SCM feed for Latest
Researchers from JUMPSEC have reported that a misconfigured command-and-control server linked to the MuddyWater group has exposed custom malware tools, including the CastleRAT variant, which are being used against Israeli targets. The operation appears to involve Iranian cyber actors, specifically those associated with TAG-150. The exposed server has revealed crucial details about these cyber tools, indicating that the attackers are actively targeting specific regions and organizations. This incident raises concerns about the security of Israeli entities and highlights the ongoing cyber warfare in the region, emphasizing the need for heightened vigilance against such threats.