POWERSTAR
Description
(Volexity) Volexity found the latest POWERSTAR variant to be more complex and assesses that it is likely supported by a custom server-side component, which automates simple actions for the malware operator. It is also notable that this latest version of the malware has a variety of interesting features, including the use of the InterPlanetary File System (IPFS), as well as remotely hosting its decryption function and configuration details on publicly accessible cloud hosting.
Names
Name |
---|
POWERSTAR |
CharmPower |
GorjolEcho |
Category
Malware
Type
- Backdoor
Information
- https://www.volexity.com/blog/2023/06/28/charming-kitten-updates-powerstar-with-an-interplanetary-twist/
- https://www.volexity.com/blog/2024/02/13/charmingcypress-innovating-persistence/
Malpedia
Other Information
Uuid
34ed82b9-8973-4d20-81a9-5f116c1e21a4
Last Card Change
2024-12-27