[ORGANIZATION]
Mirage Kitten
Featured in 2 tracked stories · first seen
Situations
Iran-linked cyberattacks targeting software developers
2 clusters · 4 sources · last updated
Latest: Mirage Kitten targets developers via LinkedIn fake job offers
Cybersecurity researchers have identified a sophisticated cyberattack campaign conducted by Iran-linked threat actors, specifically groups identified as Mirage Kitten (also known as UNC1549, Smoke Sandstorm, or Nimbus Ma
Mirage Kitten cyber-espionage campaign
2 clusters · 2 sources · last updated
Latest: Cybersecurity researchers report new malware campaigns targeting US, Israel, and Cambodia
In April 2026, the Mirage Kitten advanced-persistent threat group began a campaign using a previously undocumented malware suite. This toolkit includes the NightLedger Windows backdoor and two covert tunneling utilities,