GigaWiper: Anatomy of a destructive backdoor assembled from multiple malware

2026-07-10T02:52:17Z03ca0f680bcf0209776365b9530fff48b39ad1bed9729897450fb10bf49503d1
GigaWiperMicrosoft Security Blogcode-reusedestructive-backdoordetectionincident-responsemalwaremalware-reuseransomware-likethreat-intelligencewiper

What happened

Microsoft describes GigaWiper as a destructive backdoor that consolidates wiping and ransomware-like capabilities into a single operational platform. The malware is notable for incorporating code from multiple previously separate malware families; the blog analyzes its assembly and behavior and provides detection and defensive guidance for defenders and incident responders.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
microsoft_security_blog
Record identifier
03ca0f680bcf0209776365b9530fff48b39ad1bed9729897450fb10bf49503d1
Enrichment time
2026-07-10T02:52:17Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.