MuddyWater Deploys UDPGangster Backdoor in Targeted Turkey-Israel-Azerbaijan Campaign

The Iranian hacking group MuddyWater has deployed a new backdoor called UDPGangster, utilizing UDP for command-and-control in targeted campaigns against Turkey, Israel, and Azerbaijan. The malware employs spear-phishing with malicious Microsoft Word documents to gain initial access, executing a payload that evades detection through extensive anti-analysis routines before exfiltrating data and executing commands.

Edward Kiledjian @ekiledjian