Login
← All news

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

The Hacker News Security

The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia. The intrusions involve the use of a previously undocumented Windows backdoor called NightLedger and two custom WebSocket…

Read the full story on The Hacker News https://thehackernews.com/2026/07/nimbus-manticore-deploys-nightledger.html
Attacks like this land on ordinary sites far more often than on chosen targets. If you would rather your site never became the story, CrockyHost hosting ships with daily backups, automatic updates and a firewall we manage.