Suspected espionage-driven threat actors from Iran have been
observed deploying backdoors like TWOSTROKE and DEEPROOT as part of
continued attacks aimed at aerospace, aviation, and defense
industries in the Middle East. The activity has been attributed by
Google-owned Mandiant to a threat cluster tracked as UNC1549 (aka
Nimbus Manticore or Subtle Snail), which was first documented by
the threat
Read more https://thehackernews.com/2025/11/iranian-hackers-use-deeproot-and.html

