(Washington, D.C.) — Just two days after two Iranian satellites were knocked offline in a coordinated cyberattack, a notorious hacker known only by the alias “0-P” has claimed responsibility for the breach.
In a post uploaded to an encrypted messaging forum on the dark web late Monday night, 0-P released fragments of satellite command logs and internal Iranian server credentials, along with a short message:
“Iran is just funny to mess with, now they cant even use a orbit on me. — 0-P”
Cybersecurity experts are working to verify the authenticity of the data dump, but early analysis by researchers at MITRE Corporation suggests the access logs match the operational signature of Iran’s Zohreh-2 geostationary satellite. The leaked files include satellite telemetry paths, uplink timestamps, and encrypted ground station credentials — believed to be valid at the time of the breach.
The FBI’s Cyber Division confirmed on Tuesday afternoon that it is actively investigating the breach and seeking the individual or group behind the 0-P alias.
FBI Special Agent Elvis Chan, a senior cybercrime investigator, told reporters during a press conference:
“We take this intrusion seriously. Any unauthorized access to aerospace systems — whether U.S. or foreign — is a breach of international cybersecurity norms and presents a global security risk. The individual operating under the alias 0-P is now the subject of an international investigation.”
The agency has reportedly issued a sealed warrant and has contacted INTERPOL regarding possible cross-border leads. Meanwhile, NSA officials are also assisting in digital forensics and attribution, focusing on identifying the IP obfuscation and proxy routing used during the attack.
Who is 0-P?
Little is known about the hacker. 0-P first appeared on dark net forums in early 2023, allegedly behind a series of database leaks targeting defense contractors in Eastern Europe. Cyber intelligence firms believe 0-P may be a lone actor or part of a decentralized group.
While no direct political affiliation has been claimed, analysts note the tone of the message suggests a motivation beyond profit — potentially ideological or retaliatory.
Iran’s government, meanwhile, has escalated its rhetoric, calling the hack an “act of cyber-terrorism” and vowing to respond “through all available technological means.”
This developing story marks a sharp escalation in the militarization of cyberspace, especially as nations increasingly rely on orbital assets for surveillance, communications, and defense operations.
Top comments (0)