Ransomware has been weaponized by the major cyber-crime organizations and malicious states, posing a possibly lethal threat to companies that are breached. The latest strains of ransomware go after all vulnerable resources, including online backup, making even partial recovery a challenging and expensive exercise. New strains of ransomware such as Ryuk, Maze, Sodinokibi, Mailto (aka Netwalker), DopplePaymer, Conti and Nephilim have made the headlines, replacing WannaCry, Spora, and CryptoWall in prominence, sophistication, and destructiveness.
90% of ransomware penetrations are caused by innocuous-looking emails that include dangerous links or file attachments, and a high percentage are so-called "zero-day" variants that can escape detection by legacy signature-based antivirus (AV) tools. While user education and up-front identification are critical to protect your network against ransomware attacks, leading practices dictate that you expect that some attacks will eventually succeed and that you deploy a solid backup solution that permits you to restore files and services quickly with little if any losses.
Progent's ProSight Ransomware Preparedness Report is a low-cost service built around a remote interview with a Progent security consultant experienced in ransomware protection and recovery. During this interview Progent will work directly with your Dallas network management staff to collect pertinent data concerning your security posture and backup processes. Progent will use this data to generate a Basic Security and Best Practices Assessment detailing how to adhere to best practices for implementing and managing your security and backup solution to prevent or recover from a crypto-ransomware assault.
Progent's Basic Security and Best Practices Report focuses on vital issues related to crypto-ransomware defense and restoration recovery. The report covers:
Cybersecurity
About Ransomware
Ransomware is a variety of malicious software that encrypts or deletes a victim's files so they are unusable or are made publicly available. Crypto-ransomware often locks the victim's computer. To prevent the carnage, the victim is required to pay a certain ransom, typically in the form of a crypto currency such as Bitcoin, within a short time window. There is no guarantee that delivering the ransom will recover the damaged files or prevent its exposure to the public. Files can be altered or erased throughout a network based on the victim's write permissions, and you cannot break the military-grade encryption technologies used on the hostage files. A typical ransomware attack vector is spoofed email, in which the target is tricked into responding to by a social engineering technique known as spear phishing. This makes the email message to appear to come from a trusted source. Another common vulnerability is an improperly secured Remote Desktop Protocol port.
The ransomware variant CryptoLocker opened the modern era of crypto-ransomware in 2013, and the damage attributed to by the many versions of ransomware is said to be billions of dollars per year, more than doubling every other year. Notorious examples are WannaCry, and Petya. Current headline variants like Ryuk, Sodinokibi and Cerber are more elaborate and have caused more damage than older strains. Even if your backup procedures enable you to recover your encrypted files, you can still be hurt by so-called exfiltration, where stolen documents are exposed to the public (known as "doxxing"). Because new variants of ransomware crop up daily, there is no guarantee that traditional signature-matching anti-virus tools will block the latest attack. If threat does show up in an email, it is important that your users have been taught to identify social engineering techniques. Your last line of defense is a solid scheme for performing and retaining offsite backups plus the deployment of reliable recovery platforms.
Ask Progent About the ProSight Ransomware Preparedness Assessment in Dallas
For pricing information and to find out more about how Progent's ProSight Crypto-Ransomware Vulnerability Testing can bolster your defense against ransomware in Dallas, call Progent at