logo

New MuddyWater Activities Uncovered:

ID: d639c230-4ed4-44fc-8c00-30de322c6a10

STIX ID: report--d639c230-4ed4-44fc-8c00-30de322c6a10

Threat Score

78/100

Uploaded: 2026-08-14

Published Date: 2019-06-10

Last Modified Date: 2019-06-10

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Trend Micro Research details new and historical MuddyWater activity: spear-phishing and template-injection campaigns delivering multi-stage PowerShell backdoors (notably POWERSTATS v3) and other custom implants (CLOUDSTATS, SHARPSTATS, DELPHSTATS), reuse of public post-exploitation tools, links to multiple Android malware families, use of false flags, compromised WordPress proxies and ephemeral C2 infrastructure, leaked backend code and victim lists, and a large set of IoCs affecting government, telecoms and other sectors across the Middle East, Asia, Europe and the US.