Home » Ransomware » Page 3

Ransomware

3 Trends to Understand the Evolving Cybersecurity Landscape

Image sourced from Feed Navigator. Given the global disruption that took place last year, it is hardly surprising that malware increased by 358% and ransomware by 435% as compared to 2019. The rapid push to digitalise and embrace work from home solutions meant companies not only had to accelerate data migration projects to the cloud but also remain cognizant of how best to secure employee endpoint devices while keeping the impact on productivity to a minimum. What makes the likes of malware and ransomware so difficult to combat is that successful attacks on corporate networks and endpoint devices can potentially remain hidden for months giving the hacker access to a veritable treasure trove of information. Attackers can encrypt this compromised data at any time, resulting in significant da...

Today’s New Business Normal Creates Threat Opportunities

Image sourced from Feed Navigator. The COVID-19 pandemic forced businesses of all shapes and sizes to make rapid changes in how they operated, with employees predominantly working remotely and sensitive data and systems being accessed from outside the office. For many, this triggered an increased reliance on remote-access infrastructure and cloud-delivered services. IT departments rushed to install, expand, or upgrade remote desktop access (RDA) servers, virtual private network (VPN) concentrators, and remote access routers to meet surging workforce demand for remote access to data centres. Moreover, widespread reliance on video conferencing apps forced many businesses to upgrade enterprise wide-area network and local-area network capacity, as well as to re-evaluate routing and DNS re...

When Ransomware Strikes, Can You Recover Fast Enough?

Sourced from Kaspersky Ransomware attacks have become increasingly common, and they are even available on the dark Web to purchase as a service. There have been many incidents in the news, where major companies have been left with little choice other than to pay the ransom to get their data back, often amounting to hundreds of thousands of dollars. The reality is that ransomware and other cyberattacks have become a question of when not if. The ability to respond and recover quickly has therefore become an essential part of successful ransomware defence, but it is something many organisations, especially in South Africa, struggle with. Consider Some Statistics The State of Ransomware report from security firm Sophos reveals that, over the last year, the average cost of remediating a ransomw...

Take Steps Now to Protect Your Organisation as Ransomware-as-a-Service Ramps Up DDoS Attack Offerings

Image sourced from Ben Kerckx, Pixabay. The services industry has traditionally included sectors ranging from social assistance and health care to transportation and scientific services. However, it doesn’t end there, because the human talent for innovation can turn almost anything into a service. We also find – rather less top-of-mind for most people – the offer of hitmen-as-a-service, usually associated, at least in Hollywood, with large and well-muscled men in expensive suits and sunglasses. A few years ago, this area of business moved into the cyber arena as well. And so we present: ransomware-as-a-service. Today, one of its latest offerings is a ‘triple threat’ that turns Distributed Denial of Service (DDoS) attacks into an even more lethal cyber weapon against organisations. Carole H...

What SMEs Should Know About Ransomware

Image sourced from Feed Navigator. Ransomware attacks are on the rise and malicious cybercriminals are always fine-tuning their strategies. Business leaders need to realise that their tactics include disrupting critical business operations across all industry verticals and businesses of all sizes, including small to midsize enterprises (SMEs). With most of the recent headline-making ransomware attacks against larger organisations who are likely to be more financially capable of meeting exceeding large ransom demands, the findings around the targeting of smaller businesses with fewer resources raise the question as to why ransomware operators are going after SMEs in the first place. The frequency and severity of successful ransomware attacks have a tremendous impact on victim organisations ...

Transnet Undergoes Apparent Ransomware Hack

Image sourced from News24. South Africa’s logistics and port operator Transnet has been the victim of an apparent ransomware attack, with its IT systems, websites and Navis container terminal OS going offline yesterday morning. The hack was first identified when several stakeholders in the freight industry were not able to access the container terminals at the Durban port in KwaZulu-Natal (KZN). “There was a memo issued to staff on Thursday morning that their terminal computers had been hacked and it came from the Transnet IT system. They said that they were working on it, but by Thursday afternoon the system was still offline,” said one stakeholder, quoted by The Sowetan. “Some operations, including rail, has gone manual but the end result is that no import containers are able to be proce...

