Ransomware has been weaponized by cyber extortionists and malicious states, posing a possibly existential risk to companies that fall victim. Modern strains of crypto-ransomware go after everything, including online backup, making even partial restoration a challenging and expensive exercise. New versions of crypto-ransomware like Ryuk, Maze, Sodinokibi, Mailto (aka Netwalker), DopplePaymer, LockBit and Nephilim have made the headlines, replacing Locky, Cerber, and CryptoWall in notoriety, elaborateness, and destructiveness.
Most ransomware infections come from innocent-seeming emails that have dangerous links or file attachments, and many are "zero-day" variants that elude the defenses of legacy signature-based antivirus (AV) tools. Although user education and frontline identification are important to protect against ransomware, best practices dictate that you expect that some malware will eventually get through and that you implement a strong backup mechanism that allows you to repair the damage quickly with little if any losses.
Progent's ProSight Ransomware Vulnerability Assessment is a low-cost service centered around a remote interview with a Progent cybersecurity expert skilled in ransomware defense and repair. During this assessment Progent will collaborate directly with your Santiago IT management staff to collect pertinent data concerning your cybersecurity profile and backup processes. Progent will utilize this information to create a Basic Security and Best Practices Report detailing how to apply best practices for implementing and administering your cybersecurity and backup systems to block or clean up after a ransomware assault.
Progent's Basic Security and Best Practices Assessment highlights key issues associated with ransomware prevention and restoration recovery. The report addresses:
Security
About Ransomware
Ransomware is a form of malicious software that encrypts or deletes files so they cannot be used or are made publicly available. Ransomware often locks the target's computer. To prevent the damage, the target is asked to send a certain ransom, typically via a crypto currency such as Bitcoin, within a short time window. It is not guaranteed that delivering the extortion price will recover the lost files or avoid its publication. Files can be encrypted or erased throughout a network depending on the victim's write permissions, and you cannot solve the strong encryption algorithms used on the hostage files. A typical ransomware delivery package is tainted email, whereby the victim is tricked into interacting with by means of a social engineering technique called spear phishing. This causes the email to look as though it came from a trusted sender. Another popular attack vector is a poorly protected RDP port.
CryptoLocker ushered in the new age of crypto-ransomware in 2013, and the damage attributed to by different versions of ransomware is estimated at billions of dollars annually, roughly doubling every other year. Notorious attacks include Locky, and NotPetya. Current high-profile threats like Ryuk, Sodinokibi and Spora are more elaborate and have caused more havoc than older strains. Even if your backup/recovery processes enable you to recover your encrypted data, you can still be hurt by so-called exfiltration, where ransomed data are made public. Because new variants of ransomware are launched daily, there is no guarantee that conventional signature-matching anti-virus tools will detect a new attack. If an attack does show up in an email, it is critical that your users have learned to be aware of phishing tricks. Your ultimate defense is a sound process for scheduling and retaining remote backups and the use of dependable restoration platforms.
Ask Progent About the ProSight Ransomware Vulnerability Report in Santiago
For pricing information and to learn more about how Progent's ProSight Ransomware Readiness Assessment can enhance your defense against ransomware in Santiago, call Progent at