malware
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning
High
Summary
Iranian state-sponsored threat actor Nimbus Manticore (UNC1549) has launched a new campaign utilizing the MiniFast backdoor, developed with potential AI assistance, to target organizations in the aviation and software sectors across the U.S., Europe, and the Middle East. The campaign employs phishing, SEO poisoning, and AppDomain hijacking techniques, marking a shift in their tradecraft and demonstrating continued activity despite geopolitical tensions.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
