Overview
Syllabus
Introduction
Introductions
What is ransomware
Types of ransomware
Ransomware in general
Ransomware is not new
New ways to leverage ransomware
Difference between symmetric and asymmetric
Ransomware is a growing threat
Ransomware is a marketing threat
CryptoLocker appears
Theyre getting the data back
How we met
Working group
David Diggin
Mafia Rules
ASDF
OPSEC
Recovery
Backups
Updated Directory
Domain Generation
Reverse DGA
No Domains Registered
Community Response
Working Groups
Industry Law Enforcement
FBI
CryptoLocker
Gameover Zeus
Single Flux Networking
Following the Money
Targeted Businesses
Money Packs
The good goes takedown
DNS tools
Passive DNS
Bias
Bitcoin Value
Politeness
sufficiency
we are sending a message
a lot more events
there comes a time
theres nothing wrong with that
this was a very lucrative cash crop
what do you do next
they tended to do trouble
Flashback
Algorithm
sinkholes
no physical evidence
law enforcement
impact
working with industry
ransomware examples
ransomware techniques
resiliency
Taught by
Black Hat