#PowerBrace

Malware/Tool

2019-04-10 • OSINT Reporting Regarding DPRK and TA505 Overlap

PowerBrace is a PowerShell backdoor attributed to DPRK activity. Its configuration contains command-and-control servers and Base64-encoded commands, while observed samples obfuscate many function names as MD5 hashes.

Tagged Reports

« Back