Threat Actors Actively Employ Intermittent Encryption In Recent Ransomware Attacks

More and more ransomware gangs are employing the new tactic called intermittent encryption which allows faster encryption and fewer chances of being detected by antivirus software.

The idea of intermittent encryption is encrypting only parts of the files which would still make them useless for victims and only recoverable with the decryptor or key.

This tactic also deceives automated detection tools that detect signs of trouble in the form of intense file IO operations.


