The MORTAR Ransomware Decryptor and Recovery
In our recovery lab today at Lockbit Decryptor, we isolated the MORTAR ransomware strain, identified by victim-specific ID extensions (e.g., .4RcrXfvVksS5ACA) and the README-[ID].txt note. Our forensic analysis confirms this is a sophisticated, enterprise-targeting ransomware operation. This strain employs a robust hybrid cryptosystem. Critically, our analysis indicates that this variant correctly implements the cryptographic primitives,…
