POWERSTAR
Description
(Volexity) Volexity found the latest POWERSTAR variant to be more complex and assesses that it is likely supported by a custom server-side component, which automates simple actions for the malware operator. It is also notable that this latest version of the malware has a variety of interesting features, including the use of the InterPlanetary File System (IPFS), as well as remotely hosting its decryption function and configuration details on publicly accessible cloud hosting.
Names
| Name |
|---|
| POWERSTAR |
| CharmPower |
| GorjolEcho |
Category
Malware
Type
- Backdoor
Information
- https://www.volexity.com/blog/2023/06/28/charming-kitten-updates-powerstar-with-an-interplanetary-twist/
- https://www.volexity.com/blog/2024/02/13/charmingcypress-innovating-persistence/
Malpedia
Other Information
Uuid
34ed82b9-8973-4d20-81a9-5f116c1e21a4
Last Card Change
2024-12-27