PowerExchange — Malware Profile

PowerExchange is a PowerShell backdoor that has been used by OilRig since at least 2023 including against government targets in the Middle East.

MITRE ATT&CK techniques (5)

Attributed threat actors

Read the full analysis on IntelFusions