Tips
- As discussed in Chapter 1, Getting Started with Incident Response, always be ready.
- Build proper detection and reporting capabilities.
- Education/awareness should be one of your core priorities.
- Always keep an eye on data breach reports from Verizon, Microsoft, and Kaspersky, as well other vendors. If you don't want to go through all those individual websites, you can check my blog, where all the aforementioned reports are kept under one blog post every year: https://www.ErdalOzkaya.com.
Figure 2.8: Threat reports under one link, updated regularly