Back to Resources

Fog Ransomware (Linux) VS SentinelOne – Protection

Fog ransomware has emerged as a significant cyber threat, targeting both Windows and Linux systems since April 2024. In this video, we show how the SentinelOne Singularity XDR Platform detects and mitigates Fog ransomware.

Key Points About Fog Ransomware:

-Targeted Sectors: Include Education and Manufacturing
-Exploited Vulnerabilities: VPN and Backup-software weaknesses
-Primary Targets: Virtual machines and VMDK files
-Payload Control: Managed via JSON configuration files
-Credential Use: Observed in pre-payload deployment
-Encryption Focus: On-prem encryption with .FOG or .FLOCKED file extensions
-Communication: Victims use a TOR-based chat portal for ransom negotiations

~Subscribe to our channels:~
Website: https://www.sentinelone.com/
LinkedIn: / sentinelone
Twitter: / sentinelone
Facebook: / sentinelone
Instagram: / sentinelsec
Threads: https://www.threads.net/@sentinelsec

Watch Now

Experience the World’s Most Advanced Cybersecurity Platform

See how our intelligent, autonomous cybersecurity platform harnesses the power of data and AI to protect your organization now and into the future.