Ransomware accidentally destroys all files larger than 128KB, preventing decryption — VECT code likely partly vibe coded with AI or used an old code base, security researchers suggest

TL;DR AI
2 min readKey summary
Check Point Research found that VECT ransomware has a critical flaw in how it handles encryption nonces for files larger than 128KB.
When those files are split, only the final chunk remains decryptable; the rest is effectively destroyed and cannot be recovered.
The bug can make victim data unrecoverable even after ransom payment, blurring the line between ransomware and a wiper.
Researchers also noted other coding mistakes, raising questions about AI-assisted development or reuse of an older code base.

