GeneralIran-Linked Hackers Target Middle East Targets

Iran-Linked Hackers Target Middle East Targets

-

A hacker group linked to the Iranian regime has targeted organizations active in various Middle Eastern countries, including Israel, in a new cyber campaign.

According to research by the cybersecurity company Check Point, the hacker group known as MuddyWater has attacked Azerbaijan, Portugal, Turkey, Saudi Arabia, and India, in addition to Israel, using a new proprietary malware.

This malware allows hackers to remotely execute commands on systems and transfer files between infected devices and servers.

According to cybersecurity researchers, despite its low technical quality, the MuddyWater malware is continually being developed and improved by hackers.

Hackers have sent this malware to their victims through phishing emails.

Check Point experts have identified government organizations, municipalities, media outlets, and travel agencies as the targets of these attacks.

Since the recent campaign was identified in February 2024, more than 50 phishing emails have been sent to hundreds of recipients.

Simultaneously, the cybersecurity company Sequoia reported a similar increase in attacks by the MuddyWater group on various institutions.

Their investigations show that Iranian regime hackers have targeted Azerbaijan, Israel, Jordan, Turkey, and Saudi Arabia with cyberattacks in recent months.

Another finding of this investigation is a change in the method of sending malicious links to attack victims.

In their recent campaign, hackers placed the malicious links in PDF files attached to the emails instead of directly in the body of the phishing emails.

International organizations, including the United States Cybersecurity and Infrastructure Security Agency, have attributed the MuddyWater group to the Iranian Ministry of Intelligence.

This group is also known by other names, including APT34 and OilRig.

In recent years, MuddyWater has focused on cyber espionage against private and government institutions in the Middle East and Western countries.

In November 2023, just a few weeks after the start of the Hamas-Israel war, two Israeli entities were targeted by this group.

In that attack, Iranian government hackers also used phishing emails and social engineering techniques to deceive their victims.

Latest news

Iran: How Pahlavi’s Name Stole the January 2026 Uprising

In the biting cold of mid-January 2026, the air in Tehran’s Vali-e-Asr Square was thick with the scent of...

Escalating Executions in Iran Put EU Policy Under Scrutiny

A conference held at the European Parliament in Brussels on April 22, 2026, brought renewed attention to the escalating...

U.S. Sanctions Tehran’s Drone and Missile Networks

As part of its ongoing maximum pressure policy, the United States imposed new sanctions targeting supply networks linked to...

How Do the Children of Iranian Regime Officials Manage Smuggled Wealth?

Sky News published a report on April 19 about the children of Iran's ruling elites, who are known as...

The Collapse of Livelihoods in Tehran; Housing Rent Has ‌Become a Nightmare

An examination of rental listings in Tehran’s Districts 4 and 5 shows that the average asking rates in April...

Iran’s ‘No To Executions Tuesdays’ Campaign Marks 117th Week

On Tuesday, April 21, the "No to Executions Tuesdays" campaign entered its 117th week. On this occasion, prisoners participating...

Must read

Complaint Filed Against Raisi Ahead of his Trip to Switzerland

A legal complaint was filed on Monday, December 11,...

US Concerned Over Iran’s Increased Uranium Enrichment Activities

Adrienne Watson, the spokesperson for the White House National...

You might also likeRELATED
Recommended to you