

Even if the malware author did correct the issue, it’s unknown whether those already compromised can benefit, or if they’re out of luck.
They literally said the private key was discarded. It’s absolutely known whether those already compromised can benefit. They can’t.

I know just enough to know that I absolutely shouldn’t try to roll my own encryption, and that’s enough knowledge for me