Microsoft Warns of GigaWiper Backdoor Built to Destroy Windows PCs
ID: af3801ee-6b47-50e5-b75b-7bbce0024a7a
STIX ID: report--af3801ee-6b47-50e5-b75b-7bbce0024a7a
Feed Name: HackRead
Microsoft discovered GigaWiper, a persistent Windows backdoor observed in destructive attacks in October 2025 that combines code from multiple malware families to provide remote access and a suite of irreversible destructive functions (multi-pass disk wiping, partition removal, and ransomware-like file encryption with unrecoverable keys). The implant persists via a scheduled task, uses RabbitMQ/Redis for C2, supports remote-control and system-management commands, and Microsoft provides detections and mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
