Xollam Ransomware in Azure Hosted SQL server

PR 130 Reputation points
2023-08-21T20:12:14.7566667+00:00

We got attacked by Xollam Ransomware to our SQL server which is hosted in Azure, what is the mitigation steps for it ?

SQL Server on Azure Virtual Machines
{count} votes

1 answer

Sort by: Most helpful
  1. Cristopher Campos 0 Reputation points
    2023-08-21T20:47:40.64+00:00

    Hello, the first thing I would do would be to disable any connection to the DB from 'Networking' and then go to 'Data management' and 'Backups'. With that use some point that has been done before the attack.

    https://learn.microsoft.com/en-us/azure/azure-sql/managed-instance/recovery-using-backups?view=azuresql&tabs=azure-portal

    Good luck!

    0 comments No comments