RiskSense, a cyber risk management firm, recently revealed the list of top vulnerabilities used in many ransomware attacks targeting public and private enterprises. RiskSense published its findings in the RiskSense Spotlight Report for Enterprise Ransomware.

The Risksense report included data from various sources, including the company, and ultimately identified 57 vulnerabilitiescommonly used by ransomware that are still being exploited today.
The research found that 65% of the attacks targeted high-value assets such as data servers, while about 35% of the attacks exploited older vulnerabilities. It is worth noting that the WannaCry are still being used very frequently today. The report showed that ransomware attacks in 2018 cost companies a whopping $8 billion.
Risksense, formerly known as CAaNES, was founded in 2006 by Srinivas Mukkamala. The company's mission is to help private and government organizations discover cyber risks and provide clear guidance to resolve them. The RiskSense technical team has collaborated with the Department of Defense and the United States Intelligence Community to apply artificial intelligence to cyberattacks as part of the CACTUS (Computational Analysis of Cyber Terrorism against USA) project.
As stated by the CEO Srinivas Mukkamala, the fact that hackers are exploiting older vulnerabilities and those that may have a low risk rating proves the fact that it is very easy for an organization to become the target of a ransomware attack.
