A Threat-Led Approach to Mitigating Ransomware Attacks: Insights from a Comprehensive Analysis of the Ransomware Ecosystem

被引:0
|
作者
Lawall, Alexander [1 ]
Beenken, Petra [1 ]
机构
[1] IU Int Univ Appl Sci, Erfurt, Thuringen, Germany
关键词
Ransomware; Cybersecurity; Cyber Threat Intelligence (CTI); Tactics; Techniques; and Procedures (TTPs); MITRE ATT&CK framework; Mitigation; TAXONOMY; RISK;
D O I
10.1145/3655693.3661321
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Ransomware attacks have become a major threat to organizations across all sectors, causing significant financial and reputational damage. To address this challenge, this contribution presents a threat-led approach to mitigating ransomware attacks, based on a comprehensive analysis of the contemporary ransomware ecosystem. The contribution identifies the main ransomware groups that are currently active and analyzes their Tactics, Techniques, and Procedures (TTPs) to derive appropriate mitigation measures. The final output of this analysis is a list of mitigations that can effectively prevent the successful execution of ransomware attacks and whose implementation should thus be prioritized by cybersecurity teams. The contribution also highlights the importance of using the MITRE ATT&CK framework and threat actor profile library to enhance ransomware defense strategies. The findings of this contribution have significant implications for cybersecurity practitioners, policymakers, and researchers, and can inform the development of effective ransomware defense strategies.
引用
收藏
页码:210 / 216
页数:7
相关论文
共 5 条
  • [1] A Socio-technical Approach to Preventing, Mitigating, and Recovering from Ransomware Attacks
    Sittig, Dean F.
    Singh, Hardeep
    [J]. APPLIED CLINICAL INFORMATICS, 2016, 7 (02): : 624 - 632
  • [2] Securing the Industrial Internet of Things against ransomware attacks: A comprehensive analysis of the emerging threat landscape and detection mechanisms
    Al-Hawawreh, Muna
    Alazab, Mamoun
    Ferrag, Mohamed Amine
    Hossain, M. Shamim
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2024, 223
  • [3] Local learning from municipal ransomware attacks: A geographically weighted analysis
    Marett, Kent
    Nabors, Misty
    [J]. INFORMATION & MANAGEMENT, 2021, 58 (07)
  • [4] An exploratory data analysis of malware/ransomware cyberattacks: insights from an extensive cyber loss dataset
    Javadnejad, Farshid
    Abdelmagid, Ahmed M.
    Pinto, Cesar A.
    Mcshane, Michael
    Diaz, Rafael
    [J]. ENTERPRISE INFORMATION SYSTEMS, 2024, 18 (09)
  • [5] A Standardised Surgical Approach for Improved Outcomes in Paget-Schroetter Syndrome: Insights From A Comprehensive Meta-Analysis
    Narvaez, Estefania G.
    Freischlag, Julie A.
    [J]. EUROPEAN JOURNAL OF VASCULAR AND ENDOVASCULAR SURGERY, 2023, 66 (06) : 876 - 876