Ransoming Critical Infrastructure: Ransomware Attack on Colonial Pipeline - SANS Emergency Webcast

  Рет қаралды 11,525

SANS Institute

SANS Institute

Күн бұрын

During the presentation, Tim Conway highlighted that over 30 similar outages on the Colonial Pipeline have occurred over the past 20 years due to storms, ruptures, or mechanical impacts. The current pipeline disruption is the first cyber-related shutdown that has occurred. Tim continued, “None of those 30 events bubbled up to a national level response at the scale we are currently seeing with the current cyber attack.”
“If you are an organization, don’t point to your IT incident response plan and assume it’s good… look towards OT specific IR plans.” - Tim Conway
As ransomware attacks continue to impact organizations around the world, and with recent events like the colonial pipeline impacts, we are seeing more and more attacks that have an adjacent or direct impact on Operational Technology environments. As ransomware attacks continue to rise, how should companies think about the cyber to physical impacts to their OT environments? Organizations responsible for operating and maintaining critical infrastructure environments need to consider the steps they should be pursuing right now before a potential attack occurs, establish and implement procedures on how or if they should operate their systems during an attack, and what actions need to be taken after an attack.
Tim Conway & Jeff Shearer will discuss how organizations responsible for operating & maintaining critical infrastructure environments need to consider the following:
Steps to pursue before a potential attack
Procedures to implement during an attack
Actions necessary to take after an attack
SANS is the most trusted and by far the largest source for information security training and security certification in the world. It also develops, maintains, and makes available at no cost, the largest collection of research documents about various aspects of information security, and it operates the Internet's early warning system - the Internet Storm Center.

Пікірлер: 7
@ZachtimusPrime
@ZachtimusPrime 3 жыл бұрын
Another comprehensive, balanced review of the situation. Thank you all.
@rikherlaar
@rikherlaar 2 жыл бұрын
very well explained ...thx
@stevenneuberger4323
@stevenneuberger4323 3 жыл бұрын
This did show how the IT part impacts the OT part, but there little specific information here
@rikherlaar
@rikherlaar 2 жыл бұрын
it is a vast and complex landscape and OT/ICS environments are snowflakes - perhaps it could be useful to have a look at presentations from the likes of Claroty and Nozomi....?
@tonyd6853
@tonyd6853 3 жыл бұрын
youtubers have better mics than this 40 year "computer" guy.
@user-ub8hj2ch7n
@user-ub8hj2ch7n 3 жыл бұрын
False flag operation? LMAO
Is Skynet watching you already?
1:04:00
David Bombal
Рет қаралды 1,1 МЛН
小丑教训坏蛋 #小丑 #天使 #shorts
00:49
好人小丑
Рет қаралды 54 МЛН
Quilt Challenge, No Skills, Just Luck#Funnyfamily #Partygames #Funny
00:32
Family Games Media
Рет қаралды 55 МЛН
Что-что Мурсдей говорит? 💭 #симбочка #симба #мурсдей
00:19
What if all the world's biggest problems have the same solution?
24:52
Think Fast, Talk Smart: Communication Techniques
58:20
Stanford Graduate School of Business
Рет қаралды 44 МЛН
The Cycle of Cyber Threat Intelligence
1:00:27
SANS Digital Forensics and Incident Response
Рет қаралды 120 М.
Colonial Pipeline Attack Explained - Based on Common Ransomware Tactics - #CISOlife
7:39
SideChannel - vCISO & Cybersecurity Services
Рет қаралды 21 М.
The Five ICS Cybersecurity Critical Controls Webcast
1:05:41
SANS ICS Security
Рет қаралды 7 М.
A “Worst Nightmare” Attack - The Story of The SolarWinds Hack
33:10
Nordic IT Security
Рет қаралды 2,4 М.
I Want to Work in Cybersecurity...Whatever That Means!
54:11
SANS Institute
Рет қаралды 11 М.
A Conscious Universe? - Dr Rupert Sheldrake
1:22:44
The Weekend University
Рет қаралды 1,5 МЛН