HomeSecurityWhat should we do to deal with ransomware?

What should we do to deal with ransomware?

Ransomware is one of the most significant cybersecurity issues we face today, as cybercriminals infiltrate businesses, schools, hospitals, critical infrastructure, and more in order to encrypt files and demand a ransom payment for the decryption key.

See also: Cisco confirms Yanluowang ransomware leaked its data

Hive ransomware: Uses new trick to hide payload

Despite warnings not to, many victims pay these ransoms, believing it is the quickest way to restore their network, especially if hackers threaten to leak stolen data. But all this means is that the cycle of attacks continues, with ransomware groups using ill-gotten gains to fund more ambitious attacks.

See also: Intermittent encryption: The new trend in ransomware attacks

Beyond that, there's another problem. Many ransomware incidents are simply kept under wraps, so it's hard to get a good picture of what's really going on in the world. Even when companies admit to a cyberattack, they're often vague about what happened and seem more reluctant to describe any incident as a ransomware attack.

A “serious cyberattack” and a “cyberincident that caused some disruption” – these are just some of the statements made by victims of ransomware attacks to describe what happened.

Some victims speak more openly about what happened, but only months or years after the incident – ​​and some never publicly admit that it was ransomware.

It's frustrating not being able to get a complete and clear picture of what's going on – even if reading between the lines of vague statements about a "complex cyber incident "that has "disrupted services", it's clear that this is a ransomware attack.

And the lack of transparency about ransomware attacks and other cyber incidents is detrimental to everyone.

The common sentiment among those cybersecurity leaders who choose to speak out about organizations affected by ransomware is that they want to prevent others from becoming the next victim, detailing the lessons they learned about strengthening cyber defenses to prevent future incidents.

See also: Lampion malware: WeTransfer misused in phishing attacks

What should we do to deal with ransomware?

Lessons like timely patching, providing users across your network with multi-factor authentication (MFA), and regularly updating backupscan help stop ransomware attacks. And the best time to take action is before an attack occurs.

Ransomware is not just a technological problem: after all, these cyberattacks affect everyone, and we are often left in the dark about why the services we rely on are not working.

In the fight against ransomware, it will be better for everyone if there is greater transparency about attacks.

Information source: bleepingcomputer.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Teo Ehc
Teo Ehchttps://www.secnews.gr
Be the limited edition.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS