当前位置:首页 > 报告详情

应对现代勒索软件威胁和多重勒索策略.pdf

上传人: 可*** 编号:991836 2025-12-07 6页 293.84KB

1、Facing Modern Ransomware Threats and Tackling Multi-Extortion TacticsSanjay PoddarAdvanced Services Engineer,FortinetThe New Face of RansomwareRansomware is no longer just about file encryption.Rise of multi-extortion:encryption+data theft+public shaming+DDoS“Pay once to get your data back,pay again

2、 to stop the leak.”The Business Model Behind Modern Ransomware Initial access brokers sell credentials to ransomware affiliates Ransomware as-a-Service(RaaS)Data Leak Sites DDoS-as-a-service Payments through cryptocurrencyData leak sites are used to shame victims and drive urgencyDDoS-as-a-service i

3、s used as added leverage*Payments often flow through cryptocurrency mixers and affiliate splitsReal-World ExampleBrief anonymized case study or example from news.Highlight speed of attack,level of damage,and response failure/success.FIN12s Rapid Ransomware Attack on a Healthcare ProviderKey Takeaway

4、sWhy Traditional Defenses Fail Focus too heavily on post-encryption recovery Limited visibility into lateral movement and data staging Incident response plans dont account for public data leaks Flat networks allow attackers unrestricted access Security,legal,and PR Teams often work in silosFive Ways

5、 to Fight Back Segment your network and limit lateral movement Monitor for pre-encryption behaviors like large file access,exfiltration Encrypt your own data before attackers do Build and test a response plan specific to multi-extortion Treat data exfiltration as part of your ransomware threat model

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
客服
商务合作
小程序
服务号
折叠