The Rex ‘.rex’ MedusaLocker Variant: A Definitive Forensic Recovery Guide
In our recovery lab today at Lockbit Decryptor, we isolated the Rex ransomware strain, identified by the variable .rex## extension (e.g., .rex48) and the RANSOM_NOTE.html file. Our forensic analysis definitively identifies this as a variant of the MedusaLocker ransomware family. This strain employs a robust hybrid cryptosystem. Critically, our analysis indicates that this variant correctly…
