How To Stay Protected Against Ransomware
Businesses large and small are under threat from increasingly aggressive and brutal ransomware attacks. Loss of access to critical files, followed by a demand for payment can cause massive disruption to an organization’s productivity. But what does a typical attack look like? And what security solutions should be in place to give the best possible defense? This paper examines commonly used techniques to deliver ransomware, looks at why attacks are succeeding, and gives nine security recommendations to help you stay secure. It also highlights the critical security technologies that every IT setup should include.
Ransomware – a brief introduction
Ransomware is one of the most widespread and damaging threats that internet users face. Since the infamous CryptoLocker first appeared in 2013, we’ve seen a new era of file-encrypting ransomware variants delivered through spam messages and Exploit Kits, extorting money from home users and businesses alike.
The current wave of ransomware families can have their roots traced back to the early days of Fake AV, through “Locker” variants and finally to the file-encrypting variants that are prevalent today. Each distinct category of malware has shared a common goal – to extort money from victims through social engineering and outright intimidation. The demands for money have grown more forceful with each iteration.
And the financial consequences can be severe. The Hollywood Presbyterian Medical Center reportedly paid 40 Bitcoins ($17,000) to regain access to its files, while the Kansas Heart Hospital despite paying an undisclosed sum, was faced with a second ransom demand and
not given access to all of its files.
Stop Ransomware with Sophos Intercept X
The proven CryptoGuard capabilities in Sophos Intercept X block ransomware – including all Wanna variants – as soon as it starts trying to encrypt your files, returning data to its original state:
- Protects endpoints from ransomware attacks
- Automatically rolls back encrypted file changes with no loss of data
- Stops both local and remote file encryption
#QualTech360Care, #QualTech360Protection, #QualTech360CloudServices