sb-as logo
Story image

Attackers will get in: Three frameworks that help you through ransomware

22 Nov 2017

Did you know the first ransomware hit computers in 1989? The PC Cyborg Trojan demanded a $189 ransom. The Trojan hid all folders and encrypted files on a PC’s C: Drive. If victims didn’t pay the ransom, the ransomware’s actions would not be reversed.

Fast-forward to 2017 and WannaCry and NotPetya were easily the most prevalent ransomware strains. NotPetya was probably the most notorious.  

All it needed to do was use all saved SMB credentials on a Windows system and use these to log on to other machines. This means it could spread – fast. It also offered no way to contact the attacker in the event that victims paid the ransom.

These attacks are reminders that the cyber threat landscape is sophisticated to the point in which we have to accept that attackers will get into our networks.

But are we prepared? To successfully defend our organisations, we need to prepare and understand the indicators of compromise.

LogRhythm’s free guide takes an in-depth look at the typical phases of a ransomware attack, including:

  • How ransomware attacks begin – it can take as few as 15 minutes
  • How ransomware attacks progress through endpoints and networks
  • NIST, SANS and Navy incident frameworks that help organisations handle ransomware attacks
  • What you can do to prevent or limit an infection, including a five-step guide from preparation to recovery

With good planning and a definitive course of action, an attack can have a minimal impact to our organisations.

Story image
Why best-practice threat data management provides confident automation
Understanding an organisation’s threat landscape requires having both the right threat data sources and the proper prioritisation to derive actionable threat intelligence for your organisation. More
Story image
Fujitsu new tech ensures inter-business data trust
The technology can verify when and by whom the data was created, and whether it has been tampered with, to ensure trusted data exchange.More
Story image
Cisco report: Remote working is here to stay, making cybersecurity a top priority
"With this new way of working here to stay and organisations looking to increase their investment in cybersecurity, there’s a unique opportunity to transform the way we approach security as an industry to better meet the needs of our customers and end-users.”More
Story image
UiPath and eSentire bring hyperautomation to Microsoft Security
UiPath and eSentire have announced a strategic partnership to deliver end-to-end security policy automation across multiple Microsoft Security services.More
Story image
Security and operations collaboration key to success post COVID-19
“We are in an ultra-hybrid world with multi-everything, and in order to successfully navigate this landscape, ITOps, DevOps, and SecOps teams need to more closely align."More
Story image
Interview: How cyber hygiene supports security culture - ThreatQuotient
We spoke with ThreatQuotient’s APJC regional director Anthony Stitt to dig deeper into cyber hygiene, security culture, threat intelligence, and the tools that support them.More