Sept. 19, 2023, 2:25 p.m. | SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response www.youtube.com

One of the most common types of attacks modern incident responders face is human-operated ransomware. There're quite a few challenges you may deal with during investigation: many pieces of valuable data are encrypted, threat actors still have access to the compromised environment, no proper logging... This talk will help you to effectively investigate such attacks using only default artifacts available in any network.

SANS DFIR Summit 2023
How to Effectively Investigate a Human-Operated Ransomware Attack in a Network Without Advanced …

access attack attacks challenges compromised data deal effectively encrypted environment human human-operated ransomware incident incident responders investigation logging may ransomware ransomware attack threat threat actors types

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)