How can SOC analysts stop ransomware from spreading with Network File Sharing?

So to make things clear, I heard a real story from a Network Engineer who was facing ransomware in their Network File Sharing system, and I came up with a question. What tools can SOC analysts use in addition to SIEM/SOAR to see through the logs or predict the attack? If the ransomware already passed the firewall and no threat was registered.

submitted by /u/rubenamizyan
[link] [comments]

from hacking: security in practice https://ift.tt/3C21W2b

Comments