AtomSilo is a double-extortion ransomware group known for exploiting CVE-2021-26084.
Analyst brief
AtomSilo is a financially motivated double-extortion ransomware group that emerged in September 2021, exploiting the Atlassian Confluence vulnerability (CVE-2021-26084) for initial access and demanding ransoms of up to $1 million. The group steals sensitive data prior to encryption and threatens to leak it to pressure victims into paying. Defenders should prioritize patching Confluence instances immediately, monitoring for unusual authentication attempts, and maintaining robust offline backup strategies.
atomsilo
crime
AtomSilo is a double-extortion ransomware group that emerged in September 2021, exploiting the Atlassian Confluence vulnerability (CVE-2021-26084) for initial access and demanding ransoms up to $1 million, attributed to the Chinese state-linked threat actor BRONZE STARLIGHT.