
One of the most common types of attacks modern incident responders face is human-operated ransomware. There're quite a few challenges you may deal with during investigation: many pieces of valuable data are encrypted, threat actors still have access to the compromised environment, no proper logging... This talk will help you to effectively investigate such attacks using only default artifacts available in any network.
SANS DFIR Summit 2023
How to Effectively Investigate a Human-Operated Ransomware Attack in a Network Without Advanced Security Solutions & Logging
Speaker: Oleg Skulkin, Head of Cyber Threat Intelligence, BI.ZONE
View upcoming Summits: