Case Project 2-5. Crypto-malware Attack
Crypto-malware ransomware encrypts all files on the device and demands a ransom in exchange
for a decryption key. Some ransomware operators publish the stolen of non-paying victims on
their own websites.
Ransomware is so successful because organizations don’t create a culture of defense or a sense
of responsibility for data, their workforce isn’t equipped to stand up against cyber threats, the
threats from malicious outsider only persist, and proper security configurations are not
implemented.
Ransomware typically spreads via spam or phishing emails. It also can be spread through
websites or drive-by downloads to infect an endpoint and penetrate the network.
Organizations can thwart ransomware attack with educating its employees, managing the use of
privileged accounts, employing a data backup and recovery plan for all critical information,
updating all devices frequently, and cautions of unknown links.
Recent crypto malware ransomware attacks
ISS World (Feb 17, 2020 /Recovery and Mitigation Costs: $75 M to $112.4 M)
Denmark-based facilities management firm ISS World was forced by a ransomware attack and
had to switch off its networks and leave employees without access to their systems or email. ISS
world took more than a month to regain control of most of its IT infrastructure and expects to be
finished with restoring and rebuilding its systems and IT assets by the end of 2020.
Redcar And Cleveland Council (Feb 8, 2020 / Recovery and Mitigation Costs: $13.6 M to
$22.2 M)
Redcar and Cleveland Council in England was attacked by ransomware cyberattack and the
council staffs were not able to use computers, tablets, and mobile devices for three weeks. By the