Ransomware has become the weapon of choice for cyber extortionists and malicious governments, representing a possibly lethal risk to companies that are victimized. The latest variations of crypto-ransomware go after all vulnerable resources, including backup, making even selective recovery a challenging and expensive process. New strains of ransomware such as Ryuk, Maze, Sodinokibi, Netwalker, DopplePaymer, Snatch and Nephilim have emerged, replacing WannaCry, TeslaCrypt, and Petya in prominence, sophistication, and destructive impact.
Most ransomware breaches come from innocent-looking emails with dangerous links or file attachments, and a high percentage are so-called "zero-day" strains that can escape the defenses of legacy signature-matching antivirus filters. Although user training and up-front identification are critical to protect against ransomware attacks, leading practices dictate that you take for granted some malware will inevitably get through and that you put in place a solid backup mechanism that permits you to repair the damage quickly with little if any damage.
Progent's ProSight Ransomware Preparedness Assessment is an ultra-affordable service built around a remote interview with a Progent security expert experienced in ransomware protection and recovery. In the course of this assessment Progent will collaborate with your Boise network management staff to gather pertinent information about your cybersecurity posture and backup processes. Progent will utilize this data to create a Basic Security and Best Practices Assessment documenting how to follow leading practices for implementing and managing your cybersecurity and backup solution to block or clean up after a crypto-ransomware assault.
Progent's Basic Security and Best Practices Assessment focuses on key issues related to ransomware prevention and restoration recovery. The report addresses:
Cybersecurity
About Ransomware
Ransomware is a variety of malicious software that encrypts or steals a victim's files so they are unusable or are publicized. Crypto-ransomware sometimes locks the target's computer. To avoid the carnage, the victim is required to pay a specified amount of money, typically in the form of a crypto currency like Bitcoin, within a short period of time. It is not guaranteed that delivering the ransom will restore the damaged files or avoid its exposure to the public. Files can be encrypted or deleted across a network depending on the target's write permissions, and you cannot break the military-grade encryption technologies used on the compromised files. A common ransomware attack vector is spoofed email, in which the victim is tricked into interacting with by means of a social engineering technique called spear phishing. This makes the email to look as though it came from a trusted source. Another common vulnerability is a poorly protected Remote Desktop Protocol port.
The ransomware variant CryptoLocker ushered in the new age of ransomware in 2013, and the damage caused by the many strains of ransomware is estimated at billions of dollars per year, roughly doubling every other year. Famous examples include WannaCry, and NotPetya. Recent headline variants like Ryuk, DoppelPaymer and CryptoWall are more elaborate and have wreaked more havoc than older strains. Even if your backup/recovery processes enable you to recover your encrypted files, you can still be threatened by so-called exfiltration, where ransomed data are made public (known as "doxxing"). Because additional variants of ransomware are launched daily, there is no certainty that traditional signature-matching anti-virus tools will block the latest malware. If threat does appear in an email, it is important that your end users have been taught to identify phishing tricks. Your last line of defense is a sound process for performing and retaining offsite backups and the use of dependable restoration platforms.
Ask Progent About the ProSight Ransomware Vulnerability Consultation in Boise
For pricing information and to find out more about how Progent's ProSight Crypto-Ransomware Susceptibility Report can bolster your protection against ransomware in Boise, call Progent at