APT group exploited Output Messenger Zero-Day to target Kurdish military operating in Iraq
Security Affairs
MAY 13, 2025
Between 2017 and 2019, the APT group mainly used DNS hijacking in its campaigns. Marbled Dust exploited CVE-2025-27920 after likely stealing credentials via DNS hijacking or typo-squatting. Microsoft researchers believe the group selects this method based on reconnaissance, confirming the use of the app.
Let's personalize your content