Iranian Hackers Breach US Airport, Bank, and Defense Contractor Networks
Want more insights like this?
The Iranian hacking group MuddyWater has infiltrated multiple US organizations, including an airport, bank, aerospace defense contractor, and software company with Israeli operations, according to Broadcom's Symantec team. The attacks continued even after recent US and Israeli military strikes on Iran, suggesting ongoing cyber warfare amid regional tensions.
The hackers deployed new backdoors called Dindoor and Fakeset across victim networks, using fake certificates under names like "Amy Cherne" and "Donald Gay." They attempted to steal data from the software company's Israeli branch, highlighting their focus on Israeli-connected targets.
Linked to Iran's Ministry of Intelligence since 2017, MuddyWater has previously supported kinetic attacks by hacking Jerusalem CCTV cameras during missile strikes. While this specific campaign was disrupted, security experts warn other organizations remain vulnerable.
Source: Security Week