# US, UK and Dutch agencies detail Iranian Telegram-controlled spyware

_Published Tuesday, September 15, 2026 at 8:07 PM EDT · Security, Policy · Latest · Tier 1 — Major_

![US, UK and Dutch agencies detail Iranian Telegram-controlled spyware — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiZTZstgI7jZKSq2kVj82ewI26neoU-YsSa1z0LIJdjqdsCSk8zS3VYdvhFyfE0rq75UOlst77oTDBZ-mVzRDaqljLl-jJrvxWzLBmj74k8kWFjld5o2uTB59tskHlBqM0JTuf5yuTMsWMBuE-Y_2LtkIfKT-l9C-h5Y5rvkAJKlIGD5rQLbUuWRNx8y5k/s1700-nu-rw-lo-l85-e365/iran-malware.jpg)

US, UK and Dutch agencies issued a joint advisory on malware they assess Iran's Ministry of Intelligence and Security uses against dissidents, journalists and activists. The Windows malware, called HEAVYGRAM by the FBI and CHOSEN BRICK by the UK's NCSC, uses Telegram bots for command and data collection. The agencies said it can capture messages, screenshots and audio, and steals data through Telegram and cloud services.

## Sources

- [The Hacker News](https://thehackernews.com/2026/09/iranian-hackers-use-telegram-controlled.html)

---
Canonical: https://techandbusiness.org/newswire/Ek1o8_eGC8iZcMueXqyKhm
Published: 2026-09-16T00:07:46.538Z
Story chronology: 2026-09-15T16:29:51.000Z
Retrieved: 2026-09-16T02:07:04.370Z
Publisher: Tech & Business (techandbusiness.org)
