Destructive Windows backdoor stuffs multiple wipers and ransomware code into a single package
ID: 0f15d24e-2ae0-5b69-b7ae-11bc3dcb4da1
STIX ID: report--0f15d24e-2ae0-5b69-b7ae-11bc3dcb4da1
Feed Name: The Register (Security)
Threat Score
Microsoft researchers identified GigaWiper, a Golang-based modular Windows backdoor that consolidates components from at least three malware families — including a disk wiper, a reimplementation of FlockWiper, and Crucio-like ransomware — into a single tool providing raw-disk wiping, unrecoverable file encryption, RabbitMQ/Redis C2 communications, system persistence, credential/asset exfiltration, screen recording, remote control, and other destructive management commands.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
