Key Group Ransomware Foiled by New Decryptor

  /     /     /  
Publicated : 23/11/2024   Category : security


Key Group Ransomware Foiled by New Decryptor


Researchers crack Key Groups ransomware encryption and release free tool for victim organizations to recover their data.



The most recent Key Group ransomware variant is out of business, thanks to a free tool victims can use to decrypt compromised data.
Researchers at EclecticIQ have the developed the tool and estimate that
Key Group
, a Russian language
ransomware operator
that first appeared on the scene last January, is a low-sophisticated threat group.
Key Group
ransomware
uses CBC-mode Advanced Encryption Standard (AES) to encrypt files and sends personally identifiable information (PII) of victim devices to threat actors, the EclecticIQ team explained in a new report. The ransomware uses the same static AES key and initialization vector (IV) to recursively encrypt victim data and change the name of encrypted files with the keygroup777tg extension.
Thanks to several flaws in the Key Group
ransomware
strains cryptography, the team at EclecticIQ has developed a
free tool
victims can use to recover their data without handing over a dime to Key Group.
The researchers added that security teams can protect against Key Group ransomware cyberattacks by disabling non-essential remote desktop protocols, restricting application execution, and establishing a secure backup strategy.

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Key Group Ransomware Foiled by New Decryptor