As ransomware attacks surge and tactics become increasingly sophisticated, the South Korean government is moving to strengthen its response framework. The Korea Internet & Security Agency (KISA) announced on the 12th that it will host the 5th Ransomware Resilience Conference on September 16 at the Peace & Park Convention center in Seoul’s Yongsan District. The event is designed to share the latest ransomware trends, response technologies, and policies, while discussing ways to bolster cyber resilience.
According to KISA data, reported ransomware incidents among businesses reached 145 cases in the first half of this year, a 76.8% increase from 82 cases during the same period last year. Attack methods have also evolved into double and triple extortion schemes, where attackers steal data and threaten to release it publicly unless a ransom is paid. Concerns are also mounting over the automation of attacks using artificial intelligence agents. As a result, the importance of “cyber resilience” — going beyond simple preemptive blocking to contain damage spread when incidents occur and rapidly restore critical operations — is coming to the forefront.
KISA is already producing tangible results through the Ransomware Full-Cycle Response Task Force, launched in March, and its collaboration with the Korean National Police Agency. By analyzing flaws in the encryption methods used by attackers, the agency developed recovery tools for ransomware variants, successfully restoring all encrypted data for two companies that reported incidents. These companies were able to recover their data without paying the combined 770 million won (approximately $539,000) in decryption fees demanded by the attackers. The cases demonstrate how prompt reporting by businesses and swift response by specialized agencies can lead to actual damage minimization.
Building on the task force’s activities, this event is designed to share the importance of a full-cycle response encompassing ransomware prevention, damage containment, business recovery, and reinfection prevention. Key program topics include the evolution of ransomware threats, full-cycle response strategies, AI-based ransomware analysis, and industry-specific case studies. The conference will focus particularly on real-world incident response and recovery strategies, presenting practical measures for minimizing damage and ensuring business continuity.
The event is free and open to anyone interested in ransomware response. Registration is available via an online link or the QR code in the event notice.
Lee Sang-jung, President of KISA, stated, “As ransomware threats become more sophisticated, building full-cycle response capabilities that cover both pre- and post-incident phases is more critical than ever.” He added, “We hope this event will serve as an opportunity to share the task force’s discussions and the response and recovery experiences from industry, allowing the public and private sectors to jointly develop an effective ransomware response framework.”
Click Here For The Original Source.
