New cyberattacks by Hamas- backed hackers are using the BiBi malware against targets in Israel. Four new variants of the malware have been identified that are able to evade antivirus engines, according to the VirusTotal platform.

BiBi is a wiper-type malware that deletes and destroys data. This malware is not concerned with stealing data. Its goal is to cause damage, making it difficult to recover data.
The BiBi malware was developed at the beginning of the war in October by a hacking group affiliated with Hamas. The attacks targeted Israeli companies and sought to cause damage by deleting and corrupting data and disrupting operating systems.
See also: Calendly Link spreads malware to Mac devices
BiBi malware: How does it work?
The malware moves through the systembetween files and tries to destroy them. At the end of the process, each affected file receives the BiBi extension. In addition, the malware deletes all Shadow Copies, changes the system boot policy, and disables the options for automatic recovery. By doing these actions, it is not possible to restore the system and recover the damaged data.
Hackers are continuing their attacks, creating new versions of the BiBi malware, as researchers at Symantec have found.
See also: GTPDOOR Linux malware exploits GPRS networks
According to Idan Malichi, a security researcher at cybersecurity firm CyFox, “in the midst of the ongoing war, the new malware discovered targets large and small Israeli organizations, with the aim of destroying most of the information and content in the infrastructure.”
At present, the names of the Israeli companies affected have not been revealed.
To protect against wiper-type malware like BiBi, an organization should keep device up to date. These updates often include security patches that can prevent malware from entering the system.
See also: TimbreStealer malware spreads via phishing scams

Additionally, users should be cautious about the emails and file attachments they receive. Wiper-type malware is often spread through phishing attacks, where attackers try to trick users into clicking on harmful links or opening dangerous attachments.
Using a reputable program antivirus is also crucial. These programs can detect and remove wiper-type malware before it can cause damage to the system.
Finally, regularly backing up important data can help prevent data loss in the event of an attack.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
Source: www.jpost.com
