MuddyWater Attacks Critical Infrastructure With Custom Malware and Improved Tactics
ID: 43e395d4-e051-541e-abda-e8c359a4d5f3
STIX ID: report--43e395d4-e051-541e-abda-e8c359a4d5f3
Feed Name: cybersecurityNews.com
Threat Score
**MuddyWater conducted a targeted espionage campaign (Sep 2024–Mar 2025) against Israeli and Egyptian critical infrastructure, using spearphishing with trojanized Remote Monitoring and Management installers to deploy a custom Fooder loader and the MuddyViper in-memory backdoor that steals credentials and browser data while employing advanced evasion and persistence techniques.**
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
