Home TechnologyIran's MuddyWater Hackers Hit US Firms with New 'D...
Technology⭐ Featured

Iran's MuddyWater Hackers Hit US Firms with New 'Dindoor' Backdoor

A bank, an airport, a non-profit and the Israeli branch of a US software company were among the targets of this new MuddyWater campaign

6 April 2026 at 02:56 pm
1 views
Iran's MuddyWater Hackers Hit US Firms with New 'Dindoor' Backdoor

Iran's MuddyWater Hackers Hit US Firms with New 'Dindoor' Backdoor

In a recent escalation of cyber threats, Iran-linked hackers associated with the MuddyWater group have targeted several US-affiliated organizations with a new backdoor attack known as "Dindoor." The campaign, which has affected a bank, an airport, a non-profit organization, and the Israeli branch of a US software company, highlights the evolving tactics of state-sponsored cybercriminals.

The MuddyWater group, known for its sophisticated attacks on energy, financial, and transportation sectors, has been active since at least 2014. Previously linked to Iran's Revolutionary Guard Corps (IRGC), the group has been implicated in several high-profile incidents, including the Stuxnet attack that disrupted Iran's nuclear program. The new "Dindoor" backdoor, which exploits vulnerabilities in Windows systems, allows attackers to gain unauthorized access to networks and steal sensitive data.

The bank, one of the primary targets, has not disclosed the extent of the breach, but it is believed that the hackers were able to access internal systems and potentially compromise customer information. The airport, which has not released details about the incident, is expected to have faced disruptions in operations, as the attackers likely targeted critical infrastructure. The non-profit organization, which focuses on humanitarian efforts, may have suffered data leaks or financial fraud, though no official statements have been made.

The Israeli branch of the US software company, which remains anonymous, is reportedly investigating the extent of the breach. The company's Israeli operations are crucial for its global clientele, and the attack could have far-reaching implications for its reputation and business continuity.

Experts have noted that the Dindoor backdoor is a refined version of previous MuddyWater attacks, indicating a continued focus on advancing their capabilities. The group's choice to target US-affiliated entities in Israel suggests a broader strategy to disrupt US interests and allies. The Israeli branch of the software company, in particular, may have been selected to send a message about the group's reach and capabilities.

The US government has not yet issued an official statement on the incident, but cybersecurity experts have warned that such attacks are likely to increase in frequency and sophistication. The MuddyWater group's use of zero-day exploits and advanced persistent threats (APTs) underscores the need for robust cybersecurity measures and international cooperation to counter state-sponsored cyber threats.

In response to the Dindoor attack, organizations across the US and Israel are likely to bolster their cybersecurity defenses. This includes implementing multi-factor authentication, regular software updates, and conducting thorough vulnerability assessments. Collaboration between private entities and governments is essential to mitigate the risks posed by state-sponsored hackers.

The MuddyWater group's latest campaign serves as a stark reminder of the growing threat landscape in the digital age. As cyber warfare becomes more prevalent, the ability to detect and respond to such attacks swiftly is critical for national security and economic stability. The US and its allies must remain vigilant and invest in advanced cybersecurity infrastructure to protect against these evolving threats.

In conclusion, the Dindoor backdoor attack by Iran's MuddyWater group on US-affiliated organizations underscores the need for enhanced cybersecurity measures and international cooperation. The targets, including a bank, an airport, a non-profit, and a US software company's Israeli branch, highlight the diverse sectors vulnerable to state-sponsored cyber threats. As the MuddyWater group continues to refine its tactics, the global community must prioritize cybersecurity to safeguard critical infrastructure and sensitive data.

📰 Related News
Ekaya Banaras Founder Palak Shah’s ₹40 Lakh Billboard Mistake Became a Masterclass in Startup Marketing
Ekaya Banaras Founder Palak Shah’s ₹40 Lakh Billboard Mistake Became a Masterclass in Startup Marketing
Ekaya Banaras founder Palak Shah recently opened up about one of the most expensive mistakes she made while building her luxury textile brand. During the early years of the company, Shah rented a premium billboard near Delhi’s DLF Emporio to increase brand visibility. However, after forgetting to cancel the campaign, the hoarding reportedly continued running for months — resulting in losses of nearly ₹40 lakh. The incident has now become a viral example of how small operational oversights can turn into costly business lessons for startups and entrepreneurs.
28 May
Betting On AI: Jensen Huang And NVIDIA’s Rise To The Top
Betting On AI: Jensen Huang And NVIDIA’s Rise To The Top
Before AI was inevitable, it was a gamble—and Jensen Huang went all in.
14 Apr
Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1 bring confidential computing to bare metal and AI workloads
Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1 bring confidential computing to bare metal and AI workloads
Red Hat is excited to announce the release of Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1, marking a major leap forward in our confidential computing journey. These releases graduate confidential containers on bare metal from …
14 Apr
Large AI firms hoovering maximum funding, not enough for smaller startups: Y Combinator’s Ankit Gupta
Large AI firms hoovering maximum funding, not enough for smaller startups: Y Combinator’s Ankit Gupta
YC Startup School: India’s talent pool across colleges and universities are key for building next-gen startups, which is what YC is looking to tap into. It wants to target entrepreneurs building for global markets, focussed on fintech, consumer, B2B, and ecom…
14 Apr
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
TSMC-RESULTS/ (PREVIEW, PIX):PREVIEW-TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
14 Apr
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
Any profit result ‌above T$505.7 billion would mark the company's highest-ever quarterly net income ​and its ninth consecutive quarter of profit growth
14 Apr
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
On Thursday, ​TSMC is expected to report a net profit of $17.1 billion for the quarter, according to an LSEG SmartEstimate compiled from 19 analysts. The war in the Middle East threatens to disrupt the supply of production materials for semiconductors such as…
14 Apr
If we can’t kick the habit, how do we manage AI’s energy needs?
If we can’t kick the habit, how do we manage AI’s energy needs?
One can only hope that OpenAI’s Sam Altman was joking when he sought to justify the immense energy consumption of artificial intelligence
14 Apr
What caused Nvidia Blackwell GPU prices to spike? #tech
What caused Nvidia Blackwell GPU prices to spike? #tech
Blackwell GPU hourly “rent” surges on agentic AI demand A compute pricing index tracking hourly costs for Nvidia Blackwell GPUs shows a sharp climb: hourly rental hit $4.08 , up 48% from $2.75 just two months earlier. The reported driver is rising demand tied…
14 Apr
Anthropic Releases Claude Mythos Preview with Cybersecurity Capabilities but Withholds Public Access
Anthropic Releases Claude Mythos Preview with Cybersecurity Capabilities but Withholds Public Access
Anthropic has introduced Claude Mythos Preview, its most advanced AI model, improving significantly in reasoning, coding, and cybersecurity. Unlike previous releases, it will not be publicly available. Access is limited to a consortium of tech companies throu…
14 Apr