SECURITY·중요도 8·2026. 07. 28.·The Hacker News

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

── KO ──────────────────

이라크의 해킹 그룹, NightLedger 백도어 공격을 개시.

이라크의 국가 지원 해킹 그룹인 Nimbus Manticore가 중동, 아프리카 및 남아시아의 여러 단체를 겨냥한 새로운 공격을 시작했습니다. 이 공격은 NightLedger라는 이전에 문서화되지 않은 윈도우 백도어와 두 개의 맞춤형 WebSocket 터널을 이용합니다. 이러한 공격은 피해 시스템을 은밀한 중계기로 전환하는 데 사용됩니다.


── EN ──────────────────

Iranian hacking group Nimbus Manticore launches attacks using NightLedger backdoor.

The Iranian state-sponsored hacking group Nimbus Manticore has initiated a new set of attacks targeting entities across the Middle East, Africa, and South Asia. These intrusions involve the use of a previously undocumented Windows backdoor called NightLedger and two custom WebSocket tunnelers. The attacks turn victim systems into covert relays.

원문 보기 →목록으로