Ransomware Response Checklist: Prevent It, Slow It, Survive It

Ransomware Response Checklist: Prevent It, Slow It, Survive It

July 20, 2026 · 36 min

About this episode

This episode discusses a ransomware response checklist and strategies for preventing, containing, and recovering from ransomware attacks.

This episode is built around a ransomware response checklist — a three-part Reddit series by a security specialist who goes by snorkel42, breaking down exactly how to prevent, contain, and recover from a ransomware attack. This is an encore episode, and it's back not just because a lot of people downloaded it originally, but because so many of you listened all the way through — some of you more than once. That kind of engagement told us this one was worth bringing back. Curtis Preston and Prasanna Malaiyandi dig into snorkel42's series, which breaks the whole problem into three parts: how to stop ransomware from getting in, how to slow it down if it does, and what to actually do once you've been hit. Curtis and Prasanna go section by section — covering phishing and dropper prevention, application whitelisting, blocking lateral movement between servers, locking down RDP and SSH, honeypot files for catching intruders in the act, and building a real incident response plan before you ever need one. They also get into the messier parts most people don't talk about — what it's actually like to negotiate for a decryption key, why getting your data back isn't the end of the story, and…

People in this episode

Host: W. Curtis Preston

Guest: Prasanna Malaiyandi

Topics covered

Keywords

More episodes of The Backup Wrap-Up

Explore listener stats, chart rankings, contacts and more on the The Backup Wrap-Up podcast page.