202304

SimpleHarm: Tracking MuddyWaters infrastructure

https://www.group-ib.com/blog/muddywater-infrastructure/

This report collection about member and attack technology. https://twitter.com/blackorbird

member

Muddywaters: how MuddyWater hackers attacked a Turkish military electronics manufacturer https://habr.com/ru/company/group-ib/blog/452540/

MUDDYWATER CYBER SPY https://0xffff0800.blogspot.com/2019/06/a-muddywater-cyber-spy.html

attack

MuddyWater Resurfaces, Uses Multi-Stage Backdoor POWERSTATS V3 and New Post-Exploitation Tools https://blog.trendmicro.com/trendlabs-security-intelligence/muddywater-resurfaces-uses-multi-stage-backdoor-powerstats-v3-and-new-post-exploitation-tools/

Summary of recent attacks by MuddyWater against Tajikistan, Turkey and other places https://mp.weixin.qq.com/s/a_LB0e4FiLFra54upu7X-Q

Iranian APT group MuddyWater Adds Exploits to Their Arsenal https://www.clearskysec.com/muddywater2/

new operation

https://socradar.io/dark-web-profile-muddywater-apt-group/