⚔️ See how SentinelOne mitigates and rolls back Marlock ransomware. Marlock was first seen in the wild in September of 2021 and is an apparent evolution of Medusa Locker and the various branches of that family. As currently analyzed, it’s functionally identical to recent samples of both Medusa and Huylock.
Upon infection, victims are instructed to connect to the attacker’s paymore portal (.onion) via TOR. Similar to its predecessors, it will attempt to shutdown / terminate any process which may stand in the way of the encryption process and will attempt to inhibit system recovery by deleting VSS / Shadowcopies (via WMIC)
SentinelOne PartnerOne - America's 2025
⛳️ Last week in Pebble Beach the America's best cybersecurity partners came together for our annual PartnerOne summit. Check out…
Just a Sec: Cybersecurity Unfiltered—Fast, Frank, and From the Front Lines
Welcome to the first-ever Just A Sec, a no-holds-barred, quick-fire monthly livestream. It’s cybersecurity like you’ve never heard it before—unfiltered,…
See how our intelligent, autonomous cybersecurity platform harnesses the power of data and AI to protect your organization now and into the future.