S0674Windows

S0674CharmPower

Platforms
1
ATT&CK
14.1
References
2

Description

[CharmPower](https://attack.mitre.org/software/S0674) is a PowerShell-based, modular backdoor that has been used by [Magic Hound](https://attack.mitre.org/groups/G0059) since at least 2022.(Citation: Check Point APT35 CharmPower January 2022) Documented platforms: Windows. Attributed to ATT&CK group: Magic Hound. Catalogued in ATT&CK 14.1. 2 references curated.

Platforms· 1

Windows

References

  1. https://attack.mitre.org/software/S0674
  2. https://research.checkpoint.com/2022/apt35-exploits-log4j-vulnerability-to-distribute-new-modular-powershell-toolkit/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
PowerLess
Software
POWERTON
Software
POWERSTATS
Software
TEXTMATE
Software
SMOKEDHAM
Software
PowerStallion
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.