Cracking the Chaos Ransomware Family



Alexander Andersson (Truesec, SE)

Alexander is a Principal Forensic Consultant at Truesec, where he focuses on incident response, threat intelligence, and security research. Alexander spends most of his time providing incident response to companies that have suffered from a cyber attack. He has responded to several hundred complex incidents, including nation state-backed attacks and ransomware against global organizations. Alexander also performs offensive and forensic research, and is responsible for developing Truesec’s forensic tooling.

In the last few years, many organizations have suffered from ransomware attacks. Recovering from a ransomware attack usually requires backups, but in some cases there are other ways. In this session, Alexander will tell the story behind his team’s latest research, which is now published by Europol on NoMoreRansom. The research breaks an entire family of ransomware variants and allows victims to restore encrypted data without obtaining the private keys.

[ad_2]

source

Exit mobile version