
DeadLock Ransomware Disables Windows Defender, Backups and Event Logs Before Encrypting Files
DeadLock, an emerging financially motivated ransomware operation that couples conventional intrusion tradecraft with decentralized infrastructure engineered to survive disruption. First observed in July 2025, the operation uses double extortion: encrypting enterprise data while threatening publication of stolen material. The encryptor’s pre-encryption routine is built to degrade both prevention and recovery. After XOR-decoding an embedded configuration, […]
The post DeadLock Ransomware Disables Windows Defender, Backups and Event Logs Before Encrypting Files appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.