Petya-and-Bad-Rabbit - description
- Last Updated: May 1, 2026
- 1 minute read
- Flowmon Products
- Flowmon Anomaly Detection System
- Documentation
Sources:
Petya ransomware analysis revealing destructive wiper characteristics
Analysis comparing Bad Rabbit to previous Petya/NotPetya attacks
Technical investigation of Bad Rabbit ransomware capabilities
Bad Rabbit is ransomware that primarily targets Russian organizations. It disguises itself as an Adobe Flash Player update and requires manual execution by users. The ransomware spreads through compromised legitimate websites using drive-by download techniques.
Flowmon ADS detects the redirect sites that distribute the ransomware.