Threat Actor
Seedworm
- First Reported
- Apr 21, 2026
- Latest Reported
- Jul 21, 2026
Reported Context (2)
- Identified in the article as a label for the MuddyWater cluster; activity attributed to the cluster included backdoors and an attempted data transfer to commercial cloud storage. Midyear Assessment Finds Iran-Linked Cyber Risk Centered on Persistent Access and Trusted Pathways
- Broadcom reportedly linked DinDoor activity targeting U.S. organizations to this Iranian APT group, also tracked as MuddyWater. DinDoor Backdoor Abuses Deno Runtime; Researchers Identify 20 Active C2 Servers
Malware (6)
People (2)
Threat Actors (32)
MITRE ATT&CK (17)
Vendors (20)
Products (10)
Tools (4)
Industries (8)
Countries (9)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.