Mirage Kitten APT Group Unveils New Malware Tools for Cyber-Espionage
Mirage Kitten, an advanced persistent threat (APT) group also known as UNC1549, has developed a new set of malware tools aimed at cyber-espionage operations targeting sectors such as aerospace, aviation, defense, and telecommunications in the Middle East and Africa. The newly identified malware set includes the NightLedger backdoor and two WebSocket-based tunneling tools, ArcBridge and BridgeHead. These tools are designed for covert network access and data exfiltration. The NightLedger backdoor is capable of reconnaissance, command execution, and file operations, while the tunneling tools facilitate covert communication and data transfer.