Section 6.51 Ransomware Flashcards
Objectives 2.4 Given a Scenario, analyse indicators of malicious activity
Ransomware
Type of malicious software that is designed to block access to a computer system or its data by encrypting it until a ransom is paid to the attacker
2021 Ransowmware attack
Colonial Pipeline CO.
Major US Fuel company that was forced to shut down thier pipeline. The company was unable to use thier pipeline for 5 days.
The attackers demanded and recieved ransom of up to $4.4m in Bitcoin to provide the key for the attack
How can we protect ourselves and our organizations against ransomware?
■ Always conduct regular backups
■ Install software updates regularly
■ Provide security awareness training to your users
■ Implement Multi-Factor Authentication (MFA)
What should you do if you find yourself or your organization as the victim of a ransomware attack?
■ Never pay the ransom: Doesn’t actually guarantee that you will ever get your data back
■ Disconnect it from the network
■ Notify the authorities
■ Restore your data and systems from known good backups