• XSS.stack #1 – первый литературный журнал от юзеров форума

A Method for Decrypting Data Infected with Hive Ransomware

Tomm

CD-диск
Пользователь
Регистрация
04.02.2022
Сообщения
10
Реакции
8
sabj
Hive ransomware generates 10MiB of ran-
dom data, and uses it as an master key. For each file to be encrypted,
1MiB and 1KiB of data are extracted from a specific offset of the mas-
ter key and used as a keystream. The offset used at this time is stored
in the encrypted file name of each file. Using the offset of the keystream
stored in the filename, it is possible to extract the keystream used for
encryption
 

Вложения

  • 2202.08477.pdf
    3.6 МБ · Просмотры: 17


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх