Close Menu
  • Home
  • AI
  • Big Data
  • Cloud Computing
  • iOS Development
  • IoT
  • IT/ Cybersecurity
  • Tech
    • Nanotechnology
    • Green Technology
    • Apple
    • Software Development
    • Software Engineering

Subscribe to Updates

Get the latest technology news from Bigteetechhub about IT, Cybersecurity and Big Data.

    What's Hot

    Architecting Security for Agentic Capabilities in Chrome

    December 27, 2025

    ServiceNow has spent $12B+ on acquisitions and investments in 2025 amid concerns about revenue growth, projected to fall below 20% in 2026 without acquisitions (Brody Ford/Bloomberg)

    December 27, 2025

    Reader picks: The most popular Python stories of 2025

    December 27, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    Big Tee Tech Hub
    • Home
    • AI
    • Big Data
    • Cloud Computing
    • iOS Development
    • IoT
    • IT/ Cybersecurity
    • Tech
      • Nanotechnology
      • Green Technology
      • Apple
      • Software Development
      • Software Engineering
    Big Tee Tech Hub
    Home»IT/ Cybersecurity»RansomHouse upgrades encryption with multi-layered data processing
    IT/ Cybersecurity

    RansomHouse upgrades encryption with multi-layered data processing

    big tee tech hubBy big tee tech hubDecember 21, 2025013 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email Telegram WhatsApp
    Follow Us
    Google News Flipboard
    RansomHouse upgrades encryption with multi-layered data processing
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link


    RansomHouse upgrades encryption with multi-layered data processing

    The RansomHouse ransomware-as-a-service (RaaS) has recently upgraded its encryptor, switching from a relatively simple single-phase linear technique to a more complex, multi-layered method.

    In practice, the upgrades offer stronger encryption results, faster speeds, and better reliability on modern target environments, giving threat actors stronger leverage during post-encryption negotiations.

    RansomHouse launched in December 2021 as a data extortion cybercrime operation, later adopting encryptors in attacks and developing an automated tool called MrAgent to lock multiple VMware ESXi hypervisors at once.

    Wiz

    Recently, it was reported that the threat actors used multiple ransomware families against the Japanese e-commerce giant Askul Corporation.

    A new report from researchers at Palo Alto Networks Unit 42 sheds more light on RansomHouse’s toolset, including its latest encryptor variant, dubbed ‘Mario.’

    New ‘Mario’ encryptor

    RansomHouse’s latest encryptor variant switches from a single-pass file data transformation to a two-stage transformation that leverages two keys, a 32-byte primary and an 8-byte secondary key.

    This approach increases the encryption entropy and makes partial data recovery harder.

    Mario generating the two keys
    ‘Mario’ generating the two encryption keys
    Source: Unit 42

    The second major upgrade is the introduction of a new file processing strategy that uses dynamic chunk sizing at a threshold of 8GB, with intermittent encryption.

    Unit 42 says this makes static analysis more difficult due to its non-linearity, use of complex math to determine the processing order, and the use of distinct approaches for each file based on its size.

    Another notable upgrade in ‘Mario’ is the better memory layout and buffer organization, and higher complexity, with multiple dedicated buffers now used for each encryption stage or role.

    Finally, the upgraded encryptor version now prints more detailed information for file processing compared with the older variants, which only declared the task completion.

    The newer variant still targets VM files and renames the encrypted files with the ‘.emario’ extension, dropping a ransom note (How To Restore Your Files.txt) on all impacted directories.

    The ransom note dropped by the latest RansomHouse variant
    The ransom note dropped by the latest RansomHouse variant
    Source: Unit 42

    Unit 42 concludes that RansomHouse’s encryption upgrade is alarming, signaling “a concerning trajectory in ransomware development,” increasing the difficulty of decryption and making static analysis and reverse engineering harder.

    RansomHouse is one of the longer-running RaaS operations, but it remains mid-tier in terms of attack volume. Its continued development of advanced tooling suggests a calculated strategy focused on efficiency and evasion rather than scale.


    tines

    Broken IAM isn’t just an IT problem – the impact ripples across your whole business.

    This practical guide covers why traditional IAM practices fail to keep up with modern demands, examples of what “good” IAM looks like, and a simple checklist for building a scalable strategy.



    Source link

    Data Encryption multilayered processing RansomHouse Upgrades
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    tonirufai
    big tee tech hub
    • Website

    Related Posts

    Architecting Security for Agentic Capabilities in Chrome

    December 27, 2025

    Trust Wallet confirms extension hack led to $7 million crypto theft

    December 26, 2025

    Stealth Loaders, AI Chatbot Flaws AI Exploits, Docker Hack, and 15 More Stories

    December 26, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Architecting Security for Agentic Capabilities in Chrome

    December 27, 2025

    ServiceNow has spent $12B+ on acquisitions and investments in 2025 amid concerns about revenue growth, projected to fall below 20% in 2026 without acquisitions (Brody Ford/Bloomberg)

    December 27, 2025

    Reader picks: The most popular Python stories of 2025

    December 27, 2025

    Trump’s war on offshore wind faces another lawsuit

    December 27, 2025
    About Us
    About Us

    Welcome To big tee tech hub. Big tee tech hub is a Professional seo tools Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of seo tools, with a focus on dependability and tools. We’re working to turn our passion for seo tools into a booming online website. We hope you enjoy our seo tools as much as we enjoy offering them to you.

    Don't Miss!

    Architecting Security for Agentic Capabilities in Chrome

    December 27, 2025

    ServiceNow has spent $12B+ on acquisitions and investments in 2025 amid concerns about revenue growth, projected to fall below 20% in 2026 without acquisitions (Brody Ford/Bloomberg)

    December 27, 2025

    Subscribe to Updates

    Get the latest technology news from Bigteetechhub about IT, Cybersecurity and Big Data.

      • About Us
      • Contact Us
      • Disclaimer
      • Privacy Policy
      • Terms and Conditions
      © 2025 bigteetechhub.All Right Reserved

      Type above and press Enter to search. Press Esc to cancel.