RansomExx Ransomware Goes after Linux, Uses Faulty Encryption

The RansomExx Ransomware, also referred to as the Defray Ransomware has undergone major changes over its 3-year lifespan. One of the latest innovations is the introduction of a Linux-compatible variant, the RansomExx Linux Ransomware. It is able to infiltrates Linux machines, and the nencrypt data on them. However, cybersecurity researchers report that RansomExx Linux Ransomware's attack might be executed poorly. Because of this, the victim's files might end up not just encrypted, but permanently damaged. While this does not happen in all cases, it is entirely possible that the RansomExx Linux Ransomware could cause irreversible damage to the files.

The issue happens because of RansomExx Linux Ransomware's attempts to encrypt files that are already in use. This could sometimes result in parts of the file being encrypted by the malicious process, while other sections remaining unencrypted. Because of this, the decryption tools that the attackers use could fail to work, leaving the victim helpless.

RansomExx Linux Ransomware's Decryptor Might not Work

The RansomExx Linux Ransomware's attack still tries to encrypt a wide range of file formats, and marks their names with the '.ransomexx' suffix. It drops a ransom note asking the victim to purchase a decryption key for cryptocurrency, typically Bitcoin. So far, it would appear that victims who pay do end up receiving a decryptor, but it might not always work as expected. We advise our readers to never consider complying with the demands of ransomware operators. As you can see, it is very easy for them to outright scam you, or provide you with a dysfunctional decryption tool. The RansomExx Linux Ransomware is likely to be delivered to its targets through phishing emails, fake downloads, or other popular malware propagation tricks. The fact that it is now Linux-compatible means that the criminals behind this campaign are looking to expand their operation. Both Windows and Linux users should enhance their system's security by installing reputable antivirus software.

October 1, 2021
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.