Ransomware has been weaponized by the major cyber-crime organizations and malicious governments, posing a potentially lethal risk to companies that are victimized. Current strains of ransomware go after everything, including backup, making even partial restoration a challenging and costly process. Novel strains of ransomware such as Ryuk, Maze, Sodinokibi, Netwalker, Phobos, Snatch and Nephilim have made the headlines, replacing WannaCry, Spora, and NotPetya in notoriety, elaborateness, and destructiveness.
90% of crypto-ransomware breaches are caused by innocent-seeming emails with dangerous hyperlinks or file attachments, and many are "zero-day" variants that elude the defenses of traditional signature-matching antivirus (AV) tools. Although user training and up-front identification are critical to defend your network against ransomware attacks, leading practices dictate that you assume some malware will inevitably get through and that you prepare a solid backup solution that enables you to recover quickly with minimal damage.
Progent's ProSight Ransomware Vulnerability Report is a low-cost service built around an online interview with a Progent security expert experienced in ransomware defense and recovery. During this interview Progent will collaborate directly with your Richmond IT managers to gather pertinent data about your cybersecurity profile and backup environment. Progent will utilize this information to generate a Basic Security and Best Practices Assessment detailing how to adhere to best practices for configuring and administering your cybersecurity and backup systems to prevent or clean up after a crypto-ransomware attack.
Progent's Basic Security and Best Practices Assessment focuses on key areas related to crypto-ransomware defense and restoration recovery. The report covers:
Cybersecurity
About Ransomware
Ransomware is a type of malware that encrypts or deletes files so they cannot be used or are made publicly available. Crypto-ransomware sometimes locks the victim's computer. To prevent the damage, the victim is asked to pay a certain amount of money (the ransom), typically via a crypto currency such as Bitcoin, within a brief period of time. It is never certain that delivering the extortion price will recover the lost data or prevent its publication. Files can be encrypted or erased across a network depending on the target's write permissions, and you cannot solve the military-grade encryption algorithms used on the hostage files. A common ransomware attack vector is booby-trapped email, in which the victim is tricked into responding to by means of a social engineering exploit known as spear phishing. This makes the email to look as though it came from a trusted source. Another common attack vector is a poorly secured Remote Desktop Protocol (RDP) port.
CryptoLocker opened the new age of crypto-ransomware in 2013, and the monetary losses attributed to by different versions of ransomware is said to be billions of dollars annually, roughly doubling every other year. Famous examples include WannaCry, and NotPetya. Current headline variants like Ryuk, DoppelPaymer and Spora are more elaborate and have caused more damage than older versions. Even if your backup procedures permit you to restore your ransomed files, you can still be threatened by exfiltration, where ransomed data are made public (known as "doxxing"). Because new variants of ransomware are launched every day, there is no guarantee that conventional signature-matching anti-virus filters will block a new attack. If threat does appear in an email, it is important that your end users have been taught to be aware of phishing tricks. Your ultimate protection is a sound process for scheduling and retaining remote backups and the use of dependable restoration platforms.
Contact Progent About the ProSight Crypto-Ransomware Readiness Testing in Richmond
For pricing information and to find out more about how Progent's ProSight Crypto-Ransomware Readiness Assessment can enhance your defense against crypto-ransomware in Richmond, phone Progent at