Respond Ransomware

Respond to a ransomware incident following PICERL methodology. Use when ransomware is detected or suspected. Orchestrates identification, containment, eradication, and recovery phases. Requires CASE_ID and initial indicators.

dandye Updated

File contents

dandye/ai-runbooks/tree/main/skills/respond-ransomware commit eeb8c4a2ae

Frequently asked questions

npx skillmds@latest add dandye/respond-ransomware