Cyber Attacks in Africa Comparable to World Wide Rates, says Kaspersky

Sourced from IDG Connect With digital transformation a top priority on the corporate agenda as companies identify new ways to grow their business, cyber attackers and opportunist cybercriminals remain very active. While Africa is not necessarily considered a focus area for the more sophisticated types of cybercriminal activity such as targeted attacks or advanced persistent threats (APTs), the continent is certainly not immune to these or other types of cyber risks, warn Kaspersky researchers. When looking at the general cyber threat landscape as it impacts consumers and businesses, Kaspersky research shows that in 2020, worldwide, approximately 10% of computers experienced at least one malware attack. Interestingly, in some African countries, including South Africa, the figure was only sl...

Cryptocurrency and Cybercrime: 3 Insights You Need to Know

Image sourced from Shutterstock. Criminals have kept pace with changing technologies by no longer wanting their crimes to generate hard cash – bitcoin has become the currency of choice. That’s particularly true for cybercrime, where ransomware is booming as criminals infiltrate organisations’ IT systems and threaten to publish or destroy crucial data unless a ransom is paid in Bitcoin. Here are 3 insights you need to know about the links between cybercrime and cryptocurrency: 1. Cryptocurrency is Fuelling Cybercrime Ransomware payments have become so huge that attacks are mounting daily. A recent high-profile case was an attack on the US Colonial Pipeline, causing the system that carries 2.5 million barrels of oil a day to be shut off. It’s become such a lucrative business that some syndic...

11 Critical Steps Security Officers Need to Take During a Ransomware Attack

Sourced from Kaspersky Ransomware attacks have increased in volume, morphing and evolving through the years, especially recently, into the debilitating attacks we see today. According to a recent Global Threat Landscape Report from FortiGuard Labs, ransomware attacks increased sevenfold in the last half of 2020 and became even more disruptive. Recently, a massive ransomware attack on IT services provider Kaseya resulted in widespread threats against companies across 17 countries. Tactics from threat actors continue to shift and defenders need to not only continue to get the “basics” of defensive strategies correct but continuously evaluate their own organisation’s security policies to ensure they still provide adequate responses against today’s ransomware threat actors. CISOs are...

SA Firms Struck by Massive $70-Million Ransomware Attack

Sourced from Kaspersky Companies in 17 countries, including South Africa, the UK, Canada, Argentina, Mexico and Spain, have been struck by a mass ransomware attack exploiting multiple previously unknown vulnerabilities in IT management software made by Kaseya, an American software company that develops software for managing networks, systems, and information technology infrastructure. REvil – The Alleged Threat Actors Cybersecurity researchers are claiming that the attacker is a Russia-based hacking group who call themselves REvil. They are also known as “the Sodinokibi ransomware gang”, according to global cybersecurity and digital privacy firm, Kaspersky. The group has demanded a ransom of $70-million to be paid in Bitcoin. Kaspersky claims that it has identified some threats from REvil’...

Inside the Mind of Cybercriminals – How Threat Actors Think

Cybercriminals come in many different flavours, but the majority of them are in it for one thing: financial pay-off. They want the money that comes with offering their tools or services, selling stolen data, extortion like ransomware or plain fraud. And they all have one thing in common – your organisation is on their radar. This is why, says Anna Collard, SVP Content Strategy and Evangelist at KnowBe4 Africa, it is critical to understand how cyber criminals operate, the tools they use and the approaches they take to embed robust security within the organisation. “With ransomware going rampant and victim organisations paying up to millions of U.S. dollars to the extortionists, this problem is just going to get worse. The U.S. government recently announced that ransomware is a national cybe...

Joe Biden pointedly asks Vladimir Putin about cyberattacks at summit

U.S. President Joe Biden asked Russian President Vladimir Putin on Wednesday how he would feel if someone carried out a ransomware attack on Russian oil pipelines, a pointed question during their summit that illustrated the breadth of their disagreements. The query referred to a cyberattack that closed the Colonial Pipeline Co system for several days in May, preventing millions of barrels of gasoline, diesel and jet fuel from flowing to the U.S. East Coast from the Gulf Coast. Both leaders described their first summit in a lakeside Swiss villa as professional, rather than friendly, and said they agreed to hold lower-level talks on cybersecurity and arms control and to send their ambassadors back to their capitals. But there was no hiding their differences on issues such as human rights, wh...