Site icon LIFARS, a SecurityScorecard company

Ransomware Guide by US CISA and MS-ISAC

Ransomware Guide by US CISA and MS-ISAC

Ransomware Guide by US CISA and MS-ISAC

On September 30, 2020, The US Cybersecurity & Infrastructure Security Agency (US CISA) and the Multi-State Information Sharing & Analysis Center (MS-ISAC) announced the release of a joint guide on defending against and responding to ransomware threats.

LIFARS has observed a significant increase in the volume and impact of ransomware attacks over the last months. Therefore, we recommend that system administrators and security professionals thoroughly review this guide and deploy all applicable measures. Critical Infrastructure Organizations may be eligible for cyber-assistance from US-CISA.

The Ransomware Guide consists of two main parts. The Ransomware Prevention Best Practices and Ransomware Response Checklist.

Our Cyber Incident Response Team provides an elite response for your organization after a Ransomware or Cyber Extortion Incident.

Ransomware Prevention

US-CISA and MS-ISAC stress the urgency of being prepared for this type of threat by employing the following best practices. This will help to reduce the risk of ransomware and prepare for swift and efficient response. The guide lists current best practices, such as:

The guide also underlines that Internet-facing vulnerabilities and misconfigurations are among infection vectors of ransomware. To mitigate this, the guide recommends to:

Phishing is also one of the most used infection vectors. Best practices to reduce the risk of phishing are mainly:

Another possible infection vector can be a precursor malware, third parties and MSPs. Best practices are:

Other general cyber security best practices and hardening guidance include:

Ransomware Response

Second part of the Ransomware Guide by US CISA and MS-ISAC provides a ransomware response checklist that can be utilized should you became a victim of this threat.

Detection and Analysis
Containment and Eradication
Recovery and Post-Incident Activity

Resources

https://www.cisa.gov/publication/ransomware-guide

https://www.cisa. gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf

Exit mobile version