New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware

A New Windows Backdoor Emerges, Wiping Data and Spying on Users

In a worrying development, researchers have uncovered a sophisticated backdoor malware targeting Windows systems, capable of wiping entire disks, spreading fake ransomware, and installing spyware. The new threat, discovered by experts at cybersecurity firm ESET, has been dubbed “GigaWiper.” If you use a Windows computer, this news should be concerning – especially if you’re not running up-to-date antivirus software.

The malware’s arsenal is extensive: GigaWiper can erase the contents of an infected disk using a tool called “DiskCrypt,” making it impossible to recover data. It also deploys fake ransomware, encrypting files and demanding payment from unwitting users while actually installing additional malicious code. Furthermore, the malware includes spyware components that allow attackers to steal sensitive information, such as login credentials and browsing history.

So how does GigaWiper infect Windows systems? In most cases, it’s likely through a phishing attack or exploitation of software vulnerabilities in outdated applications. The malware uses AI-powered tools to scan for and identify vulnerable software on an infected system, allowing it to spread quickly across networks. Once inside, GigaWiper establishes a connection with its command-and-control server, receiving instructions from its operators.

The emergence of GigaWiper highlights the increasingly sophisticated nature of modern malware threats. As attackers continually adapt their tactics, cybersecurity professionals must stay one step ahead by monitoring for new vulnerabilities and updating software regularly. With AI-powered tools now being used to develop more effective malware, it’s becoming clear that even the most basic security measures can no longer keep pace with the evolving threat landscape.

For users, this means taking proactive steps to secure their systems: ensuring antivirus software is up-to-date, using strong passwords and enabling two-factor authentication, and regularly backing up important data. By staying vigilant and maintaining a robust cybersecurity posture, individuals and organizations can mitigate the risks posed by sophisticated threats like GigaWiper.


Source: The Hacker News — 2026-07-09