Link to home
Start Free TrialLog in
Avatar of William Champion
William ChampionFlag for United States of America

asked on

What is the Best Crypto protection?

Crypto protection. Best solutions? Tape, disk based backup, on site, off site, vendor specific, and reasoning behind your answer.
SOLUTION
Avatar of John
John
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Avatar of Dr. Klahn
Dr. Klahn

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Our tapes are all protected like that
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
AV does not always catch email, so Spam Filtering is as important as good Anti Virus
Avatar of Member_2_231077
Member_2_231077

Bitcoin has gone up 10% in a week, depends what you mean by "Crypto protection"
Avatar of William Champion

ASKER

I laughed when bitcoin appeared on the scene...

Anyway maybe I should have phrased my question better.

We do backups and phishing tests etc.

If we are hit with a ransomware scenario and our only option is to pay up or do full bare metal recoveries, what would want to do this recovery from?

Off site tape  or offsite disk.

I am thinking tape may be the best option but also reading that Data Domain has built in protection (IE retention locking and file ext blacklisting)
Any views or experience?
TY
Do either tape backups or Azure backups. Don't depend on onsite protections only
You can read crypto protection as against (a)crypto ransomware and (b)cryptojacking miner.

(a)there is good practice shared. One instance is using the 3-2-1-1 Rule. Short of it is backup is the most assured means and importantly verified for working backup data
https://www.veeam.com/blog/tips-to-prevent-ransomware-protect-backup-storage.html

(b)not as straightforward as resources at system is held up persistently, crypto mining traffic can be very difficult to distinguish from other types of communications. So needed some baseline of the norm to differentiate between anomalies.
https://www.csoonline.com/article/3267572/encryption/how-to-detect-and-prevent-crypto-mining-malware.amp.html

For both user education is paramount for vigilance
Which is faster for you?  Takes or disk?  What kind of data are you recovering?  Do you have some onsite, disconnected backup?
Backups are the best way to take control of your defense against threats, but they need protecting as well. Here are few recommendations:

Be careful using network file servers and online sharing services.
Get visibility into your backup process.
Regularly test your recovery process.
Also you must make sure your backup has versioning.
Get in detailed here.

What can you do if you’ve become the victim of a ransomware attack?
https://www.lepide.com/blog/what-can-you-do-if-youve-become-the-victim-of-a-ransomware-attack/
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial