题名: |
Hands On Cybersecurity Studies: Multi Perspective Analysis Of The WannaCry Ransomware. |
作者: |
Acosta, J. C.; De la Torre, A. E.; Salamah, S. |
关键词: |
Cybersecurity, Malware, Cyberattacks, Intrusion detection, Communications protocols, Network protocols, Forensics, Hands-on cybersecurity, Cyberrig, Wannacry, Ransomware |
摘要: |
When the WannaCry ransomware was first launched in May 2007, it led to devastating impacts due to the continued use of unpatched and vulnerable software. In this technical report, we describe one of the earlier versions of the ransomware and then provide a series of steps, in the form of an educational exercise, to set up and analyze the malware. We include a multi-perspective analysis of the malware using system observation, network packet analysis, and reverse engineering. In the final steps of the exercise, we describe near-term fixes to stop the malware spread (by implementing a kill switch, which is uncovered through the exercise) and also longer-term mitigations and best practices to protect against similar malware in the future. |
报告类型: |
科技报告 |