Back to Resources

SentinelOne Vs. AtomSilo – Detection and Remediation

Watch how SentinelOne detects AtomSilo ransomware. Atomsilo is new ransomware seen in the wild since September 2021, targeting Windows devices worldwide. Like other emerging ransomware groups, they claim to avoid hospitals, critical infrastructure, oil and gas entities, educational facilities, and non-profits. The group maintains a TOR-based blog on which they list non-compliant victims and leak their data accordingly. Victims are instructed to contact the attacker (via email or TOR-based payment site) for steps on how to proceed with paying for the decrypter. The price of decryption (in all samples analyzed to date) is $1,000,000 USD. However, if the victim is able to pay within 48 hours, that can be reduced by 50%.

Upon infection, AtomSilo ransomware will encrypt files and append the .ATOMSILO extension to each. The ransomware payloads are also programmed to delete themselves after execution.

#atomsilo #ransomware #cybersecurity

Watch Now

Experience the World’s Most Advanced Cybersecurity Platform

See how our intelligent, autonomous cybersecurity platform harnesses the power of data and AI to protect your organization now and into the future.