Yulevo
Home > Endpoint Security > Application Case
Financial Industry
Endpoint Security
Case
Accurately identify
phishing attacks and
prevent ransomware
01 /
Project Background
Some end users were attacked by “Spear Phishing” during the attack and defense exercise of a financial enterprise. The attacker carefully designed and forged a “tax refund declaration” email to trick employees into clicking on malicious links and attachments implanted in advance, but actually lured those employees into entering their accounts and personal information and running special ransomware tools for offensive and defensive exercises in the back-end. If employees were attacked with this kind of method, it would not only cause data leakage, but would also lead to internal and external trust crisis and economic losses.
02 /
Demand Analysis
Common behaviors, such as malicious file execution, malicious script/software loading and fileless attack in phishing attacks, shall be accurately discovered.

The endpoint security protection shall have corresponding automatic handling capabilities to reduce the reliance on professional security personnel and operational pressure.

03 /
Product Effect

After Yulevo Sentry EDR was deployed, the security of office terminals was monitored in real time, malicious links and attachments in phishing emails were identified accurately, malicious file execution was prevented and malicious process startup behavior was blocked through dynamic execution detection and killing technology.

The customized IOA and IOC capabilities were configured, providing more flexible threat detection and outreach monitoring, and isolating threats in a timely manner.