Ransomware has become the weapon of choice for cybercriminals and malicious states, representing a possibly lethal risk to businesses that are victimized. The latest variations of ransomware target everything, including online backup, making even partial restoration a challenging and costly exercise. Novel versions of crypto-ransomware like Ryuk, Maze, Sodinokibi, Netwalker, DopplePaymer, LockBit and Nephilim have made the headlines, displacing WannaCry, Cerber, and CryptoWall in notoriety, sophistication, and destructive impact.
90% of crypto-ransomware breaches are the result of innocuous-looking emails with malicious links or attachments, and a high percentage are "zero-day" variants that elude detection by traditional signature-matching antivirus tools. While user education and frontline detection are critical to defend against ransomware attacks, leading practices dictate that you assume some malware will eventually get through and that you deploy a solid backup mechanism that permits you to repair the damage rapidly with little if any damage.
Progent's ProSight Ransomware Preparedness Checkup is a low-cost service centered around a remote discussion with a Progent security consultant experienced in ransomware defense and recovery. In the course of this assessment Progent will work directly with your Centennial IT managers to gather critical information concerning your cybersecurity setup and backup environment. Progent will use this information to create a Basic Security and Best Practices Assessment detailing how to apply best practices for implementing and administering your security and backup solution to prevent or recover from a ransomware assault.
Progent's Basic Security and Best Practices Assessment focuses on vital areas related to ransomware prevention and restoration recovery. The review addresses:
Security
About Ransomware
Ransomware is a type of malicious software that encrypts or steals files so they are unusable or are made publicly available. Crypto-ransomware sometimes locks the victim's computer. To avoid the damage, the target is asked to send a specified ransom, typically via a crypto currency like Bitcoin, within a short time window. There is no guarantee that delivering the ransom will recover the lost files or avoid its publication. Files can be encrypted or erased throughout a network based on the victim's write permissions, and you cannot break the strong encryption algorithms used on the compromised files. A typical ransomware delivery package is tainted email, whereby the user is tricked into responding to by a social engineering exploit called spear phishing. This causes the email message to appear to come from a trusted source. Another common vulnerability is a poorly protected Remote Desktop Protocol port.
The ransomware variant CryptoLocker ushered in the new age of crypto-ransomware in 2013, and the monetary losses caused by different versions of ransomware is estimated at billions of dollars annually, roughly doubling every two years. Notorious attacks are WannaCry, and Petya. Recent high-profile variants like Ryuk, Maze and CryptoWall are more complex and have caused more havoc than earlier strains. Even if your backup processes allow you to restore your ransomed data, you can still be threatened by so-called exfiltration, where ransomed documents are made public. Because new variants of ransomware are launched daily, there is no guarantee that traditional signature-matching anti-virus tools will block a new malware. If an attack does appear in an email, it is critical that your users have learned to be aware of social engineering tricks. Your last line of defense is a solid process for scheduling and keeping remote backups plus the deployment of dependable restoration tools.
Contact Progent About the ProSight Ransomware Preparedness Evaluation in Centennial
For pricing information and to find out more about how Progent's ProSight Crypto-Ransomware Susceptibility Report can bolster your defense against ransomware in Centennial, phone Progent at