Ransomware has been widely adopted by cyber extortionists and bad-actor governments, representing a possibly lethal risk to companies that fall victim. The latest versions of crypto-ransomware target all vulnerable resources, including backup, making even selective restoration a long and expensive process. Novel strains of crypto-ransomware such as Ryuk, Maze, Sodinokibi, Mailto (aka Netwalker), Phobos, Conti and Nephilim have made the headlines, displacing Locky, Spora, and Petya in notoriety, elaborateness, and destructiveness.
90% of crypto-ransomware penetrations are caused by innocuous-looking emails that have malicious links or attachments, and many are so-called "zero-day" strains that elude the defenses of legacy signature-matching antivirus (AV) tools. Although user education and up-front detection are critical to defend your network against ransomware attacks, best practices demand that you expect that some malware will eventually get through and that you put in place a strong backup solution that allows you to repair the damage rapidly with minimal damage.
Progent's ProSight Ransomware Preparedness Checkup is an ultra-affordable service built around a remote interview with a Progent security consultant experienced in ransomware protection and repair. During this interview Progent will work directly with your Aurora network management staff to gather critical data concerning your cybersecurity setup and backup environment. Progent will use this information to generate a Basic Security and Best Practices Report documenting how to apply best practices for configuring and administering your security and backup systems to block or recover from a ransomware assault.
Progent's Basic Security and Best Practices Assessment focuses on key areas related to crypto-ransomware prevention and restoration recovery. The report addresses:
Cybersecurity
About Ransomware
Ransomware is a form of malware that encrypts or deletes a victim's files so they cannot be used or are made publicly available. Ransomware sometimes locks the target's computer. To avoid the carnage, the victim is required to send a certain amount of money, usually in the form of a crypto currency like Bitcoin, within a brief period of time. It is not guaranteed that paying the extortion price will recover the damaged data or prevent its exposure to the public. Files can be encrypted or erased across a network based on the victim's write permissions, and you cannot solve the military-grade encryption technologies used on the hostage files. A typical ransomware delivery package is spoofed email, in which the user is lured into interacting with by a social engineering technique called spear phishing. This makes the email to appear to come from a trusted sender. Another common vulnerability is an improperly protected RDP port.
The ransomware variant CryptoLocker opened the new age of crypto-ransomware in 2013, and the damage caused by the many strains of ransomware is estimated at billions of dollars annually, roughly doubling every two years. Notorious examples are Locky, and NotPetya. Current headline threats like Ryuk, Sodinokibi and Cerber are more elaborate and have caused more damage than older strains. Even if your backup procedures enable you to recover your ransomed data, you can still be hurt by so-called exfiltration, where stolen data are exposed to the public (known as "doxxing"). Because additional variants of ransomware crop up every day, there is no guarantee that conventional signature-matching anti-virus tools will block a new attack. If threat does show up in an email, it is critical that your end users have been taught to be aware of social engineering tricks. Your last line of defense is a sound process for scheduling and retaining remote backups plus the deployment of reliable recovery platforms.
Contact Progent About the ProSight Crypto-Ransomware Preparedness Consultation in Aurora
For pricing details and to find out more about how Progent's ProSight Ransomware Readiness Report can enhance your protection against crypto-ransomware in Aurora, phone Progent at