The Cyber Security Review | Tuesday, February 16, 2021
Attackers will always have the advantage of making the initial move. As a result, businesses must be better prepared for ransomware prevention
FREMONT, CA: Ransomware increased by 150 percent in 2021, according to the European Union Agency for Cybersecurity, and the trend is expected to continue in 2022. Colonial Pipeline, UKG (Kronos), JBS, Kaseya, and SolarWinds have all been high-profile victims. This year's ransomware honors list is likely to include even bigger names. Cybercriminal gangs such as DarkSide, REvil, and BlackMatter are reinvesting millions in ransom payments in order to grow more organized.
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
Cybercriminals have been employing analytics to assess the profile of the ideal U.S. victim, according to security firm Kela. Companies with at least 100 million dollars in revenue that use virtual private networks, remote desktop protocols, or products from Citrix, Palo Alto Networks, VMware, Fortinet, and Cisco are top targets for hackers. They avoid organizations in the fields of education, government, health care, and nonprofits. These verticals, it's assumed, either refuse to be held to ransom, don't have the financial means to pay, or can generate a reaction against the hacking gang.
To make matters worse, criminals have become more ruthless. They seek money, but they also want to harm organizations' reputations by disclosing attacks, blackmailing companies by threatening to expose corporate or personal dirty laundry, and selling intellectual property to competitors. Ransomware will not go away in 2022, said Kevin Breen, director of cyber threat research at Immersive Labs in Bristol, England.
However, attackers can be expected to change their techniques in light of strong crackdowns and supply chain instabilities. Attackers will always have the advantage of making the initial move. As a result, businesses must be better prepared for ransomware prevention, mitigation, and overall response. Modern incident response systems, as well as keeping all patches up to date and training people to avoid clicking on phishing emails, are smart places to start.
More in News