Wednesday, April 22, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

ESET Research discovers UEFI-compatible HybridPetya ransomware capable of Secure Boot bypass

September 13, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 5 mins read
5
SHARES
245
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • ESET Research has discovered new ransomware samples, which it has named HybridPetya, resembling the infamous Petya/NotPetya malware. They were uploaded to VirusTotal in February 2025.
  • HybridPetya encrypts the Master File Table, which contains important metadata about all the files on NTFS-formatted partitions.
  • Unlike the original Petya/NotPetya, HybridPetya can compromise modern UEFI-based systems by installing a malicious EFI application onto the EFI System Partition.
  • One of the analyzed HybridPetya variants exploits CVE-2024-7344 to bypass UEFI Secure Boot on outdated systems, leveraging a specially crafted cloak.dat file.
  • ESET telemetry shows no signs of HybridPetya being used in the wild yet.

BRATISLAVA, Slovakia, Sept. 12, 2025 (GLOBE NEWSWIRE) — ESET Research has discovered a HybridPetya bootkit and ransomware uploaded from Poland to the malware-scanning platform VirusTotal. The sample is a copycat of the infamous Petya/NotPetya malware; however, it adds the capability of compromising UEFI-based systems and weaponizing CVE-2024-7344 to bypass UEFI Secure Boot on outdated systems.

“Late in July 2025, we encountered suspicious ransomware samples under various filenames, including notpetyanew.exe and other similar ones, suggesting a connection with the infamously destructive malware that struck Ukraine and many other countries back in 2017. The NotPetya attack is believed to be the most destructive cyberattack in history, with more than $10 billion in total damages. Due to the shared characteristics of the newly discovered samples with both Petya and NotPetya, we named this new malware HybridPetya,” says ESET researcher Martin Smolár, who made the discovery.

The algorithm used to generate the victim’s personal installation key, unlike in the original NotPetya, allows the malware operator to reconstruct the decryption key from the victim’s personal installation keys. Thus, HybridPetya remains viable as regular ransomware – more like Petya. Additionally, HybridPetya is also capable of compromising modern UEFI-based systems by installing a malicious EFI application to the EFI System Partition. The deployed UEFI application is then responsible for encryption of the NTFS-related Master File Table (MFT) file – an important metadata file containing information about all the files on the NTFS-formatted partition.

“After a bit more digging, we discovered something even more interesting on VirusTotal: an archive containing the whole EFI System Partition contents, including a very similar HybridPetya UEFI application, but this time bundled in a specially formatted cloak.dat file, vulnerable to CVE-2024-7344 – the UEFI Secure Boot bypass vulnerability that our team disclosed in early 2025,” adds Smolár. ESET publications from January 2025 purposely refrained from detailing the exploitation; thus, the malware author probably reconstructed the correct cloak.dat file format based on reverse engineering the vulnerable application on their own.

ESET telemetry shows no active use of HybridPetya in the wild yet; thus, HybridPetya may just be a proof of concept developed by a security researcher or an unknown threat actor. Furthermore, this malware does not exhibit the aggressive network propagation seen in the original NotPetya.

For a more detailed analysis and technical breakdown of HybridPetya, check out the latest ESET Research blogpost Introducing HybridPetya: Petya/NotPetya copycat with UEFI Secure Boot bypass on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET
ESET® provides cutting-edge cybersecurity to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown— securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.
ShareTweet1ShareSendShare2
Previous Post

AlliAI Announces New Features That Change the Game For Users

Next Post

Altai Announces Dismissal of Its Claim by Quebec Court

Related Posts

Adswerve Named 2026 Adobe Customer Experience Orchestration Emerging Partner of the Year, Americas, for Third Consecutive Year

DENVER, April 21, 2026 (GLOBE NEWSWIRE) -- Adswerve, a leading data, analytics, media, and technology consultancy who helps create positive business impact, today announced it has been recognized as the Adobe Customer Experience Orchestration (CXO) Emerging Partner of the Year, Americas, for the third consecutive year. Adobe's CXO Partner Awards...

Read moreDetails

Society Pass Incorporated (Nasdaq: SOPA) Nasdaq delinquency notification letter (the “Notice”)

NEW YORK, April 21, 2026 (GLOBE NEWSWIRE) -- Society Pass Incorporated (Nasdaq: SOPA) (the “Company”), Southeast Asia’s (SEA) next generation e-commerce ecosystem announced the received notice of delinquency letter from Nasdaq. On April 16, 2026, Society Pass Incorporated (the “Company”) received a delinquency notification letter (the “Notice”) from the Listing Qualifications...

