5월 11, 2023
SentinelOne Demo: SentinelOne VS RA Group Ransomware – Detection and Response
In this video demo, we showcase how SentinelOne's XDR technology detects and responds to RA Group ransomware. RA Group emerged in April 2023. The RA Group ransomware payloads are derived/based on Babuk, and appear to be generated by the leaked Babuk builder toolset. The generated malware payloads are functionally similar to Babuk and contain commodity features such as VSS deletion.
The RA Group is a multi-extortion group. They threaten victims with publicly leaking data if victims fail to pay the demanded ransom. The group has also been known to include strings in their malware which taunt or shame well-known security researchers. The RA Group has a TOR (.onion) based website where they list victims and host exfiltrated data (should they fail to comply with the ransom demands). RA Group victims are instructed to communicate with their attackers via qTox messenger. RA Group does not exclude specific industries or locations from their targeting.
Experience the power of SentinelOne's XDR solution and witness first-hand its effectiveness in combating the RA Group ransomware. Subscribe to our channels for more in-depth analysis and real-life examples from the forefront of cybersecurity.
Experience the power of SentinelOne's XDR solution and witness first-hand its effectiveness in combating the RA Group ransomware. Subscribe to our channels for more in-depth analysis and real-life examples from the forefront of cybersecurity.
관련 리소스
데이터시트
Singularity™ Complete AI 지원 엔드포인트와 클라우드 보안
점점 더 복잡해지는 보안 아키텍처와 데이터 소스, 제한된 리소스, 더욱 정교해지는 공격에 직면한 보안 팀은 AI 지원 공격 세례에 대비하느라…
지금 읽기
Resource
SentinelOne PartnerOne - America's 2025
⛳️ Last week in Pebble Beach the America's best cybersecurity partners came together for our annual PartnerOne summit. Check out…
View Asset