The Register Home Page

back to article Don't pay Vect a ransom - your data's likely already wiped out

Organizations hit by the wave of Trivy and LiteLLM supply-chain compromises that paid Vect in hopes of recovering their data likely did not get much back, according to Check Point Research. That's because the ransomware Vect uses isn't actually ransomware at all, but a wiper that destroys any file larger than 128KB. Vect's …

  1. Pascal Monett Silver badge

    Education is painful

    This current rash of malware has one good consequence : those companies destroyed by it are going to remember that they should have paid more attention to IT and security in general.

    Yes, it's going to hurt. People are going to lose their jobs. It's unfortunate.

    It's also the cost of waking up to the world as it is : a dangerous place where you need to ut up firewalls and barriers if you want to last.

    1. IGotOut Silver badge

      Re: Education is painful

      Bit like the "lessons will be learned" after every <insert scenario here> which a mouthpiece will spout out, only to repeat the same, but very slightly different, action next time.

    2. Anonymous Coward
      Anonymous Coward

      Re: Education is painful

      The people in charge, though? Those CTOs who denied resources needed to reach the unrealistic objectives they pulled out of their asses? Because of course with AI, more can be done with less?

      Why, they'll get their bonuses, of course.

    3. Phil Kingston

      Re: Education is painful

      Job loss for such occurences is a nice thought. But it also needs way more when personal information is what's lost. C-suite prison time and huge, shareholder-affecting fines are what's needed.

  2. Gene Cash Silver badge

    There's 2 types of people

    There are those that make backups, and there are those who have yet to lose irreplaceable data.

    1. Throatwarbler Mangrove Silver badge
      Headmaster

      Re: There's 2 types of people

      Type three: those looking for plausible deniability.

    2. elsergiovolador Silver badge

      Re: There's 2 types of people

      There are those that make backups, and there are those who make two backups.

      1. Fred Daggy Silver badge

        Re: There's 3 types of people

        There are 3 types of people, those that have lost irreplacable data, those that have backups and those that have tested the restore and know that they have ALL the data and the restore works.

        Really, I didn't expect the Spanish Inquisition!

      2. 45RPM Silver badge

        Re: There's 2 types of people

        Make backups to a server, automatically, and for the love of everything you hold dear make sure that your server is running a different OS to the one that you’re backing up.

        Then make sure that the server is backed up regularly to dumb media.

        Ideally, make sure that some of your backups are offsite.

        Worst case then you might lose something but you won’t lose everything.

        I’m not paranoid. I’m just careful.

    3. Anonymous Coward
      Anonymous Coward

      Re: There's 2 types of people

      And backup regularly!

      I was a it bit overdue doing backups on the home PC. "Lucked out" when it died and it was only a shorted out motherboard. The hard drive made it through and the data has mostly been recovered. Still need to pull a bit out of some hidden data in the AppData/Roaming which I just asked the spouse if they were using it 10 minutes ago.

  3. VicMortimer Silver badge
    Megaphone

    Want to stop ransomware? Ban paying ransom.

    The ONLY way ransomeware is ever going to be stopped is if it becomes a crime to pay ransom.

    If the CEO goes to prison for paying, the money will dry up. No money, no point, no more ransomware.

    1. druck Silver badge

      Re: Want to stop ransomware? Ban paying ransom.

      No crypto, no viable means of payment. Start by making that illegal.

    2. M.V. Lipvig Silver badge

      Re: Want to stop ransomware? Ban paying ransom.

      "If the CEO goes to prison for..."

      Such a simple solution to so many complex problems. Companies would be better and more ethically run if not doing so meant a pink jumpsuit and baloney sammiches for 10 years instead of a golden parachute and thousand dollar restaurant plates.

      1. 45RPM Silver badge

        Re: Want to stop ransomware? Ban paying ransom.

        Is a sammich the same as a samblitch?

  4. Jedit Silver badge
    Joke

    "discards three of four decryption nonces"

    Well, at least we know the UK government won't be using it. They've not yet found a nonce they want to discard.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon