Ransomware and Cyber Extortion: Response and Prevention
暫譯: 勒索病毒與網路敲詐:應對與預防
Davidoff, Sherri, Durrin, Matt, Sprenger, Karen
- 出版商: Addison Wesley
- 出版日期: 2022-10-31
- 售價: $1,440
- 貴賓價: 9.5 折 $1,368
- 語言: 英文
- 頁數: 352
- 裝訂: Quality Paper - also called trade paper
- ISBN: 0137450338
- ISBN-13: 9780137450336
-
相關分類:
資訊安全、駭客 Hack
立即出貨 (庫存 < 3)
相關主題
商品描述
Protect Your Organization from Devastating Ransomware and Cyber Extortion Attacks
Ransomware and other cyber extortion crimes have reached epidemic proportions. The secrecy surrounding them has left many organizations unprepared to respond. Your actions in the minutes, hours, days, and months after an attack may determine whether you'll ever recover.
You must be ready. With this book, you will be.
Ransomware and Cyber Extortion is the ultimate practical guide to surviving ransomware, exposure extortion, denial-of-service, and other forms of cyber extortion. Drawing heavily on their own unpublished case library, cyber security experts Sherri Davidoff, Matt Durrin, and Karen Sprenger guide you through responding faster, minimizing damage, investigating more effectively, expediting recovery, and preventing it from happening in the first place. Proven checklists help your security teams act swiftly and effectively together, throughout the entire lifecycle--whatever the attack and whatever the source.
- Understand different forms of cyber extortion and how they evolved
- Quickly recognize indicators of compromise
- Minimize losses with faster triage and containment
- Identify threats, scope attacks, and locate patient zero
- Initiate and manage a ransom negotiation--and avoid costly mistakes
- Decide whether to pay, how to perform due diligence, and understand risks
- Know how to pay a ransom demand while avoiding common pitfalls
- Reduce risks of data loss and reinfection
- Build a stronger, holistic cybersecurity program that reduces your risk of getting hacked
This guide offers immediate value to everyone involved in prevention, response, planning, or policy: CIOs, CISOs, incident responders, investigators, negotiators, executives, legislators, regulators, law enforcement professionals, and others.
Register your book for convenient access to downloads, updates, and/or corrections as they become available. See inside book for details.
商品描述(中文翻譯)
保護您的組織免受毀滅性勒索病毒和網路敲詐攻擊
勒索病毒和其他網路敲詐犯罪已達到流行程度。這些事件的秘密性使許多組織無法做好應對準備。您在攻擊後的幾分鐘、幾個小時、幾天和幾個月內的行動,可能決定您是否能夠恢復。
您必須做好準備。透過這本書,您將會做好準備。
勒索病毒與網路敲詐是生存於勒索病毒、曝光敲詐、拒絕服務攻擊及其他形式網路敲詐的終極實用指南。網路安全專家 Sherri Davidoff、Matt Durrin 和 Karen Sprenger 深入利用他們未公開的案例庫,指導您更快地應對、最小化損害、更有效地調查、加速恢復,並防止事件的發生。經過驗證的檢查清單幫助您的安全團隊在整個生命週期中迅速而有效地協作,無論攻擊的類型和來源為何。
- 了解不同形式的網路敲詐及其演變
- 快速識別妥協指標
- 透過更快的分流和控制來最小化損失
- 識別威脅、範圍攻擊並找到零號病人
- 啟動和管理勒索談判——並避免代價高昂的錯誤
- 決定是否支付、如何進行盡職調查並理解風險
- 了解如何支付勒索要求,同時避免常見陷阱
- 減少數據丟失和再感染的風險
- 建立更強大、全面的網路安全計劃,以降低被駭的風險
本指南為所有參與預防、應對、規劃或政策的人員提供即時價值:CIO、CISO、事件響應者、調查員、談判者、高管、立法者、監管者、執法專業人員等。
註冊您的書籍以便方便訪問下載、更新和/或更正,隨著它們的可用性而提供。詳情請參見書內。
作者簡介
Sherri Davidoff, CEO of LMG Security and author of Data Breaches, has been called a security badass by the New York Times. An instructor at the renowned Black Hat cybersecurity trainings, she is a GIAC-certified forensic analyst (GCFA) and penetration tester (GPEN). She holds a degree in computer science and electrical engineering from MIT.
Matt Durrin, the Director of Training and Research at LMG Security, is a popular speaker at national conferences and training venues. His malware research has been featured on the NBC Nightly News.
Karen Sprenger, LMG Security's COO and chief ransomware negotiator, is a noted industry expert, speaker, trainer, and course developer with 25+ years of security/IT experience. She is a GIAC-certified forensic examiner (GCFE) and Certified Information Systems Security Professional (CISSP).
作者簡介(中文翻譯)
Sherri Davidoff,LMG Security 的執行長及《Data Breaches》的作者,被《New York Times》稱為安全界的壯漢。她是著名的 Black Hat 網路安全訓練的講師,並且是 GIAC 認證的法證分析師 (GCFA) 和滲透測試員 (GPEN)。她擁有麻省理工學院的計算機科學和電機工程學位。
Matt Durrin,LMG Security 的訓練與研究總監,是全國會議和訓練場所的熱門演講者。他的惡意軟體研究曾在 NBC Nightly News 上報導。
Karen Sprenger,LMG Security 的 COO 及首席勒索軟體談判專家,是一位知名的行業專家、演講者、訓練師和課程開發者,擁有超過 25 年的安全/IT 經驗。她是 GIAC 認證的法證檢查員 (GCFE) 和認證資訊系統安全專業人員 (CISSP)。