FlowerPower

Aliases: BoBoStealer

First seen
2022-05-15 00:00:00
Malware type
credential-stealer, trojan
Family
Malware family
Profile updated
2026-07-07 12:37:44

Targeted industries: financial-services government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:us country_code:gb

Context

FlowerPower, also known as BoBoStealer, is a credential-stealing malware primarily targeting financial institutions and government entities. It is designed to exfiltrate sensitive information and has been observed in campaigns against targets in the US and UK.

Reports & references

  • pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
  • malpedia.caad.fkie.fraunhofer.de — Ps1.Flowerpower (report)
  • youtube.com — Watch (report)
  • genians.co.kr — Triple Combo (report)
  • i.blackhat.com — As 21 Kuo We Are About To Land How Clouddragon Turns A Nightmare Into Reality (report)
  • vblocalhost.com — Vb2020 46 (report)
  • vb2020.vblocalhost.com — Vb2020 46 (report)

External references