Upgrade to Pro — share decks privately, control downloads, hide ads and more …

The Digital Hostage: Ransomware in the Workplace

The Digital Hostage: Ransomware in the Workplace

A talk about ransomware - particularly the impact of attacks on businesses. Takes the audience through the anatomy of ransomware and how it has evolved, culminating in the best ways to prevent, prepare for and respond to ransomware attacks.

The accompanying handout can be viewed here: https://goo.gl/ARHDPJ

Presented to The Insurance Institute of Sussex (a local section of the Chartered Insurance Institute) on 5th July 2017.

http://www.ciibrighton.org.uk/

Chris Cooper

July 05, 2017
Tweet

More Decks by Chris Cooper

Other Decks in Technology

Transcript

  1. 3"/40.8"3& JNQBDUT #64*/&44&4 1. by encrypting network shares and spreading

    2. by disrupting continuity 3. by never recovering data
  2. “I don't know who you are. I don't know what

    you want. If you are looking for ransom, I can tell you I don't have money. But what I do have are a very particular set of skills, skills I have acquired over a very long career. Skills that make me a nightmare for people like you.”
  3. 13&7&/5 XJUIHPPEEJHJUBMIZHJFOF 1. keep software packages up-to-date 2. guard against

    phishing 3. guard against baiting 4. employ caution when visiting websites 5. employ caution when installing software 6. install and maintain anti-virus
  4. 13&1"3& GPSUIFVOFYQFDUFE 1. regularly backup 2. check and test your

    backups 3. employ the principle of least privilege 4. consider having a playbook or procedure in-place
  5. 3&410/% UPBUUBDLT 1. isolate infected machines 2. protect backups 3.

    do not pay the ransom 4. report internally and to the police
 (http://www.actionfraud.police.uk/)