Guardado en:
Detalles Bibliográficos
Autores principales: Lai, Anthony Cheuk Tung, Ke, Ping Fan, Ho, Alan
Formato: Preprint
Publicado: 2025
Materias:
Acceso en línea:https://arxiv.org/abs/2502.01221
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
_version_ 1866917910224568320
author Lai, Anthony Cheuk Tung
Ke, Ping Fan
Ho, Alan
author_facet Lai, Anthony Cheuk Tung
Ke, Ping Fan
Ho, Alan
contents Ransomware impact different organizations for years, it causes huge monetary, reputation loss and operation impact. Other than typical data encryption by ransomware, attackers can request ransom from the victim organizations via data extortion, otherwise, attackers will publish stolen data publicly in their ransomware dashboard forum and data-sharing platforms. However, there is no clear and proven published incident response strategy to satisfy different business priorities and objectives under ransomware attack in detail. In this paper, we quote one of our representative front-line ransomware incident response experiences for Company X. Organization and incident responder can reference our established model strategy and implement proactive threat intelligence-based incident response architecture if one is under ransomware attack, which helps to respond the incident more effectively and speedy.
format Preprint
id arxiv_https___arxiv_org_abs_2502_01221
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Ransomware IR Model: Proactive Threat Intelligence-Based Incident Response Strategy
Lai, Anthony Cheuk Tung
Ke, Ping Fan
Ho, Alan
Cryptography and Security
Ransomware impact different organizations for years, it causes huge monetary, reputation loss and operation impact. Other than typical data encryption by ransomware, attackers can request ransom from the victim organizations via data extortion, otherwise, attackers will publish stolen data publicly in their ransomware dashboard forum and data-sharing platforms. However, there is no clear and proven published incident response strategy to satisfy different business priorities and objectives under ransomware attack in detail. In this paper, we quote one of our representative front-line ransomware incident response experiences for Company X. Organization and incident responder can reference our established model strategy and implement proactive threat intelligence-based incident response architecture if one is under ransomware attack, which helps to respond the incident more effectively and speedy.
title Ransomware IR Model: Proactive Threat Intelligence-Based Incident Response Strategy
topic Cryptography and Security
url https://arxiv.org/abs/2502.01221