Thursday, May 18, 2017

An In-Depth Technical Analysis of WannaCry Ransomware from LogRhythm Labs

LogRhythm
 
An In-Depth Technical Analysis of WannaCry Ransomware
From the LogRhythm Labs Threat Research Team
 
 
600x216-ransomware.jpg
 
 
Ransomware that has been publicly named "WannaCry," "WCry," or "WanaCrypt0r" has spread to at least 74 countries as of Friday, May 12th. The LogRhythm Labs Threat Research team has provided an in-depth blog that includes:
  • Detailed technical analysis of the ransomware
  • Recommendations for mitigation
  • LogRhythm signatures
  • Network Monitor query rules (using a free tool)
  • Indicators of compromise
Read the full post for actionable intelligence on WannaCry ransomware. For a more high-level overview that covers the background of WannaCry ransomware, click here.
 
 
 
 
 
 
 

No comments: