Switch language한국어
Back to the list

Ransomware accidentally destroys all files larger than 128KB, preventing decryption — VECT code likely partly vibe coded with AI or used an old code base, security researchers suggest

TL;DR AI

Key summary

2 min read
  1. Check Point Research found that VECT ransomware has a critical flaw in how it handles encryption nonces for files larger than 128KB.

  2. When those files are split, only the final chunk remains decryptable; the rest is effectively destroyed and cannot be recovered.

  3. The bug can make victim data unrecoverable even after ransom payment, blurring the line between ransomware and a wiper.

  4. Researchers also noted other coding mistakes, raising questions about AI-assisted development or reuse of an older code base.

Read the original