Moxfive
Data Mining for Ransom Payment Advisory Case Study
Pages
1
Time to read
2 mins
Publication
Language
English
Pages
1
Time to read
2 mins
Publication
Language
English
This case study details the incident response approach taken by MOXFIVE, a cybersecurity company, in addressing a ransomware incident experienced by a global engineering client. The investigation revealed potential exfiltration of protected health information (PHI), intellectual property (IP), and personal identifiable information (PII). The client needed to assess the risk associated with a ransom payment while adhering to strict GDPR reporting deadlines. MOXFIVE utilized unique technology to analyze over 870,000 files, significantly reducing the time required for data review from approximately three months to one month. The agentless approach enabled data processing to begin within 24 hours, utilizing both standard and custom rulesets along with proprietary machine learning techniques. Ultimately, the analysis concluded that the data set did not contain sensitive information that would necessitate a ransom payment, allowing the client to avoid unnecessary costs. The results included increased confidence in the findings and a certified report that was easily digestible.