MuddyWater Targets 100+ Gov Entites in MEA with Phoenix Backdoor
The Iranian threat group is using a compromised mailbox accessed through NordVPN to send phishing emails that prompt recipients to enable macros.
Elizabeth Montalbano, Contributing Writer
Go to gbhackers.com