Главная
Study mode:
on
1
Introduction
2
Ransomware business case
3
How to disrupt ransomware
4
Simulation and feedback
5
Agent presence
6
Agent communication
7
Agent comms
8
Ransomware Toolkit
9
Implementation
10
Configuration
11
Racketeer Overview
12
Policies
13
Starting the server
14
Policy exec
15
Encryption
16
Deep dive into policy
17
Defensive summary
18
Outro
Description:
Explore a comprehensive conference talk on prototyping ransomware operations using Racketeer, an offensive agent and C2 base designed for red and purple teams. Dive into the design considerations and implementation of a controlled ransomware implant that emulates threat actor tactics. Learn about flexible ways to prototype remote ransomware campaign components, including key and data management, and communication techniques. Discover practical safeguards for lights-out operations, strict data control, target containment policies, and operational security measures. Gain insights into disrupting ransomware, simulation techniques, agent presence and communication, and defensive strategies. Presented by Dimitry Snezhkov, an Associate Director specializing in adversarial simulation and offensive security testing, this 46-minute talk from Ekoparty 2021's Red Zone Space offers valuable knowledge for cybersecurity professionals seeking to enhance their understanding of ransomware operations and defense. Read more

Racketeer - Prototyping Ransomware Operations - Dimitry Snezhkov - Ekoparty 2021 - Red Zone Space

Ekoparty Security Conference
Add to list
0:00 / 0:00