Back to Resources

SentinelOne Vs. Pandora Ransomware – Detection, Prevention, Mitigation, and Rollback

⚔️ See how SentinelOne detects, prevents, mitigates, and rolls back Pandora ransomware family. First emerging in March of 2022, current intelligence indicates that the ‘family’ is a “rebrand” of Rook ransomware. Pandora, like Rook, is typically delivered via 3rd party framework (ex: Cobalt Strike). When executed, Pandora will also display one (or more) visible CMD windows (also similar to Rook). The group rose to prominence upon the launch of their TOR-based victim blog, which mirrors the common format. That is to say, Pandora is still a multi-pronged extortion outfit, carrying out ransomware attacks in addition to public leakage of data should the victims fail to ‘comply’. As of this writing, there are four victims listed on Pandora’s site, including multiple major Japanese corporations.

#cybersecurity #pandoraransomware #ransomware #infosec #RookRansomware

지금 읽기

세계에서 가장 앞선 사이버 보안 플랫폼 경험하기

지능적인 자율형 사이버 보안 플랫폼이 현재와 미래의 조직을 어떻게 보호할 수 있는지 알아보세요.