A new version of the Destover “wiper” malware has been discovered that is signed using a legitimate digital certificate from Sony. While the certificate is authentic, a security researcher says the latest version is a hoax. Kaspersky Lab says it hasn’t seen a sample of the latest Destover malware circulating in the wild, but says it was important to sound related warnings nevertheless. The certificate that was used to sign the malware sample is very real, and comes via a password-protected PFX file leaked by the group that attacked Sony Pictures Entertainment.”]
Source: https://www.careersinfosecurity.com/researcher-claims-destover-malware-hoax-a-7660