{"id":2233,"date":"2022-08-11T14:02:33","date_gmt":"2022-08-11T12:02:33","guid":{"rendered":"https:\/\/www.edificom.ch\/?p=2233"},"modified":"2022-08-16T09:43:39","modified_gmt":"2022-08-16T07:43:39","slug":"ransomware","status":"publish","type":"post","link":"https:\/\/www.edificom.ch\/en\/cybersecurity-2\/ransomware\/","title":{"rendered":"Cybersecurity<br>\u26a0\ufe0f Ransomware"},"content":{"rendered":"<section class=\"text\">\n      <h2 class=\"text__title\">Essential tips<\/h2>\n    <div class=\"text__wrapper \">\n          <h2>Ransomware<\/h2>\n<p><strong>\ud83d\udcb8 A particularly sensitive time<\/strong><br \/>\nLarge companies are targeted for their important funds, but smaller companies and startups represent easy targets because of their smaller structures. Startups for example are targeted because they often will be reaching out to investors for financial support. This will seem like an ideal time for cyberattacks. One attack in particular is ransomware (also known as encryption Trojans or blackmail Trojans).<\/p>\n<p>Remember network partners can only do so much. Awareness and informed users are the best defence against these evolving threats.<\/p>\n<h4>\ud83e\udd16 Cybersecurity tips 101<\/h4>\n<p>The\u00a0<span style=\"text-decoration: underline;\"><strong><a href=\"https:\/\/www.ncsc.admin.ch\/ncsc\/fr\/home.html\">National Cyber Security Centre<\/a> <\/strong><\/span>(NCSC) defines <a href=\"https:\/\/www.ncsc.admin.ch\/ncsc\/fr\/home\/cyberbedrohungen\/ransomware.html\">Ransomware<\/a> as a family of malware (malicious software) that encrypts data on the victim&#8217;s computer and on network shares in order to make the data unusable for the victim. A &#8220;locked screen&#8221; then appears on the victim\u2019s screen requesting a ransom (often in the form of cryptocurrencies) so that the data can be decrypted.<\/p>\n<p><strong>The characteristics of these attacks:<\/strong><\/p>\n<ul>\n<li>Common types of malware include computer viruses, ransomware, worms, trojan horses and spyware.<\/li>\n<li>Locked screen mentioning encrypted data and\u00a0requesting a ransom\u00a0to decrypt it.<\/li>\n<li>Often\u00a0requested in bitcoin\u00a0(internet currency).<\/li>\n<li>Expanding type of attacks, new more damaging versions of malware are constantly being developed.<\/li>\n<li>Uses emails or hacked websites to \u201cinfect\u201d devices.<\/li>\n<li>Scroll further to see a sample of typical malware screenshots below.<\/li>\n<\/ul>\n<p><strong>What you can do<\/strong><\/p>\n<p>It is important to remember that It is almost impossible to prevent fraudulent emails of this kind from being sent. Basic <span style=\"text-decoration: underline;\"><strong><a href=\"https:\/\/www.ncsc.admin.ch\/ncsc\/en\/home\/cyberbedrohungen\/ransomware.html\">NCSC recommendations<\/a><\/strong><\/span> are:<\/p>\n<ul>\n<li>Regularly backup data\u00a0and store it offline\u00a0on two separate backups. Cloud based backups are a good solution but make sure the provider can\u2019t be infected by malware and that two-factor authentication is activated.<\/li>\n<li>Consistently\u00a0update devices\u2019 operating systems and software.<\/li>\n<li>Install and update a\u00a0virus protection and a firewall.<\/li>\n<li>Be careful with\u00a0suspicious emails\u00a0(it could be from a known colleague but\u00a0strange in its content, an unexpected request\u00a0or coming from unknown senders).\u00a0When in\u00a0doubt, do not follow the instructions in the text,\u00a0do not open any\u00a0attachments\u00a0and\u00a0do not click on any\u00a0links.<\/li>\n<li>Some\u00a0advanced solutions\u00a0are available that use AI to prevent attacks.\u00a0Contact EDIFICOM\u00a0for further information.