Ransomware has been weaponized by the major cyber-crime organizations and malicious governments, representing a possibly lethal threat to companies that are breached. Modern variations of ransomware go after everything, including online backup, making even partial recovery a challenging and expensive exercise. New versions of ransomware like Ryuk, Maze, Sodinokibi, Netwalker, Phobos, Snatch and Nephilim have emerged, displacing Locky, Cerber, and NotPetya in notoriety, sophistication, and destructiveness.
Most crypto-ransomware breaches come from innocuous-looking emails with malicious hyperlinks or attachments, and many are "zero-day" attacks that elude detection by legacy signature-matching antivirus (AV) tools. Although user education and frontline identification are critical to defend your network against ransomware attacks, leading practices dictate that you expect that some malware will eventually succeed and that you prepare a strong backup solution that enables you to recover quickly with little if any losses.
Progent's ProSight Ransomware Preparedness Checkup is a low-cost service built around a remote discussion with a Progent cybersecurity expert experienced in ransomware protection and recovery. During this assessment Progent will collaborate with your Lower Manhattan IT managers to collect pertinent information about your security setup and backup processes. Progent will utilize this data to generate a Basic Security and Best Practices Assessment documenting how to apply best practices for configuring and administering your cybersecurity and backup solution to prevent or recover from a crypto-ransomware attack.
Progent's Basic Security and Best Practices Report focuses on vital issues related to crypto-ransomware prevention and restoration recovery. The report covers:
Cybersecurity
About Ransomware
Ransomware is a type of malicious software that encrypts or steals a victim's files so they cannot be used or are publicized. Crypto-ransomware sometimes locks the target's computer. To prevent the damage, the victim is required to send a specified amount of money (the ransom), typically in the form of a crypto currency such as Bitcoin, within a brief time window. There is no guarantee that delivering the extortion price will recover the lost data or prevent its publication. Files can be altered or erased across a network depending on the target's write permissions, and you cannot solve the strong encryption technologies used on the hostage files. A common ransomware attack vector is spoofed email, in which the user is tricked into responding to by a social engineering technique called spear phishing. This makes the email message to look as though it came from a trusted source. Another common attack vector is an improperly secured RDP port.
CryptoLocker ushered in the modern era of crypto-ransomware in 2013, and the monetary losses attributed to by different strains of ransomware is said to be billions of dollars annually, more than doubling every two years. Famous examples include Locky, and Petya. Current headline variants like Ryuk, Maze and Cerber are more sophisticated and have caused more havoc than earlier strains. Even if your backup/recovery processes permit your business to restore your ransomed data, you can still be hurt by exfiltration, where ransomed data are exposed to the public. Because new variants of ransomware are launched every day, there is no certainty that traditional signature-based anti-virus filters will block the latest attack. If threat does show up in an email, it is critical that your users have learned to identify phishing techniques. Your last line of protection is a solid scheme for scheduling and retaining offsite backups and the use of reliable recovery tools.
Ask Progent About the ProSight Ransomware Preparedness Testing in Lower Manhattan
For pricing details and to find out more about how Progent's ProSight Crypto-Ransomware Readiness Consultation can bolster your defense against crypto-ransomware in Lower Manhattan, call Progent at