STARM · SW-01 · SOFTWARE

Wiper Malware (AcidRain)

Back to the STARM matrix

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Malicious code that deletes the satellite’s OS.

Severity in the dataset10/10

Not the paper’s H/M/L.

Target
Program Logic
Layer in the inventory
OS / Filesystem
Mitigation
Immutable filesystem and signed updates.
How the inventory says to fix it
AI/ML: Behavioral analysis to block mass file-deletion operations. Rule-based: Write-protect core OS partitions.
Quick fix
Factory Reset
ML approaches named
Random Forest, Support Vector Machines (SVM), and Gradient Boosting, Convolutional Neural Networks (CNN), Recurrent Neural Networks (RNN)
Methodology
monitoring for sudden, unauthorized file deletion, recursive overwrite patterns, and attempts to access /dev/mtd* devices, identifying malicious patterns in MIPS ELF executables,
Handler role
System Administrator
Stage
Operation
Standard named
ISO/IEC 27034
Status in the inventory
Status unknown

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Related in the matrix

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Connection recorded in the inventory

Command Hijacking