Ransomware has been weaponized by cybercriminals and rogue governments, posing a possibly existential threat to businesses that are breached. Current versions of ransomware go after everything, including online backup, making even selective recovery a long and expensive exercise. Novel strains of crypto-ransomware like Ryuk, Maze, Sodinokibi, Netwalker, Phobos, Snatch and Egregor have made the headlines, replacing Locky, Cerber, and CryptoWall in prominence, elaborateness, and destructiveness.
90% of crypto-ransomware penetrations are the result of innocent-seeming emails that include malicious hyperlinks or attachments, and many are so-called "zero-day" attacks that elude detection by legacy signature-based antivirus tools. While user training and up-front detection are important to defend your network against ransomware, best practices dictate that you expect that some attacks will inevitably succeed and that you implement a strong backup mechanism that enables you to recover quickly with little if any damage.
Progent's ProSight Ransomware Preparedness Assessment is a low-cost service built around a remote discussion with a Progent cybersecurity expert skilled in ransomware defense and repair. In the course of this assessment Progent will collaborate with your San Antonio IT managers to gather critical data about your cybersecurity posture and backup processes. Progent will utilize this information to create a Basic Security and Best Practices Assessment detailing how to adhere to leading practices for implementing and managing your security and backup solution to prevent or recover from a crypto-ransomware attack.
Progent's Basic Security and Best Practices Report focuses on key issues related to ransomware defense and restoration recovery. The report covers:
Security
About Ransomware
Ransomware is a type of malicious software that encrypts or steals a victim's files so they cannot be used or are publicized. Crypto-ransomware sometimes locks the victim's computer. To avoid the damage, the victim is required to send a specified amount of money, typically via a crypto currency like Bitcoin, within a brief period of time. It is never certain that delivering the ransom will recover the lost files or prevent its publication. Files can be encrypted or deleted throughout a network based on the victim's write permissions, and you cannot break the military-grade encryption technologies used on the hostage files. A common ransomware attack vector is booby-trapped email, in which the target is tricked into responding to by means of a social engineering technique called spear phishing. This causes the email to appear to come from a trusted source. Another common vulnerability is a poorly protected Remote Desktop Protocol port.
The ransomware variant CryptoLocker ushered in the new age of crypto-ransomware in 2013, and the monetary losses caused by different strains of ransomware is estimated at billions of dollars per year, roughly doubling every other year. Notorious attacks are WannaCry, and Petya. Recent high-profile variants like Ryuk, DoppelPaymer and TeslaCrypt are more elaborate and have wreaked more havoc than older strains. Even if your backup/recovery procedures allow you to recover your encrypted files, you can still be threatened by so-called exfiltration, where ransomed data are made public (known as "doxxing"). Because additional versions of ransomware crop up every day, there is no certainty that traditional signature-based anti-virus filters will detect the latest malware. If threat does appear in an email, it is critical that your end users have been taught to identify social engineering tricks. Your last line of protection is a solid scheme for scheduling and retaining remote backups plus the deployment of dependable recovery platforms.
Ask Progent About the ProSight Ransomware Readiness Checkup in San Antonio
For pricing details and to find out more about how Progent's ProSight Crypto-Ransomware Readiness Audit can bolster your protection against crypto-ransomware in San Antonio, phone Progent at