According to a new report from Netskope Threat Labs, ransomware attacks are hitting the financial sector harder than ever!

The research showed that financial services remains “one of the sectors most attacked by ransomware groups.” In most cases, hackers use trojans to compromise systems and then deploy ransomware.
According to Netskope, the ransomware groups that primarily target this industry are Cl0p and LockBit. In recent months, the Cl0p has attracted attention after exploiting a vulnerability in the MOVEit and breaching hundreds of organizations around the world.
Some researchers claim that the group's attacks and data affected nearly a thousand organizations and more than 60 million people.
See also: Insomniac Games notifies those affected by Rhysida ransomware
The LockBit ransomware gang, on the other hand, is one of the most dangerous gangs, affecting many high-profile organizations. Despite the recent takedown of dozens of its servers, the group has managed to come back with new infrastructure. The new data leak website is already showing new victims.
Netskope researchers also found that Microsoft One Drive and Sharepoint, as well as GitHub, are frequently used by hackers to spread malware.
SharePoint has proven more popular in the financial sector than in other industries, which according to Netskope, may be due to the popularity of Microsoft Teams , which uses SharePoint for file.
According to Paolo Passeri, Cyber Intelligence Principal at Netskope, the financial sector remains one of the sectors most attacked by ransomware groups, which usually exploit vulnerabilities .
See also: How are cryptocurrencies connected to a ransomware attack?

Protection measures to prevent ransomware attacks
One of the most important protection measures is staff education. Individuals must be aware of the dangers of ransomware and the ways it can enter a system, such as malicious emails and downloads.
Creating and regularly updating data backups is another crucial measure. This ensures that even if data is encrypted by ransomware, it can be recovered without having to pay a ransom.
Using up-to-date security software , such as antivirus programs and firewalls, is also crucial. These tools can help detect and prevent ransomware attacks before they can cause damage.
See also: Ransomware: New attacks after ransom payment
☁️ Keep safe copies with Proton Drive
Encrypted cloud storage from Proton — protect your files from ransomware, corruption, and data loss with end-to-end encryption.
- ✔ End-to-end encrypted files & backups
- ✔ Version history — recover files after ransomware
- ✔ Free space — sync across all devices
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
Implementing the principle of least privilege (PoLP) can be very helpful. This means that individuals only have the access they need to perform their duties, thus limiting the opportunity for ransomware to spread.
Finally, don't forget to regularly update software and applications to fix any vulnerabilities that a hacker could use to compromise systems.
Source: www.techradar.com
