SentinelOne VS Conti Ransomware – Protect Mode
Conti is an aggressive and prolific ransomware family with functional ties to Trickbot and Ryuk. Authors, and affiliates, behind the ransomware tout improved encryption strength and speed above Conti’s predecessors. There are also improvements with regards to obfuscation, and scope. Some variants have the ability to terminate specific processes so as to reduce interference w/ the encryption process. These processes can vary and are hard-coded per each example of the ransomware (can be target-environment-specific as well). SentinelOne is fully capable of detecting and preventing Conti ransomware infections.
#Infosec #ransomware #cybersecurity #epp #edr #DEMO