> MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack
[DATE: 06/05/2026 13:00]
[LANGUAGE: EN]
The Iranian state-sponsored hacking group known as MuddyWater (aka Mango Sandstorm, Seedworm, and Static Kitten) has been attributed to a ransomware attack in what has been described as a "false flag" operation.
The attack, observed by Rapid7 in early 2026, has been found to leverage social engineering techniques via Microsoft Teams to initiate the infection sequence. Although the incident