The source code for the ChastityLock ransomware that targeted male users of a specific adult toy is now publicly available for research purposes. Researchers at Pen Test Partners published details about a serious vulnerability that allowed a remote attacker to take control of any Qiui Cellmate device. The malware includes code that communicates to Qiui’s API endpoints to enumerate user info and send messages to the victim app and add friends. Victims were asked to pay 0.02 bitcoins, around $270 at the time of the attacks.
Source: https://www.bleepingcomputer.com/news/security/hacker-used-ransomware-to-lock-victims-in-their-iot-chastity-belt/

