Iran cyberespionage group taps SimpleHelp for persistence on victim devices
Group-IB researchers have also identified a previously unknown command and control infrastructure and a PowerShell script that APT group MuddyWater is using for its cyberespionage and IP theft attacks.