RansomExx Ransomware Goes after Linux, Uses Faulty Encryption
The RansomExx Ransomware, also referred to as the Defray Ransomware has undergone major changes over its 3-year lifespan. One of the latest innovations is the introduction of a Linux-compatible variant, the RansomExx Linux Ransomware. It is able to infiltrates Linux machines, and the nencrypt data on them. However, cybersecurity researchers report that RansomExx Linux Ransomware's attack might be executed poorly. Because of this, the victim's files might end up not just encrypted, but permanently damaged. While this does not happen in all cases, it is entirely possible that the RansomExx Linux Ransomware could cause irreversible damage to the files.
The issue happens because of RansomExx Linux Ransomware's attempts to encrypt files that are already in use. This could sometimes result in parts of the file being encrypted by the malicious process, while other sections remaining unencrypted. Because of this, the decryption tools that the attackers use could fail to work, leaving the victim helpless.
RansomExx Linux Ransomware's Decryptor Might not Work
The RansomExx Linux Ransomware's attack still tries to encrypt a wide range of file formats, and marks their names with the '.ransomexx' suffix. It drops a ransom note asking the victim to purchase a decryption key for cryptocurrency, typically Bitcoin. So far, it would appear that victims who pay do end up receiving a decryptor, but it might not always work as expected. We advise our readers to never consider complying with the demands of ransomware operators. As you can see, it is very easy for them to outright scam you, or provide you with a dysfunctional decryption tool. The RansomExx Linux Ransomware is likely to be delivered to its targets through phishing emails, fake downloads, or other popular malware propagation tricks. The fact that it is now Linux-compatible means that the criminals behind this campaign are looking to expand their operation. Both Windows and Linux users should enhance their system's security by installing reputable antivirus software.