GeneralIran-Linked Hackers Target Middle East Targets

Iran-Linked Hackers Target Middle East Targets

-

A hacker group linked to the Iranian regime has targeted organizations active in various Middle Eastern countries, including Israel, in a new cyber campaign.

According to research by the cybersecurity company Check Point, the hacker group known as MuddyWater has attacked Azerbaijan, Portugal, Turkey, Saudi Arabia, and India, in addition to Israel, using a new proprietary malware.

This malware allows hackers to remotely execute commands on systems and transfer files between infected devices and servers.

According to cybersecurity researchers, despite its low technical quality, the MuddyWater malware is continually being developed and improved by hackers.

Hackers have sent this malware to their victims through phishing emails.

Check Point experts have identified government organizations, municipalities, media outlets, and travel agencies as the targets of these attacks.

Since the recent campaign was identified in February 2024, more than 50 phishing emails have been sent to hundreds of recipients.

Simultaneously, the cybersecurity company Sequoia reported a similar increase in attacks by the MuddyWater group on various institutions.

Their investigations show that Iranian regime hackers have targeted Azerbaijan, Israel, Jordan, Turkey, and Saudi Arabia with cyberattacks in recent months.

Another finding of this investigation is a change in the method of sending malicious links to attack victims.

In their recent campaign, hackers placed the malicious links in PDF files attached to the emails instead of directly in the body of the phishing emails.

International organizations, including the United States Cybersecurity and Infrastructure Security Agency, have attributed the MuddyWater group to the Iranian Ministry of Intelligence.

This group is also known by other names, including APT34 and OilRig.

In recent years, MuddyWater has focused on cyber espionage against private and government institutions in the Middle East and Western countries.

In November 2023, just a few weeks after the start of the Hamas-Israel war, two Israeli entities were targeted by this group.

In that attack, Iranian government hackers also used phishing emails and social engineering techniques to deceive their victims.

Latest news

Inflation in Iran and the Limits of What an Agreement with the United States Can Achieve

A sick political system inevitably produces a sick economy. In an absolute dictatorship where political and social freedoms are...

Day 2 of Free Iran 2026: International Figures Rally Behind NCRI Alternative

PARIS — The second day of the Free Iran 2026 World Summit brought together a broad range of former...

Free Iran 2026 Summit in Paris Draws International Support for Democratic Change in Iran

PARIS, June 20, 2026 — Political leaders, former government officials, parliamentarians, and human rights advocates from Europe and North...

Iran’s Water Crisis: Women on the Front Lines of a Silent Disaster

Iran’s water crisis is no longer merely an environmental or economic challenge; it has become one of the country’s...

Child Laborers: The Silent Victims of Poverty and Inflation in Iran

On June 15, the state-run Shargh newspaper published a report on child labor titled "Childhood on a Work Shift,"...

Iran’s Regime Executes Political Prisoners Javad Zamani and Abolfazl Saedi

Iran's regime hanged two young men, Javad Zamani and Abolfazl Saedi, in the early hours of Tuesday, June 16,...

Must read

Iranian Academics Demand Answers in Alleged Suicide of Environmentalist

Iran Focus London, 12 Feb - In an open...

Iran oil chief: sanctions to hit EU buyback firms

Reuters: European oil companies that are owed oil by...

You might also likeRELATED
Recommended to you