Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Iranian Cyber Group Targets US Organizations Amid Tensions

Iranian Cyber Group Targets US Organizations Amid Tensions

Posted on March 6, 2026 By CWS

The Iranian advanced persistent threat (APT) group, known as MuddyWater, has successfully breached several US-based organizations, according to recent reports from Broadcom’s Symantec and the Carbon Black threat hunting team. The cyber-attacks have affected a range of sectors, including an aerospace and defense contractor, a US airport, and a bank.

Targeted Entities in the US and Beyond

MuddyWater’s infiltration extends beyond US borders, impacting entities like a software firm operating in Israel and a non-governmental organization (NGO) active in both the US and Canada. These attacks have intensified following recent military actions by the US and Israel against Iran, which have heightened regional tensions.

The compromised software company, which serves the aerospace and defense sectors, has been a significant target due to its operations in Israel. This makes it particularly vulnerable to MuddyWater’s espionage activities.

Deployment of Sophisticated Backdoors

As part of their campaign, MuddyWater introduced a new backdoor termed ‘Dindoor’ into the networks of the targeted software company’s Israeli branch, as well as into the US bank and Canadian NGO. This backdoor carried a certificate attributed to ‘Amy Cherne’. Furthermore, the group attempted to extract sensitive data from these networks.

Additionally, the cybersecurity team identified another backdoor, ‘Fakeset’, developed using Python, which was found in the systems of a US airport and an NGO. This malware, too, was linked to certificates previously used in MuddyWater’s operations.

Ongoing Threat and Security Insights

Although the malicious activities have been temporarily disrupted, the potential risk remains high. Symantec and Carbon Black warn that other organizations could still be susceptible to similar breaches. MuddyWater, also known by aliases such as Mango Sandstorm and Seedworm, is associated with Iran’s Ministry of Intelligence and Security.

Active since 2017, the group is notorious for targeting Middle Eastern entities and has recently escalated its cyber warfare capabilities. Notably, last year, Amazon documented the APT’s involvement in hacking live CCTV streams in Jerusalem to support missile attacks.

The cybersecurity landscape continues to evolve, with state-sponsored actors like MuddyWater posing significant challenges. Organizations must remain vigilant and strengthen their defenses against sophisticated cyber threats.

Security Week News Tags:APT, Backdoor, cyber threats, Cybersecurity, data breach, Iranian hackers, IT security, MuddyWater, network security, US organizations

Post navigation

Previous Post: Critical Security Flaws in Hikvision and Rockwell Products
Next Post: Phishing Emails Target iOS Users with Fake AI Apps

Related Posts

Hackers Weaponize Trust with AI-Crafted Emails to Deploy ScreenConnect Hackers Weaponize Trust with AI-Crafted Emails to Deploy ScreenConnect Security Week News
HoundBytes Launches Automated Security Analyst HoundBytes Launches Automated Security Analyst Security Week News
Zyxel Resolves Critical Security Flaw in Multiple Devices Zyxel Resolves Critical Security Flaw in Multiple Devices Security Week News
The Cybersecurity Information Sharing Act Faces Expiration The Cybersecurity Information Sharing Act Faces Expiration Security Week News
New ClickFix Malware Variant ‘LightPerlGirl’ Targets Users in Stealthy Hack New ClickFix Malware Variant ‘LightPerlGirl’ Targets Users in Stealthy Hack Security Week News
Zscaler Expands with SquareX Acquisition for Enhanced Browser Security Zscaler Expands with SquareX Acquisition for Enhanced Browser Security Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • OpenAI Unveils Codex Security for Software Vulnerabilities
  • FBI Probes Cyber Incident on Sensitive Surveillance System
  • Advanced Linux Rootkits Exploit eBPF and io_uring
  • AI Model Identifies Significant Firefox Vulnerabilities
  • FBI Probes Breach in Wiretap and Surveillance Systems

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • OpenAI Unveils Codex Security for Software Vulnerabilities
  • FBI Probes Cyber Incident on Sensitive Surveillance System
  • Advanced Linux Rootkits Exploit eBPF and io_uring
  • AI Model Identifies Significant Firefox Vulnerabilities
  • FBI Probes Breach in Wiretap and Surveillance Systems

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News