FlowerPower
Aliases: BoBoStealer
- First seen
- 2022-05-15 00:00:00
- Malware type
- credential-stealer, trojan
- Family
- Malware family
- Profile updated
- 2026-07-07 12:37:44
Targeted industries: financial-services government-and-public-sector technology-and-telecommunications
Targeted regions: country_code:us country_code:gb
Context
FlowerPower, also known as BoBoStealer, is a credential-stealing malware primarily targeting financial institutions and government entities. It is designed to exfiltrate sensitive information and has been observed in campaigns against targets in the US and UK.
Reports & references
- pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
- malpedia.caad.fkie.fraunhofer.de — Ps1.Flowerpower (report)
- youtube.com — Watch (report)
- genians.co.kr — Triple Combo (report)
- i.blackhat.com — As 21 Kuo We Are About To Land How Clouddragon Turns A Nightmare Into Reality (report)
- vblocalhost.com — Vb2020 46 (report)
- vb2020.vblocalhost.com — Vb2020 46 (report)