issued following Iranian‑linked hacks on Iranian financial institutions; critical infrastructure urged to strengthen defences.
→ ICE raids continue across multiple states; DOJ considering domestic‑terror designations for violent protest groups.
→ Senate hearings underway on facial recognition and AI tools in law enforcement and border integrity.
🇬🇧 United Kingdom — Domestic security & Extremism
→ MI5 reports elevated risk of digital radicalisation among anti‑immigrant networks; Home Office evaluating extremist classification updates.
→ No confirmed terror incidents connected to digital radicalisation to date.
📌 Forward Triggers
→ Attribution updates and potential prosecutions tied to Iran's financial breaches
→ Disclosure of Israeli covert operations inside Iran
→ Completion of MiCA licencing and stablecoin oversight reforms
→ Japan’s Active Cyber Defence Bill passage and implementation
→ Germany‑Palantir legal rulings on predictive policing
→ Formal domestic‑terror definition for ICE‑related unrest in U.S.
🛰️ End of report.
#OSSINT #nostrintel
OSINT Update for 18 June 2025
🇨🇳 China — Cyberattack • Online Censorship
➤ Chinese-state hackers MirrorFace (MICROSTaT linked) credited with over 210 attacks on Japanese defence, aerospace, semiconductor sectors—phishing and malware led to persistent intrusions.
➤ PLA doctrine emphasises AI-driven information warfare: networked disinformation campaigns and C4ISR integration.
➤ Reports of suppression of encryption tools and AI-driven content controls at home.
🇯🇵 Japan — Cyberattack • AI Regulation
➤ Targeted by MirrorFace attacks since 2019; JAXA, Foreign/Defence ministries, industry hit.
➤ Active Cyber Defence Bill advanced—empowers pre-emptive network disruption of cyber actors.
➤ Needed deep-tech supply chain resilience in response to repeated attacks.
🇮🇷 Iran — Cyberattack • Drones • War
➤ Sepah Bank hit by destructive malware campaign (“Predatory Sparrow”); services disrupted and data destroyed.
➤ Crypto exchange ParsEx drained—backend breach in admin portal confirmed.
➤ Drone units remain at heightened readiness; signals intelligence shows Quds Force coordination with proxies.
🇮🇱 Israel — Cyberattack • Drones • War
➤ Increased drone missions over Gaza; reinforced northern air defence.
➤ Reactive cyber sweeps targeting Iranian control nodes continuing.
➤ Elevated domestic surveillance tech deployment; civil-liberty concerns rising.
🇪🇺 EU — MiCA • CBDC • AI Regulation
➤ Malta and Luxembourg overseeing MiCA licensing; France proposing stablecoin issuer limits.
➤ CBDC sandbox arm EU innovation; encrypted backdoor resistance in Germany and Czech Parliament.
➤ AI Act binds facial recognition and biometric use in public spaces.
🇷🇺 Russia — Cyberattack • Drones • BRICS
➤ APT and DDoS attacks continue against Baltic and Ukrainian logistic networks.
➤ Unmanned Systems Regiment activated; laser-drone defence deployed.
➤ BRICS digital-ruble pilot nearing deployment; capital outflow restrictions announced.
🇺🇦 Ukraine — Drones • Cyberattack • Capital Controls
➤ AI-capable drone swarms used in Kharkiv; first kills confirmed.
➤ NATO cyber-drills ongoing; no major breach announcements.
➤ Regulators continue to monitor, capital control review paused; IMF engaged.
🇺🇸 USA — Cyberattack • Immigration • AI Regulation
➤ FBI warns Chinese ("Volt Typhoon") and Russian/Middle‑East actors targeting U.S. infrastructure.
➤ ICE raids continue; expanded domestic-terror threat classifications debated.
➤ Senate committee weighs facial-recognition limits in AI Bill framework.
🇩🇪 Germany — Crypto Regulation • Facial Recognition • Palantir
➤ Bundestag reviewing Palantir Gotham’s predictive policing use—court hearing next month.
➤ MiCA crypto service registry launching Q3.
➤ Facial-recognition pullbacks in public transit following backlash.
🇨🇳 vs 🇯🇵 / Intelligence Agencies
➤ NSA alert flags Volt Typhoon access to U.S. OT networks; CISA/NSA/FBI/UK/NZ/AUS/BND jointly warn on PRC threat.
➤ BND warning echoes EU partners on APT40/31 targeting.
➤ No fresh updates found from CIA, Mossad, MSS or FSB—monitoring in place.
📌 Forward Triggers
➤ China spyware targets Japanese supply chains; supply-chain espionage escalates.
➤ Japan’s Active Cyber Defence regime: first strikes or counter strikes.
➤ Attribution and response to Iranian banking and exchange hacks.
➤ EU’s encryption ban or stablecoin regulation outcomes.
➤ APT-driven cyber or drone escalations via Russia/Ukraine border.
➤ U.S. domestic-terror labelling of ICE riots finalized.
➤ German court ruling on Palantir predictive policing.
OSINT Update for 18 June 2025
🇮🇷 Iran
➤ State-linked bank Sepah hit by destructive cyberattack (Gonjeshke Darande “Predatory Sparrow”), disabling online services and ATMs, with suspected data destruction.
➤ Codebreakers leak exposed 42M customer records in March; new data theft suspected via cyber intrusion.
➤ IRGC drone assets remain on heightened alert.
➤ Quds Force communications detected during regional proxy coordination.
🇮🇱 Israel
➤ Continuation of low-intensity airstrikes in Gaza targeting Iranian-linked sites.
➤ Drone surveillance increased near urban centres; heightened alert around northern front.
➤ Cyber-defence strengthened after reports of Iranian infra-targeting breaches.
🇪🇺 EU
➤ Guidance issued on CBDC pilot programmes expected in Q4.
➤ Germany and Czech Republic vocal against proposed encryption backdoor mandates.
➤ Facial recognition and biometric use limits finalised under updated AI regulations.
🇷🇺 Russia
➤ Belgorod radar unit destroyed by Ukrainian drone strike.
➤ Unmanned Systems Regiment now operational near frontlines.
➤ BRICS summit sees digital-ruble framework nearing testing phase.
🇺🇦 Ukraine
➤ FPV swarm drones actively used in Kharkiv operations; Russian forces confirm losses.
➤ Joint NATO cyber drills underway; operational resilience tested.
➤ Capital control review paused as IMF engages with Kiev on financial strategy.
🇺🇸 USA
➤ ICE protests expand; DHS deploying additional riot-control units.
➤ Draft DOJ memo recommends reclassifying violent ICE protest groups as domestic-terror threat.
➤ Senate AI hearing debates federal facial-recognition guidelines.
🇩🇪 Germany
➤ Bundestag investigates Palantir’s predictive policing tools; public hearing scheduled.
➤ MiCA registry to launch in Q3; consultations close in one week.
➤ Metro facial recognition systems reduced post-public opposition.
🛰️ Palantir
➤ German lawsuit aims to halt Palantir Gotham deployments in multiple states.
➤ New US federal analytics contract awarded for domestic risk modelling.
----
📌 Forward Triggers
➤ Attribution and counteraction to Sepah Bank breach
➤ Senate ruling on AI and facial-recognition use
➤ Activation results from Russia’s Unmanned Systems Regiment
➤ Finalisation of German MiCA registry
➤ ICE protest escalation and policy clarifications
#OSINT #nostrintel