Cymulate named a Customers' Choice in 2025 Gartner® Peer Insights™
Learn More
New Case Study: Credit Union Boosts Threat Prevention & Detection with Cymulate
Learn More
New Research: Cymulate Research Labs Discovers Token Validation Flaw
Learn More
An Inside Look at the Technology Behind Cymulate
Learn More

Mantis Uses New Tooling In Attacks Against Palestinian Targets

April 10, 2023

The Mantis cyber-espionage group also known as Desert Falcon targeted entities within the Palestinian territories with custom backdoors.
The Micropsia backdoor was used to run secondary payloads including a reverse proxy and a data exfiltration tool.
Arid Gopher was also dropped by Micropsia and included a legitimate 7-Zip executable a tool to set persistence and a copy of the legitimate Shortcut.exe utility.