"On February 23, 2022, open-source intelligence sources began reporting detections of a wiper malware - a destructive family of malware designed to permanently destroy data from the target - executing on systems belonging to Ukrainian organizations. IBM Security X-Force obtained a sample of the wiper named HermeticWiper. It uses a benign partition manager driver (a copy of empntdrv.sys) to perform its wiping capabilities corrupting all available physical drives' Master Boot Record (MBR), partition, and file system (FAT or NTFS)."
To read the full article, click here: IBM Security X-Force Research Advisory: New Destructive Malware Used In Cyber Attacks on Ukraine
------------------------------
Wendy Batten
Community Manager
IBM Security
Cambridge MA
wjbatten@us.ibm.com
------------------------------