HybridPetya Ransomware Bypasses UEFI Secure Boot Using CVE-2024-7344
Originally Published 4 months ago — by BleepingComputer

HybridPetya is a new ransomware that can bypass UEFI Secure Boot by exploiting CVE-2024-7344, allowing it to install malicious bootkits on EFI System Partitions. It combines features from Petya and NotPetya, encrypts data, and demands Bitcoin ransom, though it has not yet been observed in the wild. Microsoft has patched the vulnerability, and users are advised to keep systems updated and maintain offline backups.
