Ransomware attacks continue to be one of the most damaging cybersecurity threats facing businesses and individuals today. In this video, Dark Rhiino Security breaks down what ransomware is, the different types of ransomware attacks, how they spread, and the steps organizations should take to respond and recover. We also cover key statistics from the FBI and cybersecurity experts, along with practical prevention strategies that can help reduce the risk of becoming a victim.
Chapter Titles:
00:00 Intro
00:05 Definition of Ransomware
00:29 Crypto-Ransomware
00:44 Locker Ransomware
01:03 Destructive Ransomware
01:17 What to do?
02:16 FBI Internet Crime Complaint Center
02:42 FBI Tips to Avoid Ransomware
03:14 Contact Dark Rhino Security
03:32 Outro
Audio:
Important Links:
Transcript
[0:05] According to McAfee.com, ransomware is malware that employs encryption to hold a victim’s information for ransom.
[0:08] A user’s or organization’s critical data is encrypted so they cannot access files, databases, or applications.
[0:17] A ransom is then demanded to provide this access.
[0:24] There are two types of ransomware: crypto ransomware and locker ransomware.
[0:29] The aim of crypto ransomware is to encrypt your important data, such as documents, pictures, and videos, but not to interfere with basic computer functions.
[0:38] This spreads panic because users can see their files but cannot access them.
[0:44] Locker ransomware is a type of malware that blocks basic computer functions; it locks the victim out of their computer.
[0:50] For example, you may be denied access to the desktop while the mouse and keyboard are partially disabled.
[0:57] This allows you to continue to interact with the window containing the ransom demand in order to make the payment.
[1:03] Destructive ransomware is designed to destroy data by encrypting it, and there is no intention on the attacker’s part of ever decrypting it.
[1:11] Poorly written ransomware has been known to have the same effect; it fails to decrypt after the victim has paid the ransom.
[1:18] If you’re involved in a ransomware attack, you should disconnect your machine from any others and from any external drives.
[1:24] If you’re on a network, go offline.
[1:26] You don’t want the ransomware to spread to other devices on your local network or to file-syncing services, such as Dropbox.
[1:35] Secondly, use a smartphone or camera to take a photograph of the ransom note presented on your screen.
[1:41] If you can take a screenshot, do so as well.
[1:44] Third, completely re-image your desktop or laptop with a fresh operating system install and complete low-level formatting of the hard drive before putting the computer back on the network.
[1:56] Fourth, contact your local FBI field office to request assistance, or you could also submit a tip online.
[2:04] Send them the screenshot you took.
[2:06] Fifth, if considering paying, do so as a last resort.
[2:09] Generally, paying only fuels the attackers and should be avoided.
[2:16] In 2020, the FBI’s Internet Crime Complaint Center received 2,944 ransomware complaints, and those are just the ones that got reported.
[2:27] Cybersecurity Ventures expects that businesses will fall victim to a ransomware attack every 11 seconds in 2021, up from every 14 seconds in 2019 and every 40 seconds in 2016.
[2:42] According to the FBI, to avoid a ransomware attack, you should do the following:
[2:48] Keep operating systems, software, and applications current and up to date.
[2:52] Make sure antivirus and malware solutions are set to automatically update and run regular scans.
[2:59] Backup data regularly.
[3:01] Double-check that those backups were completed and ensure that you can restore from those backups.
[3:07] Lastly, create a continuity plan in case your business or organization is the victim of a ransomware attack.
[3:14] Before buying ransomware prevention software or any silver bullet technology, contact a professional security firm like Dark Rhino Security and understand what “defense in depth” means and how to implement prevention, detection, and response in the most effective manner.
[3:32] Be sure to like this video and subscribe to our channel for more videos like this one.
[3:37] Don’t forget to check out our video with ransomware expert Dennis Underwood.
[3:42] Links for the information mentioned in this video are in the description below.
[3:45] Thanks for watching.
To learn more about Ransomware, listen to our podcast video with Ransomware expert Dennis Underwood here
To learn more about Dark Rhiino Security visit our home page
Check out the other episodes in Season 7:
Ep. 0 Bonus: What is Ransomware?
Ep. 1 Ron Eddings – Cybersecurity Advocate, Creative Director, Podcast Executive
Ep. 2 Josh Harrington – Director of Security at Wattpad
Ep. 3 Joshua Brown- H&R Block, Zero Trust, and Cyber Culture
Ep. 4 Dallas Baker – Veteran to Cyber Professional
Ep. 5 Paul Hamman – Stepping Out of Your Comfort Zone
Ep. 6 Karim Hijazi – Prevailion, Entrepreneurship, and The Introverted Iconoclast
Ep. 7 Rafael Nunez – Mentor, Motivational Speaker, and Veteran
Ep. 8 Brian Haugli – Roe v Wade, Data, and Understanding Controls
Ep. 9 Greg Edwards – Canauri, Failure, and Ransomware
Ep. 10 Ranbir Bhutani – CyberCulture, Myth Busting, and Zero Trust
About Us:
Dark Rhiino Security’s Security Confidential is a weekly Cybersecurity podcast where Host, Manoj Tandon, talks to Infosec and Cybersecurity professionals about the current issues going on in our industry. Guests are able to share their stories about how they began their journey into cybersecurity and connect with our audience. Listeners are able to tune in through Spotify, Apple Podcasts, Google Podcasts, Amazon Music, iHeartRadio, Youtube, LinkedIn, and more.
For inquiries, please email media@darkrhiinosecurity.com
