logo

Don't pay Vect a ransom - your data's likely already wiped out

ID: cb886a1a-2e7b-56c8-b3d4-56d1c55bf277

STIX ID: report--cb886a1a-2e7b-56c8-b3d4-56d1c55bf277

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2026-04-28

Date Updated: 2026-05-06

...
...

Check Point Research analyzed Vect—an extortion group's ransomware-as-a-service used alongside TeamPCP—and found a critical implementation flaw that causes any file larger than 128 KB to be irreversibly destroyed, effectively making Vect a wiper. The group has Windows, Linux, and ESXi variants, partnered with BreachForums for distribution/negotiation, and is linked to supply-chain compromises affecting tools like Trivy and LiteLLM; the leak site lists dozens of alleged victims and recovery is reported to be impossible for affected large files.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.