Feb. 7, 2023, 11:01 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Executive Summary



  • SentinelLabs has observed the first Linux variant of Cl0p ransomware.

  • The ELF executable contains a flawed encryption algorithm making it possible to decrypt locked files without paying the ransom.

  • SentinelLabs has published a free decryptor for this variant here.


Background


SentinelLabs observed the first ELF variant of Cl0p (also known as Clop) ransomware variant targeting Linux systems on the 26th of December 2022. The new variant is similar to the Windows variant, using the same encryption method …

algorithm cl0p cl0p ransomware clop december decrypt decryptor elf encryption executive files free linux locked locked files making malware analysis ransom ransomware sentinellabs systems targeting

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Consultant

@ Auckland Council | Central Auckland, NZ, 1010

Security Engineer, Threat Detection

@ Stripe | Remote, US

DevSecOps Engineer (Remote in Europe)

@ CloudTalk | Prague, Prague, Czechia - Remote

Security Architect

@ Valeo Foods | Dublin, Ireland

Security Specialist - IoT & OT

@ Wallbox | Barcelona, Catalonia, Spain