I am happy to report that Crowdstrike and Avast have released a free decryption tool for HermeticRansom ransomware. If you have been targeted with this tool, you will now be able to restore your files without paying the ransom. This ransomware initially targeted devices in Ukraine, but it could attack any device anywhere globally.

The team at Crowdstike were the ones who initially found the weakness in the ransomware encryption, as they explain HERE:

“The ransomware contains implementation errors, making its encryption breakable and slow. This flaw suggests that the malware author was either inexperienced writing in Go or invested limited efforts in testing the malware, possibly because the available development time was limited,”

Crowdsrike released a decryption tool that is very hard to use and requires technical skills, so I recommend that you use a much easier decryption tool from Avast by following this LINK HERE.

