Ransomware has become the weapon of choice for the major cyber-crime organizations and rogue governments, representing a possibly lethal risk to businesses that fall victim. Modern variations of crypto-ransomware go after everything, including backup, making even partial recovery a complex and costly process. Novel strains of crypto-ransomware such as Ryuk, Maze, Sodinokibi, Netwalker, Phobos, Snatch and Egregor have emerged, displacing Locky, Cerber, and Petya in prominence, elaborateness, and destructiveness.
90% of crypto-ransomware infections come from innocuous-seeming emails with dangerous links or file attachments, and many are so-called "zero-day" strains that elude detection by legacy signature-based antivirus filters. While user training and frontline detection are important to protect against ransomware, best practices dictate that you take for granted some malware will inevitably succeed and that you prepare a strong backup solution that allows you to restore files and services quickly with little if any losses.
Progent's ProSight Ransomware Vulnerability Checkup is an ultra-affordable service built around a remote interview with a Progent cybersecurity expert experienced in ransomware defense and recovery. In the course of this assessment Progent will work directly with your Saddle Brook network managers to collect pertinent data about your cybersecurity configuration and backup environment. Progent will utilize this data to generate a Basic Security and Best Practices Report documenting how to apply best practices for configuring and administering your security and backup systems to block or clean up after a ransomware attack.
Progent's Basic Security and Best Practices Report highlights vital issues related to ransomware prevention and restoration recovery. The review covers:
Security
About Ransomware
Ransomware is a form of malware that encrypts or steals files so they cannot be used or are publicized. Ransomware sometimes locks the victim's computer. To avoid the damage, the victim is required to send a certain amount of money (the ransom), typically in the form of a crypto currency like Bitcoin, within a short period of time. It is never certain that delivering the ransom will recover the damaged files or avoid its exposure to the public. Files can be altered or erased across a network depending on the target's write permissions, and you cannot break the strong encryption technologies used on the compromised files. A typical ransomware attack vector is spoofed email, whereby the victim is tricked into responding to by means of a social engineering exploit known as spear phishing. This causes the email to appear to come from a familiar source. Another common attack vector is an improperly protected RDP port.
The ransomware variant CryptoLocker ushered in the new age of crypto-ransomware in 2013, and the monetary losses attributed to by the many strains of ransomware is said to be billions of dollars per year, more than doubling every two years. Famous attacks include WannaCry, and Petya. Recent high-profile threats like Ryuk, DoppelPaymer and TeslaCrypt are more sophisticated and have wreaked more damage than earlier strains. Even if your backup processes allow your business to recover your ransomed files, you can still be hurt by exfiltration, where ransomed data are exposed to the public (known as "doxxing"). Because additional versions of ransomware are launched daily, there is no guarantee that traditional signature-based anti-virus filters will detect a new attack. If threat does appear in an email, it is critical that your end users have been taught to identify phishing techniques. Your last line of protection is a solid scheme for scheduling and keeping offsite backups and the deployment of dependable recovery platforms.
Contact Progent About the ProSight Crypto-Ransomware Vulnerability Consultation in Saddle Brook
For pricing details and to find out more about how Progent's ProSight Ransomware Vulnerability Testing can bolster your defense against ransomware in Saddle Brook, call Progent at