New PowerExchange Backdoor Used in Iranian Cyber Attack on UAE Government
New PowerExchange Backdoor Used in Iranian Cyber Attack on UAE Government
25 May 2023
An unnamed government entity associated with the United Arab Emirates (U.A.E.) was targeted by a likely Iranian threat actor to breach the victim's Microsoft Exchange Server with a "simple yet effective" backdoor dubbed PowerExchange.
According to a new report from Fortinet FortiGuard Labs, the intrusion relied on email phishing as an initial access pathway, leading to the execution of a .NET