Edward Kiledjian's Threat Intel

HybridPetya ransomware dodges UEFI Secure Boot • The Register

A new ransomware strain, HybridPetya, exploits a patched vulnerability to bypass UEFI Secure Boot on unrevoked Windows systems. While currently a proof-of-concept, it demonstrates the existence of Secure Boot bypasses and the potential for future attacks. HybridPetya encrypts the Master File Table (MFT) and demands a ransom for decryption, unlike its predecessors which destroyed data.