1
Groups Using This
1
Platforms
568
Prevalence Rank
0
Known Aliases
Description

POWERTON is a custom PowerShell backdoor first observed in 2018. It has typically been deployed as a late-stage backdoor by APT33. At least two variants of the backdoor have been identified, with the later version containing improved functionality.

View MITRE record ↗

Platforms
Windows
Groups Deploying POWERTON (1)
↑