Maersk, Me and NotPetya
gvnshtn.com
Maersk, Me and NotPetya
1–10 of 59 posts
Re: Maersk, Me and NotPetya
#2Great article and good bottom line advice.
Re: Maersk, Me and NotPetya
#3Very impressive write-up.
Re: Maersk, Me and NotPetya
#4Not sure if advises are actionable. Especially in the light that decisions ultimately are made by 'tops' and consulting companies.
Re: Maersk, Me and NotPetya
#5Not sure if advises are actionable. Especially in the light that decisions ultimately are made by 'tops' and consulting companies.
well the PAW is nothing than admins at least putting their browsing into a VM (which costs round about 0€...). And seriously I never thought that doing else was a thing. But hey, apparently I am too far removed from sysadmins...
Re: Maersk, Me and NotPetya
#6I can fully recommend reading the book "Sandworm" by Andy Greenberg. It explains NotPetya and all of the sorrounding investigation.
Re: Maersk, Me and NotPetya
#7In a geographical note, if you can get a chance to work/contract in Denmark, absolutely do so! I have been working in Copenhagen in 2014-2015 and I only have great memories of the country and the capital.
Re: Maersk, Me and NotPetya
#8I can fully recommend reading the book "Sandworm" by Andy Greenberg. It explains NotPetya and all of the sorrounding investigation.
In the same genre, I recommend "Countdown to Zero Day" which looks at Stuxnet and Flame and the events surrounding their creation, deployment and aftermath.
Re: Maersk, Me and NotPetya
#9Not sure if advises are actionable. Especially in the light that decisions ultimately are made by 'tops' and consulting companies.
By that logic, nothing is actionable because someone else might prevent it happening. It being derived from the Maersk incident is probably among the better arguments for pushing it against that sort of resistance, since that is something business higher-ups have have heard of and are scared by.
Re: Maersk, Me and NotPetya
#10I can fully recommend reading the book "Sandworm" by Andy Greenberg. It explains NotPetya and all of the sorrounding investigation.
In the same genre, I recommend "Countdown to Zero Day" which looks at Stuxnet and Flame and the events surrounding their creation, deployment and aftermath.
I'm a big fan of Countdown to Zero Day. I've recommended it to a lot of non-techie friends as it's a great blend of pacey thriller with just enough information to help a non-techie understand some basic elements of a sophisticated malware campaign.