Key Group Ransomware Foiled by New Decryptor

  /     /     /  
Publicated : 23/11/2024   Category : security


Key Group Ransomware Foiled by New Decryptor


Researchers crack Key Groups ransomware encryption and release free tool for victim organizations to recover their data.



The most recent Key Group ransomware variant is out of business, thanks to a free tool victims can use to decrypt compromised data.
Researchers at EclecticIQ have the developed the tool and estimate that
Key Group
, a Russian language
ransomware operator
that first appeared on the scene last January, is a low-sophisticated threat group.
Key Group
ransomware
uses CBC-mode Advanced Encryption Standard (AES) to encrypt files and sends personally identifiable information (PII) of victim devices to threat actors, the EclecticIQ team explained in a new report. The ransomware uses the same static AES key and initialization vector (IV) to recursively encrypt victim data and change the name of encrypted files with the keygroup777tg extension.
Thanks to several flaws in the Key Group
ransomware
strains cryptography, the team at EclecticIQ has developed a
free tool
victims can use to recover their data without handing over a dime to Key Group.
The researchers added that security teams can protect against Key Group ransomware cyberattacks by disabling non-essential remote desktop protocols, restricting application execution, and establishing a secure backup strategy.

Last News

▸ Website hacks happened during World Cup final. ◂
Discovered: 23/12/2024
Category: security

▸ Criminal Possession of Government-Grade Stealth Malware ◂
Discovered: 23/12/2024
Category: security

▸ Senate wants changes to cybercrime law. ◂
Discovered: 23/12/2024
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Key Group Ransomware Foiled by New Decryptor