<\/li>\n<\/ul>\n<p><strong>If you get infected<\/strong><\/p>\n<ul>\n<li>Immediately\u00a0disconnect the computer\u00a0from all networks and advise your IT department or relevant contact.<\/li>\n<li>In all cases, NCSC recommends\u00a0reporting the case\u00a0to the local police.<\/li>\n<li>Refrain from paying the ransom\u00a0there is no guarantee you will actually get a decryption key and it&#8217;s better\u00a0to avoid encouraging such attacks.<\/li>\n<li>After the attack is over and resolved, make sure to\u00a0reinstall\u00a0a clean system and change all passwords.<\/li>\n<li>Once the computer is clean, you can\u00a0restore the backup data\u00a0(if available).<\/li>\n<li>It can be useful to store encrypted data in case a decryption solution is found.<\/li>\n<\/ul>\n<p><strong>A few resources for more information<\/strong><\/p>\n<ul>\n<li>Stay up to date on the habits to develop for safe online surfing with<span style=\"text-decoration: underline;\"><strong> <a href=\"https:\/\/www.ncsc.admin.ch\/ncsc\/en\/home\/infos-fuer\/infos-unternehmen\/aktuelle-themen\/verhalten-bei-e-mail.html\">these recommendations<\/a><\/strong><\/span>.<\/li>\n<li>NCSC\u2019s <span style=\"text-decoration: underline;\"><strong><a href=\"https:\/\/www.ncsc.admin.ch\/ncsc\/en\/home\/infos-fuer\/infos-unternehmen\/aktuelle-themen\/schuetzen-sie-ihr-kmu.html\">Information security checklist<\/a><\/strong><\/span> for SMEs and their <strong><a href=\"https:\/\/digitalswitzerland.com\/cybersecurity-sme-quick-check\/\">Security Quick Check<\/a><\/strong> tool.<\/li>\n<li>Block the receipt of dangerous email attachments on your email gateway. A more detailed and updated list can be found on the GovCERT website <strong><a href=\"https:\/\/www.govcert.ch\/downloads\/blocked-filetypes.txt\">here<\/a><\/strong>.<\/li>\n<li>nomoreransom.org helps find the right decryption solution for depending on malware type.<\/li>\n<li><a href=\"https:\/\/abuse.ch\/\"><span style=\"text-decoration: underline;\"><strong>Abuse.ch<\/strong><\/span><\/a>, a non-profit cybersecurity blog,\u00a0created the\u00a0<span style=\"text-decoration: underline;\"><strong><a href=\"https:\/\/bazaar.abuse.ch\/\">Malwarebazaar<\/a><\/strong><\/span> platform to collect malware\u00a0distribution sites.<\/li>\n<\/ul>\n      <\/div>\n<\/section>\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-2.png\" alt=\"\" class=\"wp-image-1653\" width=\"563\" height=\"316\" srcset=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-2.png 719w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-2-300x168.png 300w\" sizes=\"auto, (max-width: 563px) 100vw, 563px\" \/><\/figure><\/div>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-4-.jpg\" alt=\"\" class=\"wp-image-1655\" width=\"486\" height=\"272\" srcset=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-4-.jpg 1024w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-4--300x169.jpg 300w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomware-example-4--768x432.jpg 768w\" sizes=\"auto, (max-width: 486px) 100vw, 486px\" \/><\/figure><\/div>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransome-ware-example-1.jpg\" alt=\"\" class=\"wp-image-1657\" width=\"478\" height=\"361\" srcset=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransome-ware-example-1.jpg 600w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransome-ware-example-1-300x227.jpg 300w\" sizes=\"auto, (max-width: 478px) 100vw, 478px\" \/><\/figure><\/div>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomeware-example-3.png\" alt=\"\" class=\"wp-image-1659\" width=\"568\" height=\"395\" srcset=\"https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomeware-example-3.png 974w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomeware-example-3-300x209.png 300w, https:\/\/www.edificom.ch\/wp-content\/uploads\/ransomeware-example-3-768x535.png 768w\" sizes=\"auto, (max-width: 568px) 100vw, 568px\" \/><\/figure><\/div>\n\n\n<section class=\"feed\">\n  <h2 class=\"feed__title\"><\/h2>\n  <div class=\"feed__list\">\n    <? if ($type) : ?