Cyber Security Month Tips: How to manage your business through a ransomware attack
If you look at the search interest for โransomware attackโ, it has steadily increased over the past year. This is understandable given there was a 15 per cent increase in the number of ransomware reports made last year, according to the latest ACSC Annual Cyber Threat Report writes Margrith Appleby, General Manager of Kaspersky Australia & New Zealand.
Cybercriminals follow the money and have capitalised on the recent changing business environment. Their operations are also getting smarter and doing more damage – more cybercrime reports received last year were classified as a โsubstantial incidentsโ compared to the previous year.
This is exactly the case with ransomware.
Itโs no longer simply malicious software that was circulated en masse to encrypt data and demand money from a victim. Now itโs an entire red teaming operation. Dubbed โransomware 2.0โ, these targeted attacks rely not only on malicious software but a whole variety of techniques deployed to get into a business environment.
A few years ago, the advice around ransomware attacks was simple: use a good antivirus solution and backup your data. If the ransomware slipped past the antivirus, you could just restore from backup.
With ransomware 2.0, once the criminals are in they will not only encrypt but also exfiltrate a businessโs data โ and in this situation, there’s no chance to avoid any damage. Once stolen, the data is out there.
To pay or not to pay
Ransomware gangs will often demand money in exchange for not leaking data, however, there is no guarantee they will actually delete the data, or send a decryption key after the ransom is paid.
In June we saw a Ransomware Payments Bill introduced to Parliament that suggested a mandatory requirement for public and private entities to disclose their ransomware payments. This is up for debate, but at Kaspersky weโve been firm believers in not paying for ransomware, as this only fuels the fire.
Here are a few reasons why not to pay a ransomware demand:
Steps to take if you fall victim
So what do you do, if your business is a victim of a ransomware attack? Here are few steps to take upon discovery:
Once you have time to reflect, be sure to develop a data breach recovery strategy for future. Assess how your organisation would detect a breach, or how you can test the detection capabilities you have.
Lastly, educate employees on the importance of regularly updating software, using strong passwords and being aware of malicious emails. This can reduce the risk of becoming a cyberattack victim by 60% according to our latest investigation. This investment in building a cyber-aware culture can significantly reduce monetary and reputational damage for your business long-term, and help your employees work together more effectively in the face of common cybercriminals.
Want more? Get the latest coronavirus news and updates straight to your inbox!ย Follow Kochieโs Business Builders onย Facebook,ย Twitter,ย Instagram, andย LinkedIn.
Comments