Iran-Linked Hackers Restore Website After US Domain Seizure

A website linked to an Iranian government-associated hacking group has resurfaced just one day after U.S. authorities seized several of its domains, highlighting ongoing challenges in disrupting cyber threat actors.

The U.S. Department of Justice said it had seized four domains connected to the “Handala Hack Team,” which it linked to Iran’s Ministry of Intelligence and Security. The group had previously claimed responsibility for a cyberattack on a U.S. medical device company earlier in March.

Despite the takedown, the group quickly restored its online presence, stating that the action was an attempt by U.S. authorities to silence it. Analysts say such rapid recovery is common, as state-linked cyber units frequently re-establish operations using new domains or platforms.

The incident underscores the resilience of cyber threat actors and the limitations of domain seizures as a long-term deterrent. Experts note that these groups often maintain multiple backup channels, allowing them to resume activities with minimal disruption.

The case also highlights growing tensions in cyber operations, where government-linked hacking groups continue to play a role in both digital espionage and psychological operations.