>\n      <? while( have_rows('feed_posts') ) : the_row();\n        $iframe = get_sub_field('feed_posts_item'); ?>\n        <div class=\"feed__list__item\">\n                  <\/div>\n      <? endwhile; ?>\n    <? else : ?>\n      <? foreach( $articles as $post ) : \n        $date = get_the_date('d F Y');\n        $excerpt = get_the_excerpt($post->ID);\n        $thumbnail = get_the_post_thumbnail_url($post->ID);\n        $link = get_permalink($post->ID);\n        ?>\n\t\t\t\t<article class=\"article-card\">\n          <span class=\"article-card__date\"><\/span>\n          <p class=\"article-card__excerpt\"><\/p>\n          <a href=\"\" class=\"article-card__image\">\n            <img decoding=\"async\" src=\"\" \/>\n            <svg width=\"50px\" height=\"50px\" viewBox=\"0 0 50 50\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:xlink=\"http:\/\/www.w3.org\/1999\/xlink\">\n              <g id=\"Symbols\" stroke=\"none\" stroke-width=\"1\" fill=\"none\" fill-rule=\"evenodd\">\n                <g id=\"news\" transform=\"translate(-165.000000, -223.000000)\">\n                  <g id=\"btn\" transform=\"translate(165.000000, 223.000000)\">\n                    <circle id=\"Oval\" fill=\"#001400\" cx=\"25\" cy=\"25\" r=\"25\"><\/circle>\n                    <g id=\"Group-5\" transform=\"translate(18.000000, 18.000000)\" fill=\"#FFFFFF\">\n                      <path d=\"M7,0 C7.30927946,-5.68137151e-17 7.56,0.25072054 7.56,0.56 L7.56,6.44 L13.44,6.44 C13.7492795,6.44 14,6.69072054 14,7 C14,7.30927946 13.7492795,7.56 13.44,7.56 L7.56,7.56 L7.56,13.44 C7.56,13.7492795 7.30927946,14 7,14 C6.69072054,14 6.44,13.7492795 6.44,13.44 L6.44,7.56 L0.56,7.56 C0.25072054,7.56 -4.97379915e-14,7.30927946 -4.97379915e-14,7 C-4.97379915e-14,6.69072054 0.25072054,6.44 0.56,6.44 L6.44,6.44 L6.44,0.56 C6.44,0.25072054 6.69072054,5.68137151e-17 7,0 Z\" id=\"Combined-Shape\"><\/path>\n                    <\/g>\n                  <\/g>\n                <\/g>\n              <\/g>\n            <\/svg>\n          <\/a>\n        <\/article>\n\t\t\t<? endforeach;\n    endif; ?>\n  <\/div>\n  <a class=\"feed__more\" href=\"https:\/\/www.edificom.ch\/en\/?page_id=423\" target=\"\">Voir plus<\/a>\n<\/section>","protected":false},"excerpt":{"rendered":"<p>The\u00a0National Cyber Security Centre (NCSC) defines Ransomware as a family of malware (malicious software) that encrypts data on the victim&#8217;s computer and on network shares in order to make the data unusable for the victim. A &#8220;locked screen&#8221; then appears on the victim\u2019s screen requesting a ransom (often in the form of cryptocurrencies) so that the data can be decrypted.<\/p>\n","protected":false},"author":2,"featured_media":1703,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[18],"tags":[],"class_list":["post-2233","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-2"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/posts\/2233","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/comments?post=2233"}],"version-history":[{"count":3,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/posts\/2233\/revisions"}],"predecessor-version":[{"id":2236,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/posts\/2233\/revisions\/2236"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/media\/1703"}],"wp:attachment":[{"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/media?parent=2233"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/categories?post=2233"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.edificom.ch\/en\/wp-json\/wp\/v2\/tags?post=2233"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}