Targeted Attack on Government Entities in the Middle East | Part 2

Reported 03 Aug 2026 by otx · Severity: medium

A sophisticated multi-stage campaign targets government entities in the Middle East, deploying BINDCLOAK, a previously undocumented 64-bit modular Windows backdoor written in C++. BINDCLOAK is decrypted and reflectively loaded by MIXEDKEY loader as part of a complex attack chain.