Ransomware attacks have become a major threat to organizations across all sectors, causing significant financial and reputational damage. To address this challenge, this contribution presents a threat-led approach to mitigating ransomware attacks, based on a comprehensive analysis of the contemporary ransomware ecosystem. The contribution identifies the main ransomware groups that are currently active and analyzes their Tactics, Techniques, and Procedures (TTPs) to derive appropriate mitigation measures. The final output of this analysis is a list of mitigations that can effectively prevent the successful execution of ransomware attacks and whose implementation should thus be prioritized by cybersecurity teams. The contribution also highlights the importance of using the MITRE ATT&CK framework and threat actor profile library to enhance ransomware defense strategies. The findings of this contribution have significant implications for cybersecurity practitioners, policymakers, and researchers, and can inform the development of effective ransomware defense strategies.
机构:
Charles Darwin Univ, Darwin, AustraliaDeakin Univ, Sch Informat Technol, Geelong, Vic, Australia
Alazab, Mamoun
Ferrag, Mohamed Amine
论文数: 0引用数: 0
h-index: 0
机构:
Technol Innovat Inst, Artificial Intelligence & Digital Sci Res Ctr, Abu Dhabi, U Arab EmiratesDeakin Univ, Sch Informat Technol, Geelong, Vic, Australia
Ferrag, Mohamed Amine
Hossain, M. Shamim
论文数: 0引用数: 0
h-index: 0
机构:
King Saud Univ, Coll Comp & Informat Sci, Res Chair Pervas & Mobile Comp, Riyadh 12372, Saudi Arabia
King Saud Univ, Coll Comp & Informat Sci, Dept Software Engn, Riyadh 12372, Saudi ArabiaDeakin Univ, Sch Informat Technol, Geelong, Vic, Australia