The HermeticWiper malware was used in yesterday’s attacks on Ukrainian networks. The malware was accompanied by a GoLang-based ransomware decoy, Symantec said. The ransom note instructs victims to reach out to two email addresses (i.e., vote2024forjb@protonmail.com) and stephanie.jones2024@Protonmail. The wiper malware uses EaseUS Partition Manager drivers to corrupt compromised devices’ files before rebooting.”]