← Back to feed
Threat Actors & CampaignsEmerging1 sourceOct 22, 2025 · 07:01via Group-IB

Unmasking MuddyWater’s New Malware Toolkit Driving International Espionage

Brief

Group-IB Threat Intelligence has uncovered a sophisticated phishing campaign, attributed with high confidence to the Advanced Persistent Threat (APT) MuddyWater. The attack used a compromised mailbox to distribute Phoenix backdoor malware to international organizations and across the whole Middle East and North Africa region, targeting more than 100 government entities.

Read more on Group-IB