Watch how SentinelOne detects PYSA ransomware. PYSA (aka Pysa Partners, Mespinoza) is a ‘double-extortion’ ransomware threat seen in the wild since early 2020. Like other recent ransomware gangs, the PYSA team maintains a blog to threaten their victims and leak sensitive data. One of the tactics used by PYSA is exfiltrating data before encrypting devices Data from victim hosts is exfiltrated before the encryption of devices.
The SentinelLabs team observed PYSA campaigns using tools like WinSCP to exfiltrate data. Earlier in 2021 we saw PYSA attacks against Educational institutions, primarily in the United States and the United Kingdom.
#ransomware #cybersecurity #infosec #PYSA #exploit #SentinelLabs
SentinelOne PartnerOne - America's 2025
⛳️ Last week in Pebble Beach the America's best cybersecurity partners came together for our annual PartnerOne summit. Check out…
Just a Sec: Cybersecurity Unfiltered—Fast, Frank, and From the Front Lines
Welcome to the first-ever Just A Sec, a no-holds-barred, quick-fire monthly livestream. It’s cybersecurity like you’ve never heard it before—unfiltered,…
See how our intelligent, autonomous cybersecurity platform harnesses the power of data and AI to protect your organization now and into the future.