New Osiris Ransomware Emerges as New Strain Using POORTRY Driver in BYOVD Attack
A prominent food service franchisee operator in Southeast Asia was the target of a new ransomware family known as Osiris in November 2025, according to information released by cybersecurity researchers.
According to the Symantec and Carbon Black Threat Hunter Team, the assault used a malicious driver known as POORTRY as part of a well-known method known as bring your own vulnerable driver (BYOVD) to disarm protection products.
It's important to note that Osiris is considered a novel strain of ransomware, with no resemblance to another variation of the same name that surfaced in December 2016 as an iteration of the Locky ransomware. The identity of the locker's developers and if it is marketed as ransomware-as-a-service (RaaS) are currently unknown.
Nonetheless, the cybersecurity ...

