logo

Broken by Design: How VECT 2.0 Ransomware Becomes a Permanent Data Wiper

ID: 8241cd0b-adcc-596a-bd0b-71b6199b6b66

STIX ID: report--8241cd0b-adcc-596a-bd0b-71b6199b6b66

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: Ddos

...
...

Check Point Research found that VECT 2.0—advertised as cross-platform ransomware for Windows, Linux, and ESXi—is fundamentally flawed: a critical encryption implementation bug discards decryption nonces for files over ~128 KB, turning the malware into a destructive wiper that irrecoverably destroys large enterprise assets (VM disks, databases, backups); despite being broken today, the malware's aggressive distribution infrastructure (including TeamPCP) means a corrected, functional variant could pose a widespread high-impact threat in the future.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.