Skip to content

Iran

Gbhackers Mayura Kathir August 26, 2026

Iran-linked threat actor Tortoiseshell is expanding its espionage toolkit with reverse SSH tunneling utilities and a TWOSTROKE-like backdoor designed to give operators covert, durable access to compromised internal networks. The research began with public reporting from Kaspersky on Mirage Kitten’s newer malware ecosystem, which included the NightLedger backdoor and WebSocket tunneling tools ArcBridge and BridgeHead. […]

Extracted Entities

APT Groups (1)

Attack Types (1)

Countries (1)

Malware (1)