Story image

Ransomware: A malware king, but business complacency might be lurking

25 Jul 2018

Ransomware has fast become one of the malware kings to the point where you don’t have to go far to find someone who isn’t aware of the dangers.

Wannacry and NotPetya helped to put ransomware in the spotlight. Barracuda Networks senior vice president of International, Chris Ross, wonders if IT teams are focusing too much on one particular type of threat.

In a blog posted today, he notes that of a survey of 630 organisations across the world, the number of businesses that believe ransomware is a concern has dropped from 91% to 84% in the last year.

Although that’s still a majority, fewer businesses have also fallen victim – from 48% to 30% in the last year.

This could suggest that businesses are better equipped, but they’re still willing to pay the ransom. The survey found that 19% of respondents have paid the ransom – a jump from 3% in 2017.

“Perhaps greater awareness of the issue has also led to greater awareness of the potential consequences of not reaching a swift resolution,” Ross says.

Although experts and law enforcement strongly recommend that businesses refuse to pay the ransom and fund criminal organisations, the increase in payments does pose a concern.

“We would urge businesses, regardless of how confident they are that they’ve got the right protection in place, to carry out regular backups meaning that they had another copy of the information and/or systems that were under attack,” Ross says.

Amongst EMEA respondents, 32% say that ransomware is the single most expensive threat to deal with, mostly due to the ransom demands to get data back.

The survey found that 74% of ransomware attacks entered via email; 18% via web traffic; and 18% via network traffic.

“This reiterates the importance of having a comprehensive plan to defend against phishing attacks. Phishing and social engineering tactics are specially designed to trick employees into clicking on links and opening malicious attachments in emails spoofed to appear as if sent from a reputable source. Ultimately, until organisations get better at educating their users, this tactic will continue to pay dividends for the black hats.”

He says that businesses should back up regularly and the 3-2-1 backup rule can help diffuse the severity of a ransomware attack.

What is the 3-2-1 rule?

3.  Make three copies of all of your data

2.  Store those copies in two different environments (cloud, on-premises etc)

1.  Keep one backup copy offsite so it can be kept safe from any environmental issues.

Survey: IT pros nostalgic over on-prem data centre visibility
There are significant security and monitoring challenges faced by IT staff responsible for managing public and private cloud deployments.
61% of CIOs believe employees leak data maliciously
Egress conducted a survey to examine the root causes of employee-driven data breaches, their frequency, and impact.
Opinion: BYOD can be secure with the right measures
Companies that embrace BYOD are giving employees more freedom to work remotely, resulting in increased productivity, cost savings, and talent retention.
Sonatype and HackerOne partner on open source vulnerability reporting
Without a standard for responsible disclosure, even those who want to disclose vulnerabilities responsibly can get frustrated with the process.
OutSystems and Boncode team up for better code analysis
The Boncode and OutSystems alliance aims to help organisations to build fast and feel comfortable that the work they're delivering is at peak quality levels.
Nuance biometrics fight back against fraud
Nuance Communications has crunched the numbers and discovered that it has prevented more than US$1 billion worth of fraud from being passed on to users of its Nuance Security Suite.
SIS announces a partnership with Platform 4
“We are looking forward to a strong future in the New Zealand security industry with this global giant as our strategic partner."
Attacks targeting Cisco Webex extension explode in popularity - WatchGuard
WatchGuard's Internet Security Report for Q4 2018 also finds growing use of a new sextortion phishing malware customised to individual victims.