TechBooky AI Assistant
TechBooky AI Assistant
👋 Welcome to TechBooky AI Assistant

I can help with:
🔎 Tech News
🤖 AI Topics
💻 Gadgets
☁️ Cloud
✍️ Guest Posts
📢 Advertising
🔗 Backlinks
📩 Newsletter
  • AI Search
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise Here
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home Security

FBI Warns of Handala Hackers Using Telegram for Malware

Paul Balo by Paul Balo
March 23, 2026
in Security
Share on FacebookShare on Twitter

The U.S. Federal Bureau of Investigation (FBI) has issued a warning about a growing cyber threat involving Iran-linked hackers using Telegram to launch malware attacks against targets worldwide.

According to the alert, cyber actors tied to Iran’s Ministry of Intelligence and Security (MOIS) are leveraging Telegram as a command-and-control (C2) platform to manage infections and steal sensitive data from compromised systems. 

The campaign has been linked to the Handala hacking group, also known as Handala Hack Team, which has previously been associated with destructive cyberattacks and data-leak operations.

How the attacks work

The FBI says attackers are using social engineering techniques to trick victims into downloading malicious files disguised as legitimate applications.

Once installed, the malware allows hackers to:

  • Gain remote access to infected systems
  • Capture screenshots and monitor activity
  • Steal files and sensitive data
  • Exfiltrate information for later leaks or extortion

After infection, the malware connects back to Telegram-based control servers, enabling attackers to issue commands and retrieve stolen data in real time. 

Because Telegram is widely used and encrypted, it provides attackers with a relatively resilient infrastructure that is harder to disrupt compared to traditional command-and-control systems.

The campaign has primarily targeted journalists, activists, and individuals critical of the Iranian government, as well as other opposition figures globally. 

The FBI said the attacks are part of broader “hack-and-leak” operations, where stolen data is selectively released to damage reputations, spread disinformation, or intimidate targets.

Such tactics combine technical cyberattacks with psychological operations, amplifying the impact beyond the initial breach.

The warning comes amid heightened geopolitical tensions and follows a series of cyber incidents linked to the same group.

Handala has been tied to phishing campaigns, data theft, extortion, and destructive malware attacks, including operations targeting organizations in the United States and other countries.

In some cases, the group has also used websites and Telegram channels to publish stolen data and claim responsibility for attacks, blending cyber intrusion with public messaging campaigns.

Security experts say the use of platforms like Telegram highlights a broader trend in cybercrime.

Messaging apps are increasingly being used not just for communication, but also as infrastructure for coordinating attacks, distributing malware, and managing compromised systems.

Telegram’s flexibility including support for bots, channels, and encrypted messaging makes it particularly attractive for threat actors looking to build scalable and resilient attack systems.

FBI urges vigilance

The FBI is urging organizations and individuals to remain vigilant against phishing attempts and suspicious downloads, particularly those delivered through messaging platforms or email.

Recommended precautions include:

  • Avoiding unsolicited file downloads
  • Verifying sources before opening attachments
  • Using multi-factor authentication
  • Keeping systems updated with the latest security patches

The agency said it released the alert to raise awareness and help organizations reduce the risk of compromise as cyber threats continue to evolve.

Related Posts:

  • 2024.02.06-US-Treasury-Department-sanctions-six-Iranian-hackers-responsible-for-malicious-cyber-activities-on-critical-infrastructure
    Iran-Linked Hackers Are Actively Disrupting US…
  • th
    2FA Alert: Gmail, Outlook, Facebook, and X Users at Risk
  • AI_Risks-ChatGPT
    OpenAI Confirms Hack Linked to TanStack Attack
  • github
    GitHub Confirms Hackers Stole Data From About 3,800…
  • Nigeria Bureau of Statistics Data breach
    Hackers Compromised The NBS Sever, But No Ransomware Yet
  • 211012130640-china-taiwan-flags
    Chinese Cyberattacks on Taiwan Hit 2.6M Daily in 2025
  • iran outage
    Iran Internet Blackout Deepens Amid Reported…
  • shutterstock_1960378399-min-scaled
    China’s New Telecom Backdoor Shows Cybersecurity Is…

Discover more from TechBooky

Subscribe to get the latest posts sent to your email.

Tags: fbihackersHandalaHandala Hackersiranmalware
Paul Balo

Paul Balo

Paul Balo is the founder of TechBooky and a highly skilled wireless communications professional with a strong background in cloud computing, offering extensive experience in designing, implementing, and managing wireless communication systems.

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • UK Plans AI Face Scans To Judge Asylum Seekers’ Ages Despite Known Bias Risks June 21, 2026
  • Trump Reportedly Mocked Zuckerberg and Bezos After Their Private Messages. Were We All Watching a Tech Industry Loyalty Contest? June 19, 2026
  • Snap Launches $2,195 AR Glasses to Challenge Phones June 17, 2026
  • Android 17 Is Here and Google Wants Gemini to Run Your Entire Phone June 17, 2026
  • SpaceX Buys Cursor Maker Anysphere for $60 Billion in Bold AI Power Play June 17, 2026
  • Britain’s Under-16 Social Media Ban Could Redefine Big Tech’s Responsibility To Children June 15, 2026
  • Anthropic Asked for AI Regulation, Fable 5 May Show What That Really Looks Like June 14, 2026
  • Amazon Raised Anthropic AI Security Concerns Before US Crackdown on Fable 5 and Mythos 5 June 14, 2026
  • Europe Calls Anthropic AI Ban a ‘Wake-Up Call’ as US Shuts Off Access to Fable 5 and Mythos 5 June 14, 2026
  • US Orders Anthropic to Disable Claude Fable 5 and Mythos 5 Over National Security Concerns June 14, 2026
  • Elon Musk Hits $1.1 Trillion as SpaceX Surpasses $2 Trillion Valuation June 13, 2026
  • SpaceX Prices Record $75 Billion IPO as Elon Musk Nears Trillionaire Status June 12, 2026

Browse Archives

June 2026
MTWTFSS
1234567
891011121314
15161718192021
22232425262728
2930 
« May    

Quick Links

  • About TechBooky
  • Advertise Here
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • AI Search
  • About TechBooky
  • Advertise Here
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.