Case Study
DOMAIN SHADOWING, PHISHING & RANSOMWARE - Cybraics identifies phishing and ransomware from “legitimate” website
DOMAIN SHADOWING, PHISHING & RANSOMWARE - Cybraics identifies phishing and ransomware from “legitimate” website
INDUSTRY o Healthcare THE CHALLENGE o Signature-based web proxy servers are often outdated o Legitimate domains often get purchased by cyber squatters and used for malicious intent EXISTING SECURITY TOOLS o IDS/IPS, threat intelligence, SIEM, advanced threat detection RESULTS o Identified users visiting legitimate websites redirecting to phishing and ransomware sites WWW.CYBRAICS.COM | INFO@CYBRAICS.COM BUSINESS BACKGROUND The healthcare provider has a dedicated security operations team and has implemented several advanced security measures, including IDS/IPS, SIEM, threat intelligence, and a threat detection service that reviews security logs and hunts for threats. They have been proactive in implementing rules and policies based on blacklists to block access to known malicious site