Read moreDetails

NowVertical Group Wins 2026 Google Cloud Data & Analytics Partner of the Year for Latin America

TORONTO, April 21, 2026 (GLOBE NEWSWIRE) -- NowVertical Group Inc. (TSXV: NOW) (“NowVertical” or the “Company”), a data and AI solutions and services provider, announced today that it has received the 2026 Google Cloud Data & Analytics Partner of the Year award for Latin America. The recognition marks the second consecutive...

Read moreDetails

Veeco Announces Date for First Quarter 2026 Financial Results and Conference Call

PLAINVIEW, N.Y., April 21, 2026 (GLOBE NEWSWIRE) -- Veeco Instruments Inc. (NASDAQ: VECO) plans to release its first quarter 2026 financial results after the market closes on Tuesday, May 5, 2026. The company will host a conference call to review these results starting at 5:00 PM ET that day. To...

Read moreDetails

Zscaler Wins 2026 Google Cloud Partner of the Year Award for Security in the Application Category

SAN JOSE, Calif., April 21, 2026 (GLOBE NEWSWIRE) -- Zscaler, Inc. (NASDAQ: ZS), the leader in cloud security, announced today that it has received the 2026 Google Cloud Partner of the Year Award for Security in the Application category. The Zscaler Zero Trust Exchange™ platform and Google’s AI-powered infrastructure provide...

Read moreDetails

BlackLine Announces Date for First Quarter 2026 Earnings Release and Conference Call

LOS ANGELES, April 21, 2026 (GLOBE NEWSWIRE) -- BlackLine, Inc. (Nasdaq: BL) announced today that it will release financial results for the first quarter ended March 31, 2026 after market close on Tuesday, May 5, 2026 followed by a conference call hosted by management at 2:00 p.m. PT / 5:00 p.m. ET. A...

Read moreDetails

AvePoint to Announce First Quarter 2026 Financial Results on May 7

JERSEY CITY, N.J., April 21, 2026 (GLOBE NEWSWIRE) -- AvePoint (Nasdaq: AVPT; SGX: AVP), the global leader in AI data protection, unifying data security, governance, and resilience, will report its first quarter 2026 financial results after the US financial markets close on Thursday, May 7, 2026. The Company will host a...

Read moreDetails

NewHydrogen Completes Critical Pre-Pilot Plant Technical Validation 

The Company greenlights construction of a ThermoLoop engineering test unit to define commercial pilot plant specifications SANTA CLARITA, Calif., April 21, 2026 (GLOBE NEWSWIRE) -- NewHydrogen, Inc. (OTCQB: NEWH), the developer of ThermoLoop™, a breakthrough technology that uses water and heat instead of electricity to produce the world’s cheapest clean...

Read moreDetails

The System Missing Between Field Operations and Finance Is Here

WARWICK, N.Y., April 21, 2026 (GLOBE NEWSWIRE) -- Passport Workforce® introduced a new approach to managing the flow of labor data between field operations, payroll, finance, and job costing systems, addressing a long-standing gap in how enterprise field organizations manage labor data. Enterprise field operations have long relied on disconnected...

Read moreDetails

Jelly Lean (URGENT REPORT) Is It Legit? Complaints, Official Website, Studies, Ingredients, Benefits, and Customer Warnings

New York City, NY, April 21, 2026 (GLOBE NEWSWIRE) -- Jelly Lean is gaining attention because more consumers are looking for weight management supplements that feel convenient, easy to use, and simple to add to a daily routine. As that interest has grown, so has the amount of online discussion...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • FlipHTML5’s Flipbook Maker Creates Interactive Digital Publications Easily

    8 shares
    Share 3 Tweet 2
  • Discover 2025’s Top 5 Promising Low-Cap Crypto Gems

    97 shares
    Share 39 Tweet 24
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    159 shares
    Share 64 Tweet 40
  • A1 Data Center Transforms Former Glass Factory Into Power-Driven Innovation Campus in Millville, New Jersey

    7 shares
    Share 3 Tweet 2
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    53 shares
    Share 21 Tweet 13
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • Adswerve Named 2026 Adobe Customer Experience Orchestration Emerging Partner of the Year, Americas, for Third Consecutive Year
  • Society Pass Incorporated (Nasdaq: SOPA) Nasdaq delinquency notification letter (the “Notice”)
  • NowVertical Group Wins 2026 Google Cloud Data & Analytics Partner of the Year for Latin America
  • Veeco Announces Date for First Quarter 2026 Financial Results and Conference Call
  • Zscaler Wins 2026 Google Cloud Partner of the Year Award for Security in the Application Category

RSS Latest on Block3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age

RSS Latest on Meta3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.