Ransomware has been weaponized by cybercriminals and rogue governments, posing a possibly lethal threat to companies that fall victim. The latest versions of crypto-ransomware go after everything, including online backup, making even selective recovery a long and costly exercise. Novel versions of ransomware like Ryuk, Maze, Sodinokibi, Mailto (aka Netwalker), Phobos, LockBit and Nephilim have made the headlines, replacing Locky, Cerber, and CryptoWall in notoriety, elaborateness, and destructiveness.
90% of crypto-ransomware breaches are the result of innocent-seeming emails that include dangerous links or file attachments, and many are so-called "zero-day" variants that can escape the defenses of traditional signature-based antivirus tools. Although user training and frontline identification are critical to protect your network against ransomware attacks, best practices demand that you take for granted some attacks will inevitably get through and that you implement a strong backup solution that enables you to restore files and services rapidly with minimal damage.
Progent's ProSight Ransomware Preparedness Assessment is an ultra-affordable service centered around an online interview with a Progent security expert experienced in ransomware protection and recovery. During this assessment Progent will cooperate directly with your Rochester network management staff to collect critical data about your cybersecurity configuration and backup environment. Progent will use this information to produce a Basic Security and Best Practices Assessment detailing how to apply leading practices for implementing and administering your security and backup solution to block or recover from a ransomware attack.
Progent's Basic Security and Best Practices Assessment focuses on vital issues associated with ransomware prevention and restoration recovery. The report covers:
Security
About Ransomware
Ransomware is a form of malware that encrypts or deletes files so they cannot be used or are publicized. Ransomware sometimes locks the target's computer. To avoid the damage, the victim is asked to send a specified amount of money (the ransom), usually in the form of a crypto currency like Bitcoin, within a short period of time. It is not guaranteed that paying the ransom will restore the lost files or prevent its exposure to the public. Files can be altered or erased throughout a network depending on the victim's write permissions, and you cannot break the strong encryption algorithms used on the compromised files. A typical ransomware delivery package is booby-trapped email, in which the victim is lured into interacting with by means of a social engineering technique called spear phishing. This causes the email to appear to come from a familiar source. Another popular attack vector is an improperly protected Remote Desktop Protocol port.
The ransomware variant CryptoLocker opened the modern era of crypto-ransomware in 2013, and the monetary losses caused by the many strains of ransomware is said to be billions of dollars annually, roughly doubling every other year. Notorious attacks are Locky, and Petya. Current high-profile threats like Ryuk, DoppelPaymer and TeslaCrypt are more elaborate and have caused more havoc than older strains. Even if your backup/recovery processes enable you to recover your encrypted data, you can still be threatened by exfiltration, where stolen data are made public (known as "doxxing"). Because new versions of ransomware are launched daily, there is no guarantee that traditional signature-based anti-virus filters will block a new attack. If an attack does appear in an email, it is important that your users have been taught to be aware of phishing tricks. Your ultimate defense is a sound process for performing and retaining offsite backups and the deployment of dependable restoration platforms.
Contact Progent About the ProSight Ransomware Vulnerability Checkup in Rochester
For pricing information and to find out more about how Progent's ProSight Ransomware Readiness Evaluation can bolster your defense against crypto-ransomware in Rochester, call Progent at