What it takes to fight the ransomware pandemic

Conceptual art of a computer system being hacked.
(Image credit: Getty Images)

Cybercrime is getting organized. Gone are the days of lone hackers operating from back bedrooms. Cybercriminals are banding together to form businesses and using the dark web to recruit new “talent” and advertise “jobs” they’re looking to fulfil. The stakes are significantly higher for the organizations under fire due to poor cybersecurity.  

About the author

Gary Cox, Director of Technology for Western Europe, Infoblox.

Against this backdrop, an age-old tactic has had a revamp. With these big, organized businesses able to now sell their hacking software and services on the dark web for profit, ransomware-as-a-service is becoming increasingly prevalent. Even the most inexperienced threat actors can buy everything they need to launch an attack. The results of these attacks can be devastating, with research showing that 34% of UK businesses are forced to temporarily close down after being hit by ransomware. For some, normal service never resumes. 

Why cybercrime has become big business in our current landscape 

The pandemic has created the perfect storm for attackers, with many criminal groups using COVID-19 lures to exploit both consumers’ and businesses’ concerns in an already troubled time. Phishing is still the number one tactic when it comes to stealing personal data; both explicit, targeted phishing attacks and broad attempts sent out to thousands of contacts. Where financial details used to be the jackpot for cybercriminals, now, personal data is the hottest commodity. Cyber Security Breaches Survey 2021 shows that businesses that hold personal data are more likely than average to report breaches or attacks.

Cybercriminals have not only tapped into the nation’s concerns around the pandemic – they have also capitalized on the changes that have come along with it, such as remote or hybrid working. Whilst hybrid working isn’t a totally new phenomenon, the pandemic has propelled it into the spotlight like never before. Almost overnight, it became the new norm and now it seems that, for many, what was once a temporary solution is here to stay.  

This new way of working has, however, brought new risks alongside it. In this new landscape, organizations' attack surfaces have rapidly expanded as employees log into work platforms from unsecured networks or personal devices. Protecting the network far and wide has never been more important, nor has it been more difficult to achieve.  

The rise of ransomware-as-a-service (RaaS)

Phishing may remain the number one tactic for attackers for stealing personal data, but ransomware attacks are on the rise as criminals look to profit directly from their attacks. Every week, ransomware attacks hit the headlines and the list of organizations falling victim grows longer. It seems that we are yet to find an effective cure for our ransomware pandemic.  

This type of attack remains popular among bad actors and cyber criminals simply because it is so profitable – ransomware involves little cost and plenty of reward. The reality is that companies operating in today’s landscape simply cannot afford to be offline in the aftermath of the pandemic's workforce diaspora. Remaining offline risks not only financial loss but also long-term reputational damage. For example, when Tesco’s website went down in a suspected hack attempt, sales took a hit as customers shopped from supermarket rivals. The big concern for the company now is whether they will come back. 

Whilst we can’t say for sure how many ransomware attacks happen on a daily basis, rest assured the number is high and continues to grow. Cybersecurity Ventures estimates that a ransomware attack happens every 11 seconds. Understandably, some organizations decide not to disclose that they’ve been attacked – after all, sharing this information could expose them further and damage their reputation. Take Travelex as an example of a company that never managed to recover – shortly after revealing the extent of an attack and paying the ransom, it went into administration.  

The rise of Ransomware-as-a-Service (RaaS) is part of cybercrime's evolution towards a commercialized business. This commercial branch magnifies the ransomware threat as even inexperienced cyber criminals can buy everything they need on the dark web and launch an attack. It is not going away any time soon and will be one of the biggest cybersecurity threats in 2022. 

Prevention is the best cure

Like with most attacks, prevention is always better than finding a cure once infected. It’s important for companies to try and mitigate the impact of an attack before it hits. An effective strategy requires  the right mix of cybersecurity tools, such as DNS security to detect threats entering and leaving the corporate network, and continued employee education. The ransomware landscape is complex and companies need to ensure their training is ever evolving in order to keep up. 

That means that employee education should go beyond standard training. It should be continuous. After all, attackers never stop so why would our defense? From spoofing phone calls to phishing emails, cyber criminals play by volume and are very persistent. They can send thousands of emails every day, trying to infiltrate an organization. The heavier the volume, the higher the chance that somebody will open the email and click the link. “Report phishing” buttons – and other tools built for employees to support the fight against cybercrime – are likely to become increasingly important moving forward. With cyber criminals knocking at every door to try and gain entry, every worker is part of the first line of defense.

Protect your business with the best endpoint protection software.

Gary Cox, Director of Technology for Western Europe, Infoblox.

Read more
ransomware avast
“Every organization is vulnerable” - ransomware dominates security threats in 2024, so how can your business stay safe?
A computer being guarded by cybersecurity.
The impact of the cyber insurance industry in resilience against ransomware
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Don’t let holidays be your cybersecurity downfall
A digital representation of a lock
Exploits on the rise: How defenders can combat sophisticated threat actors
Ransomware attack on a computer
Ransomware attacks surged in 2024 as hackers looked to strike faster than ever
Hands typing on a keyboard surrounded by security icons
35 years on: The history and evolution of ransomware
Latest in Security
Woman shocked by online scam, holding her credit card outside
Cybercriminals used vendor backdoor to steal almost $600,000 of Taylor Swift tickets
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Wordpress brand logo on computer screen. Man typing on the keyboard.
Thousands of WordPress sites targeted with malicious plugin backdoor attacks
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Latest in Features
Lady Gaga sat at a press conference table for Spotify's fan event
Spotify’s press conference with Lady Gaga shows that music streaming services really do think about the fans after all
Sterling K. Brown as Agent Xavier Collins in Paradise
I'm relieved that Paradise season 2 has been confirmed after that mind-blowing finale
Peter looks to the side with the city skyline behind him in The Night Agent season 2
3 Netflix shows I stopped watching and wouldn't go back to
The player attacks an enemy in Judgement.
The latest PlayStation sale is here, and these are the five games under $15 / £15 I've got in my basket
PrivadoVPN running on an iPhone during TechRadar's VPN tests
Why PrivadoVPN Free is still the best free VPN for streaming
The Blades of Fire key art.
MercurySteam CEO discusses upcoming new IP Blades of Fire: 'We love third person action adventure games and we wanted to revisit the genre'