Ransomware and Backups: A Multi-Layered Defense Strategy
Amol Sarwate
BSidesSF 2024 · Day 1
Amol Sarwate, Cyber Resilience Leadership at Veritas Technologies, presented a critical talk at BSidesSF 2024 titled "Ransomware and Backups: A Multi-Layered Defense Strategy." The presentation underscored the paradigm shift in the primary purpose of data backups, moving from traditional disaster recovery and accidental deletion scenarios to a crucial defense mechanism against the pervasive threat of ransomware. Sarwate emphasized that a successful defense against modern ransomware attacks necessitates a **multi-layered defense strategy**, a concept he reiterated throughout his talk.
AI review
This talk provides a solid, multi-layered defense strategy for ransomware, focusing specifically on the often-overlooked role of backups. It systematically breaks down actions for backup administrators across prevention, dormant, and detonation phases, offering practical, actionable advice that goes beyond mere 'best practices' to include concrete technical steps like UBA, IOC scanning, and entropy analysis on backup data. While not groundbreaking in novel research, its comprehensive application of existing security principles to the backup domain makes it highly valuable.