Connect with us

News

Paying the Ransom Doubles Cost of Recovering from a Ransomware Attack, says Sophos

Published

on

Cybersecurity by Sophos

BY: Nmerichukwu Igweamaka

o   Global survey shows the average cost of recovery is $1.4 million if organizations pay the ransom, $730,000 if they don’t

o   SophosLabs reports on Maze ransomware techniques that increase pressure to pay

o   53% of the organizations surveyed in Nigeria witnessed a significant ransomware attack in the last 12 months

A global leader in next-generation cybersecurity, Sophos, has announced the findings of its global survey, The State of Ransomware 2020, which reveals that paying cybercriminals to restore data encrypted during a ransomware attack is not an easy and inexpensive path to recovery. In fact, the total cost of recovery almost doubles when organizations pay a ransom. 

The survey polled 5,000 IT decision makers in organizations in 26 countries across six continents, including Europe, the Americas, Asia-Pacific and central Asia, the Middle East, and Africa.

More than half (51%) of organizations had experienced a significant ransomware attack in the previous 12 months, compared to 54% in 2017

In Nigeria, 53% of the organizations surveyed mentioned a ransomware attack in the last one year. Globally Data was encrypted in nearly three quarters (73%) of attacks that successfully breached an organization, while in Nigeria, it was 74%.

The average cost of addressing the impact of such an attack, including business downtime, lost orders, operational costs, and more, but not including the ransom, was more than $730,000.

This average cost rose to $1.4 million, almost twice as much, when organizations paid the ransom. More than one quarter (27%) of organizations hit by ransomware admitted paying the ransom. 

The survey also revealed 38% of the organizations that were attacked in Nigeria admitted to paying the ransom.

“Organizations may feel intense pressure to pay the ransom to avoid damaging downtime. On the face of it, paying the ransom appears to be an effective way of getting data restored, but this is illusory. Sophos’ findings show that paying the ransom makes little difference to the recovery burden in terms of time and cost.

This could be because it is unlikely that a single magical decryption key is all that’s needed to recover. Often, the attackers may share several keys and using them to restore data may be a complex and time-consuming affair,” said Chester Wisniewski, principal research scientist, Sophos.

More than half (56%) the IT managers surveyed were able to recover their data from backups without paying the ransom compared to 44% in the Nigeria. Globally in a very small minority of cases (1%), paying the ransom did not lead to the recovery of data while in Nigeria it was in 10% of cases. 

This figure rose to 5% for public sector organizations. In fact, 13% of the public sector organizations surveyed never managed to restore their encrypted data, compared to 6% overall.

However, contrary to popular belief, the public sector was least affected by ransomware, with just 45% of the organizations surveyed in this category saying they were hit by a significant attack in the previous year.

At a global level, media, leisure and entertainment businesses in the private sector were most affected by ransomware, with 60% of respondents reporting attacks.

Attackers increase pressure to pay

SophosLabs researchers have published a new report, Maze Ransomware: Extorting Victims for 1 Year and Counting, which looks at the tools, techniques and procedures used by this advanced threat that combines data encryption with information theft and the threat of exposure.

This approach, which Sophos researchers have also observed being adopted by other ransomware families, like LockBit, is designed to increase pressure on the victim to pay the ransom.

The new Sophos report will help security professionals better understand and anticipate the evolving behaviors of ransomware attackers and protect their organizations.

“An effective backup system that enables organizations to restore encrypted data without paying the attackers is business critical, but there are other important elements to consider if a company is to be truly resilient to ransomware,” added Wisniewski. “Advanced adversaries like the operators behind the Maze ransomware don’t just encrypt files, they steal data for possible exposure or extortion purposes. We’ve recently reported on LockBit using this tactic. Some attackers also attempt to delete or otherwise sabotage backups to make it harder for victims to recover data and increase pressure on them to pay. The way to address these malicious maneuvers is to keep backups offline, and use effective, multi-layered security solutions that detect and block attacks at different stages.”

GrassRoots.ng is on a critical mission; to objectively and honestly represent the voice of ‘grassrooters’ in International, Federal, State and Local Government fora; heralding the achievements of political and other leaders and investors alike, without discrimination. This daily, digital news publication platform serves as the leading source of up-to-date information on how people and events reflect on the global community. The pragmatic articles reflect on the life of the community people, covering news/current affairs, business, technology, culture and fashion, entertainment, sports, State, National and International issues that directly impact the locals.

News

The Peruvian Government Has Officially Classified Transgender, Nonbinary And Intersex People As “Mentally ill”

Published

on

According to the country’s ministry of health, the controversial decision was made to ensure the country’s public health services could “guarantee full coverage of medical attention for mental health” for the trans community.

