International Edition
Latest News
Technology

RansomHouse Upgrades Encryption with Multi-Layered Data Processing

RansomHouse Upgrades Encryptor with Multi-Layered Approach The RansomHouse ransomware-as-a-service (RaaS) has recently upgraded its encryptor, switching from a relatively simple single-phase linear technique to a more complex, multi-layered method. In practice, the upgrades offer stronger encryption results, faster…

RansomHouse Upgrades Encryption with Multi-Layered Data Processing

RansomHouse Upgrades Encryptor with Multi-Layered Approach

The RansomHouse ransomware-as-a-service (RaaS) has recently upgraded its encryptor, switching from a relatively simple single-phase linear technique to a more complex, multi-layered method.

In practice, the upgrades offer stronger encryption results, faster speeds, and better reliability on modern target environments, giving threat actors stronger leverage during post-encryption negotiations.

RansomHouse launched in December 2021 as a data extortion cybercrime operation, later adopting encryptors in attacks and developing an automated tool called MrAgent to lock multiple VMware ESXi hypervisors at once.

Wiz

Recently, it was reported that the threat actors used multiple ransomware families against the Japanese e-commerce giant Askul Corporation.

A new report from researchers at Palo Alto Networks Unit 42 sheds more light on RansomHouse’s toolset, including its latest encryptor variant, dubbed ‘Mario.’

New ‘Mario’ Encryptor

RansomHouse’s latest encryptor variant switches from a single-pass file data change to a two-stage transformation that leverages two keys, a 32-byte prim

About the author: Anika Shah - Technology

MSc in Computer Science, senior reporter. Anika focuses on AI ethics, cybersecurity, and emerging hardware—frequently moderating panels at CES and Web Summit. “Anika Shah decodes tech breakthroughs and startup disruption shaping tomorrow’s digital landscape.”