BigHugger
sk Skill · mukul975

investigating-ransomware-attack-artifacts

Forensically preserve memory and disk, collect ransom notes and encrypted file samples, and identify the ransomware variant using tools such as ID Ransomware, Volatility, and Chainsaw/Hayabusa to determine the initial access vector and recovery options. Use immediately after discovering ransomware encryption, when scoping the incident forensically, or when documenting evidence for law enforcement and insurance…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
evidence-collectionbashencryption-recoverymalware-analysisincident-responseransomwarePythonforensics
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python