Same Defense as Ransomware
Bambenek said ultimately the protective measures are the same for ransomware and pseudo ransomware.
“Organizations need to have a strong disaster recovery plan that is effectively tested,” he said. “Unlike more complicated forms of attacks, wipers are fairly technically simple, so organizations need to have segmented networks, highly controlled administrator permissions, and to have strong controls on Powershell (requiring signed scripts, for instance) in the environment to prevent rapid destruction.”