logo

HybridPetya: The Petya/NotPetya copycat comes with a twist

ID: de658221-f224-594e-9e56-b8c1a0340206

STIX ID: report--de658221-f224-594e-9e56-b8c1a0340206

Feed Name: WeLiveSecurity (ESET Research)

Threat Score
60/100

Date Published: 2025-09-16

Date Updated: 2026-05-01

...
...

ESET researchers revealed HybridPetya, a Petya/NotPetya-like ransomware that additionally weaponizes CVE‑2024‑7344 to bypass UEFI Secure Boot on outdated systems, making it at least the fourth known real or proof-of-concept bootkit with UEFI Secure Boot bypass functionality; ESET notes the strain is not currently observed spreading in the wild and provides further analysis via a blogpost and video.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.