STARM · SW-01 · SOFTWARE
Wiper Malware (AcidRain)
STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.
Malicious code that deletes the satellite’s OS.
Severity in the dataset10/10
Not the paper’s H/M/L.
- Target
- Program Logic
- Layer in the inventory
- OS / Filesystem
- Mitigation
- Immutable filesystem and signed updates.
- How the inventory says to fix it
- AI/ML: Behavioral analysis to block mass file-deletion operations. Rule-based: Write-protect core OS partitions.
- Quick fix
- Factory Reset
- ML approaches named
- Random Forest, Support Vector Machines (SVM), and Gradient Boosting, Convolutional Neural Networks (CNN), Recurrent Neural Networks (RNN)
- Methodology
- monitoring for sudden, unauthorized file deletion, recursive overwrite patterns, and attempts to access /dev/mtd* devices, identifying malicious patterns in MIPS ELF executables,
- Handler role
- System Administrator
- Stage
- Operation
- Standard named
- ISO/IEC 27034
- Status in the inventory
- Status unknown
STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.
Related in the matrix
STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.
Connection recorded in the inventory
Command Hijacking