Headlines
  • Early on Thursday, 73 students were injured and at least 16 students killed at a girls' boarding school in central Kenya.
  • The vital Strait of Hormuz, according to US President Donald Trump, "must be open to everyone" and "no one can control it."
  • A major portions of southern Lebanon has been declared a "combat zone" by the Israeli military.
  • Iran's foreign ministry said in a statement on Tuesday that American bombings in the country's southern Hormozgan region broke the ceasefire.
  • The Lebanese Ministry of Public Health claims that Israeli attacks in Lebanon on Tuesday left at least 31 persons dead and 40 injured.
  • Due to the Ebola outbreak, Ugandan authorities announced on Wednesday that the country's border with the Democratic Republic of the Congo (DRC) has been closed.

More Details

MuddyWater Iranian Threat Actor Group

The cyber espionage group MuddyWater is a part of Iran's Ministry of Intelligence and Security (MOIS). [1,] MuddyWater has been targeting government and corporate entities in the Middle East, Asia, Africa, Europe, and North America since at least 2017.
The cyber espionage group MuddyWater is a part of Iran's Ministry of Intelligence and Security (MOIS). [1,] MuddyWater has been targeting government and corporate entities in the Middle East, Asia, Africa, Europe, and North America since at least 2017.

The cyber espionage group MuddyWater is a part of Iran’s Ministry of Intelligence and Security (MOIS). [1,] MuddyWater has been targeting government and corporate entities in the Middle East, Asia, Africa, Europe, and North America since at least 2017. These entities are from a variety of industries, including telecommunication, local government, defense, and oil and natural gas.

Custom malware, credential theft, and the use of genuine technologies for persistence and lateral movement are just a few of MuddyWater’s adaptive strategies. Data exfiltration, espionage, and gaining permanent access within targeted networks are the main focuses of the group’s operations. The fact that their

In order to obtain foreign intelligence, Group-IB Threat Intelligence recently uncovered a sophisticated phishing campaign that was planned by the Advanced Persistent Threat (APT) MuddyWater and targeted multinational organizations all over the world.

The threat actor used NordVPN, a legitimate service, to gain access to the hacked mailbox. MuddyWater then used it to send phishing emails that looked like real correspondence. By taking advantage of the authority and confidence that come with these kinds of communications, the campaign improved its chances of tricking recipients into opening the malicious attachments.

According to Group-IB Threat Intelligence,the victims were urged to activate macros in order to access the Microsoft Word documents that were included in the phishing emails. Version 4 of the Phoenix backdoor was eventually installed on the victim’s machine upon the activation of macros, which caused the Microsoft Word documents to run malicious Visual Basic for Application (VBA) code.

Nozomi Networks Labs has seen a 133% rise in cyberattacks from well-known Iranian threat actor organizations in May and June due to the most recent Iranian war.

The Transportation and Manufacturing sectors were the targets of MuddyWater, APT33, OilRig, CyberAv3ngers, FoxKitten, and Homeland Justice, according to Nozomi Networks Labs.

Related Article

Eavesdropping Attack

A malicious attempt to intercept and access data sent over a network without authorization is known ...
May 28, 2026

Rainbow Table Attack

A rainbow table attack is an method for cracking passwords that makes use of a unique table to crack ...
May 27, 2026

People-Centric Cybersecurity

Cyber security that emphasizes on the behavioral traits of people who adhere to the processes laid o ...
May 26, 2026

API Throttling

Cloud APIs use a method called throttling to restrict how many requests may be performed in a certai ...
May 25, 2026

Address Resolution Protocol (ARP) spoofing

One form of spoofing attack that hackers utilize to intercept data is Address Resolution Protocol (A ...
May 22, 2026

Brute Force Attack

A brute force attack is a type of cyberattack where attackers attempt to access an account or encryp ...
May 21, 2026

Other Article

Bizzare News

Indian Man Set World Record by…

Sunil Joseph, a 57-year-old Indian man with a lifelong love of collecting, set a Guinness World Reco ...
May 28, 2026
Pet Corner

Arabian Mau Cat

Originating in the United Arab Emirates, the Arabian Mau cat breed is intelligent, adaptable, and ev ...
Prevent Cyber Crime

Eavesdropping Attack

A malicious attempt to intercept and access data sent over a network without authorization is known ...
Bizzare News

Thai Skydiver Set Record for Highest…

Tanaboworn Sirikunakornkun from Thailand, also known as "Super Toom," claimed a record for the highe ...
May 27, 2026
Pet Corner

Turkish Pointer Dog Breed

The Turkish Pointer, or Tarsus Çatalburun, originated in Mersin, in Turkey's southern Tarsus region ...
Prevent Cyber Crime

Rainbow Table Attack

A rainbow table attack is an method for cracking passwords that makes use of a unique table to crack ...

Top