Tech News
← Home  ·  All topics

Needymantis

1 GoKawiil brief on this topic

Microsoft Details 'NeedyMantis' Malware Used for Post-Compromise Network Access

Microsoft Threat Intelligence disclosed a previously unknown modular backdoor called NeedyMantis, active since at least October 2025, used in targeted intrusions against telecoms, universities, medical nonprofits, intergovernmental bodies and government contractors. The malware was found while investigating the DAEMON Tools supply chain compromise reported by Kaspersky in May, and Microsoft has linked some activity to a China-based actor it tracks as Storm-3069, though not all deployments are attributed to that group.