Nightdoor

MITRE
Malware Type:
Other
First seen:
Unknown
Last seen:
Unknown
Details:

[Nightdoor](https://attack.mitre.org/software/S1147) is a backdoor exclusively associated with [Daggerfly](https://attack.mitre.org/groups/G1034) operations. [Nightdoor](https://attack.mitre.org/software/S1147) uses common libraries with [MgBot](https://attack.mitre.org/software/S1146) and [MacMa](https://attack.mitre.org/software/S1016), linking these malware families together.(Citation: ESET EvasivePanda 2024)(Citation: Symantec Daggerfly 2024)

Associated Techniques (14)
ID ATT&CK Tactics
T1016 System Network Configuration Discovery -
T1033 System Owner/User Discovery -
T1053.005 Scheduled Task -
T1057 Process Discovery -
T1059.003 Windows Command Shell -
T1070.004 File Deletion -
T1071 Application Layer Protocol -
T1082 System Information Discovery -
T1102 Web Service -
T1124 System Time Discovery -
T1140 Deobfuscate/Decode Files or Information -
T1497.001 System Checks -
T1574 Hijack Execution Flow -
T1680 Local Storage Discovery -
Used by Actors (1)
Metadata
ID: 225
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00