PowHeartBeat — Malware Profile
PowerShell backdoor used for command execution and file exfiltration.
Attributed threat actors
- Crimson Palace machine-inferred link
- Worok machine-inferred link
PowerShell backdoor used for command execution and file exfiltration.