Understanding ransomware
Ransomware is a type of malicious software, or malware, that cybercriminals use to block access to, destroy, or publish a victim’s critical data unless a ransom is paid. Traditional ransomware targets both individuals and organisations, but two recent developments, human-operated ransomware and ransomware as a service, have become a bigger threat to enterprises and other large organisations.
With human-operated ransomware, a group of attackers use their collective intelligence to gain access to enterprise networks. Before installing the ransomware, they research the company to understand vulnerabilities and, in some cases, uncover financial documents that help them set the ransom figure.
In a ransomware-as-a-service model, a set of criminal developers create the ransomware and then hire other cybercriminal affiliates to hack an organisation’s network and install the ransomware. The two groups split the profits at an agreed-on rate.
All ransomware takes a significant toll on the attacked individuals and organisations. It can take days, weeks, or even months to bring affected systems back online, resulting in lost productivity and sales. Organisations might also suffer damage to their reputation with customers and the community.
With human-operated ransomware, a group of attackers use their collective intelligence to gain access to enterprise networks. Before installing the ransomware, they research the company to understand vulnerabilities and, in some cases, uncover financial documents that help them set the ransom figure.
In a ransomware-as-a-service model, a set of criminal developers create the ransomware and then hire other cybercriminal affiliates to hack an organisation’s network and install the ransomware. The two groups split the profits at an agreed-on rate.
All ransomware takes a significant toll on the attacked individuals and organisations. It can take days, weeks, or even months to bring affected systems back online, resulting in lost productivity and sales. Organisations might also suffer damage to their reputation with customers and the community.
Follow Microsoft Security