The MuddyWater attacks are primarily against Middle Eastern nations. However, we have also observed attacks against surrounding nations and beyond, in...

Threat Actor Profile

MuddyWater

State-sponsored threat group originating from IR. Suspected sponsor: Iran (Islamic Republic of). Known to target Government. Uses 83 known MITRE ATT&CK techniques.

83 TTPs Mapped 1 Industries Tracked Real-Time Alerts

Actor Overview

Origin Country
IR
Suspected Sponsor
Iran (Islamic Republic of)
Incident Types
Espionage
Known Techniques
83 TTPs

Target Industries

Government

Suspected Victims

Saudi ArabiaGeorgiaTurkeyIraqIsraelIndiaUnited Arab EmiratesPakistanUnited States

MITRE ATT&CK Techniques

T1053T1548T1548.002T1087T1087.002T1583T1583.006T1071T1071.001T1560T1560.001T1547T1547.001T1059T1059.001 +68 more

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on MuddyWater is published.

Actor Details

Primary Name
MuddyWater
Known Aliases
TEMP.Zagros, Static Kitten, Seedworm, MERCURY, COBALT ULSTER, G0069, ATK51, Boggy Serpens, Mango Sandstorm, TA450, Earth Vetala
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →