New MuddyWater Activities Uncovered:
ID: d639c230-4ed4-44fc-8c00-30de322c6a10
STIX ID: report--d639c230-4ed4-44fc-8c00-30de322c6a10
Threat Score
78/100
Uploaded: 2026-08-14
Published Date: 2019-06-10
Last Modified Date: 2019-06-10
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Trend Micro Research details new and historical MuddyWater activity: spear-phishing and template-injection campaigns delivering multi-stage PowerShell backdoors (notably POWERSTATS v3) and other custom implants (CLOUDSTATS, SHARPSTATS, DELPHSTATS), reuse of public post-exploitation tools, links to multiple Android malware families, use of false flags, compromised WordPress proxies and ephemeral C2 infrastructure, leaked backend code and victim lists, and a large set of IoCs affecting government, telecoms and other sectors across the Middle East, Asia, Europe and the US.
