Switch language한국어
Back to the list

New ransomware is so badly coded it destroys your files instead of holding them hostage

TL;DR AI

Key summary

2 min read
  1. Check Point says Vect 2.0 ransomware has a broken encryption routine that often destroys files instead of encrypting them.

  2. Files larger than 128KB are typically overwritten with unusable data because most encryption nonces are discarded.

  3. The flaw affects Windows, Linux, and ESXi systems, putting documents, databases, archives, and VM images at risk.

  4. Because the damage can be permanent, this ransomware can act more like a file wiper than a normal extortion tool.

Read the original