Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Delve whistleblower strikes again, with alleged receipts about ‘fake compliance’

    March 31, 2026

    Popular AI gateway startup LiteLLM ditches controversial startup Delve

    March 30, 2026

    What we’re looking for in Startup Battlefield 2026 and how to put your best application forward

    March 30, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Delve whistleblower strikes again, with alleged receipts about ‘fake compliance’
    • Popular AI gateway startup LiteLLM ditches controversial startup Delve
    • What we’re looking for in Startup Battlefield 2026 and how to put your best application forward
    • ScaleOps raises $130M to improve computing efficiency amid AI demand
    • Qodo raises $70M for code verification as AI coding scales
    • Elon Musk’s last co-founder reportedly leaves xAI
    • From Moon hotels to cattle herding: 8 startups investors chased at YC Demo Day
    • Aetherflux reportedly raising Series B at $2 billion valuation
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home»Security»HybridPetya ransomware bypasses Windows Secure Boot
    Security

    HybridPetya ransomware bypasses Windows Secure Boot

    TechurzBy TechurzSeptember 19, 2025No Comments1 Min Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Ransomware
    Share
    Facebook Twitter LinkedIn Pinterest Email


    However, the ESET researchers suspect that this is a research project, a proof-of-concept (PoC) or an early version of a cybercrime tool that is still in the limited testing phase.

    How the attack works

    According to ESET, the ransomware exploits an already patched vulnerability (CVE-2024-7344) in a signed Microsoft EFI file (reloader.efi). An unsigned malicious file named cloak.dat is then loaded. In this way, integrity checks are bypassed and the malicious program can be executed even before the operating system starts.

    The installer replaces the legitimate Windows bootloader with the vulnerable version. The malware then deliberately crashes the system, forcing a reboot. On boot, the compromised bootloader launches the HybridPetya bootkit and begins MFT encryption.

    boot Bypasses HybridPetya Ransomware secure Windows
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleBank of America and Amazon Are Increasing Worker Pay
    Next Article Russian Hackers Gamaredon and Turla Collaborate to Deploy Kazuar Backdoor in Ukraine
    Techurz
    • Website

    Related Posts

    Opinion

    Simular’s AI agent wants to run your Mac, Windows PC for you

    December 2, 2025
    Security

    AI is becoming introspective – and that ‘should be monitored carefully,’ warns Anthropic

    November 3, 2025
    Security

    Perplexity’s new AI tool lets you search patents with natural language – and it’s free

    November 3, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Our Picks

    Delve whistleblower strikes again, with alleged receipts about ‘fake compliance’

    March 31, 2026

    Popular AI gateway startup LiteLLM ditches controversial startup Delve

    March 30, 2026

    What we’re looking for in Startup Battlefield 2026 and how to put your best application forward

    March 30, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.