Related Threat Clusters
-
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
16 articles · Updated July 22, 2026 -
Microsoft Word Vulnerability CVE-2026-21514 Exposes Millions to Malware Attacks
CVE-2026-21514 is a security feature bypass vulnerability in Microsoft Word, disclosed on February 10, 2026. This flaw allows attackers to exploit nearly 14 million assets across seven Tier 1 countries, primarily in the…
5 articles · Updated March 18, 2026 -
China-Linked Hackers Deploy PlugX Malware in Qatar via Fake War News
China-linked hackers targeted Qatar by using fake war news to distribute PlugX backdoor malware. This attack aims to infiltrate and spy on critical sectors, including military and energy. The operation highlights the…
4 articles · Updated March 10, 2026 -
DinDoor Backdoor Uses Deno Runtime and MSI Installers to Evade Detection
A newly identified backdoor, DinDoor, exploits the Deno JavaScript runtime and MSI installer files to execute malicious code while avoiding detection. This malware is associated with the Tsundere Botnet and leverages…
2 articles · Updated April 22, 2026 -
Iran's Cyber Response to U.S. Military Strikes Expected Amid Rising Tensions
Following U.S. military strikes on Iran, there is an anticipated increase in cyber warfare activities targeting U.S. operational technology and critical infrastructure. Iran is expected to retaliate with cyber attacks…
761 articles · Updated February 28, 2026
Recent Intelligence Reports
- Iran's APTs and the US Enterprise in 2026 — Kelacyber · July 22, 2026
- MuddyWater in 2026: Iran's APT Hits U.S. Targets — Kelacyber · July 22, 2026
- New DinDoor Backdoor Abuses Deno Runtime and MSI Installers to Evade Detection — Cybersecuritynews · April 22, 2026
- DinDoor Backdoor Exploits Deno and MSI Installers to Slip Past Detection — Gbhackers · April 22, 2026
- FAQ on CVE-2026-21514: OLE bypass N — Tenable · March 17, 2026
- Qatar targeted by Chinese hackers amid Middle East conflict | brief — Scworld · March 11, 2026
- Iranian MOIS Actors & the Cyber Crime Connection — Research.Checkpoint · March 10, 2026