It also categorises “dual-role transvestitism,” “fetishistic transvestism,” and “other gender identity disorders” under the same bracket of mental illness.

The new law will change language in the Essential Health Insurance Plan (PEAS) to reflect the view of trans and intersex people as a mental health disorder.

Trans groups across Peru have loudly condemned the decision as a step backwards for the country’s already complex relationship with LGBTQ+ rights.

Continue Reading

News

Math Teacher Accused Of Having Sex With 2 Students And Getting Pregnant For One Tearfully Reveals The Baby Was Taken Away From Her

Published

on

The UK teacher who had a baby with an underage student while on trial for having sex with another teenage boy broke down in court after revealing her newborn baby girl had been “taken away” from her.

Manchester math teacher Rebecca Joynes, 30, sobbed to jurors over how her baby was taken “24 hours after being born” this past January — and now she only sees her for nine hours a week, Joynes told jurors on Monday, May 13, according to the Manchester Evening News.

“At the moment I have contact with her three times a week for three hours and that’s it,” she said through tears.

Joynes was arrested and released on bail on orders not to have unsupervised contact with anyone under 18 after allegedly grooming her pupil, known as Boy A in court, by buying him a $430 Gucci belt before bringing him to her apartment for unprotected sex.

She was suspended from school and eventually fired, but soon after, she began having a relationship with a 15-year-old boy, known in court as Boy B, whom she had a baby with in January.

Joynes, who has denied having sex with either boy when they were underage, told the court that when she learned of the allegations against her she had gone to the second boy in a “panic” and he deleted all of her phone’s content.

The former teacher denied having a sexual relationship with the second boy until after he turned 16 and she was already suspended from teaching.

According to her narration,

She said he had added her on Snapchat twice, which she only accepted the second time because she thought he “wanted to tell her something.”

Joynes said a friendship developed and he quickly became her “best friend” even though the boy would make flirtatious and sexualized comments toward her when he was drunk.

She told jurors that it wasn’t until after his 16th birthday that he messaged her saying “I’ve left school now” with a winky face.

After she received notice that she had been dismissed from her job, he went to her apartment, where following an emotional conversation, they had sex.

The two then entered a relationship that Joynes described as “quite toxic” telling the court how the teenager was “very controlling.”

After discovering she was pregnant, Joynes hid love notes for the boy to find around her apartment.

The notes eventually led to a piece of baby clothing that had the words “I love my daddy to the moon and back” written on it.

The court was told that she gave birth to their baby girl in January, but following an emergency court hearing, the newborn was taken away from Joynes.

Joynes has denied two counts of sexual activity with Boy A; two counts of sexual activity with Boy B; and two counts of sexual activity with Boy B while being a person in a position of trust.

Her trial is ongoing.

Continue Reading

News

First Man To Receive Pig Kidney Transplant Has Died

Published

on

The first Man to receive a genetically modified pig kidney transplant has died two months after the operation.

Massachusetts General Hospital (MGH), which carried out the procedure in March, announced Sunday, May 12, that Richard “Rick” Slayman, 62, has died.

They said there was no indication his death was a result of the transplant.

Transplants of other organs from genetically modified pigs have failed in the past, but the operation on Mr Slayman, who was suffering with end-stage kidney disease, was hailed as a historic milestone.

In addition to kidney disease, Mr Slayman also suffered from Type 2 diabetes and hypertension.

In 2018, he had a human kidney transplant, but it began to fail after five years.

Following his pig kidney transplant on March 16, his doctors confirmed he no longer needed dialysis after the new organ was said to be functioning well.

“Mr Slayman will forever be seen as a beacon of hope to countless transplant patients worldwide and we are deeply grateful for his trust and willingness to advance the field of xenotransplantation,” MGH said in a statement.

Xenotransplantation is the transplanting of living cells, tissues or organs from one species to another.

MGH said it was “deeply saddened” at his sudden death and offered condolences to his family.

Mr Slayman’s relatives said his story was an inspiration.

“Rick said that one of the reasons he underwent this procedure was to provide hope for the thousands of people who need a transplant to survive,” they said.

“Rick accomplished that goal and his hope and optimism will endure forever.

“To us, Rick was a kind-hearted man with a quick-witted sense of humour who was fiercely dedicated to his family, friends, and co-workers,” they added.

While Mr Slayman received the first pig kidney to be transplanted into a human, it is not the first pig organ to be used in a transplant procedure.

Two other patients have received pig heart transplants, but those procedures were unsuccessful as the recipients died a few weeks later.

In one case, there were signs the patient’s immune system had rejected the organ, which is a common risk in transplants.

Continue Reading

Trending