IT-Defense 2025Malware and Ransomware

Malware and Ransomware – Background, Detection, Protection and Response

Instructor: Stefan Strobel, cirosec GmbH

Duration: 1 day - February 11, 2025

Malware and ransomware have become an omnipresent threat. An increasing number of companies is affected by such an attack; their data is held for ransom, and they are unable to work.

This training will provide knowledge of the attackers, their techniques and approaches, and useful security measures as well, so that you can protect yourself effectively, detect attacks early on and react properly.

Looking back at the most important incidents in recent years, we will explain the different mechanisms of infection, the steps to spread malware or ransomware and to bypass security measures, the backgrounds and attacker groups.

Following this, the trainer will present and evaluate strategies and techniques to prevent incidents, including the reasonable use of the tools supplied with Windows and of typical gateways. Modern trends like EDR, XDR and SASE and strategies such as zero trust are also considered.

In addition, concepts and techniques for an early detection of attacks and infections are explained, and the role CERTs, SOCs and SIEM solutions play in combination with the business models and outsourcing options relevant today are differentiated from one another.

Proper response to incidents, the preparations required for incident management and for restoring operation, and possibilities to analyze malware will be presented as well.

In this training, the participants will not only learn concrete technical and organizational measures but also how to approach the creation of malware protection concepts.

Target group:
Security managers, administrators, SOC members, CERTs

Basic IT knowledge; knowledge of attacking possibilities and hacking techniques is an advantage

Price: € 1,100

February 11, 2025

The Westin Leipzig Hotel
Gerberstrasse 15
04105 Leipzig
Tel.: +49 341 988-0