Industry Trends
This blog is a summary of a byline entitled, “All in the (Ransomware) Family: 10 Ways to Take Action,” written for Threatpost by Fortinet’s Chief of Security Insights & Global Threat Alliances, Derek Manky.
In last quarter’s Threat Landscape Report, FortiGuard Labs reported at least two significant ransomware families – Sodinokibi and Nemty – have been deployed as RaaS (Ransomware-as-a-Service) solutions. As-a-service offerings, especially when combined with new evasion techniques and their ability to deliver increasingly sophisticated malware, have played a significant role in the uptick in attacks and network compromises.
The GandCrab ransomware reportedly earned more than $2 billion for its developers in less than two years. Much of the money was the result of their use of RaaS to distribute their malware. By establishing a network of affiliate partners, GandCrab’s authors were able to spread their ransomware widely and scale earnings dramatically by taking a slice of every attack.
With the addition of two additional prevalent ransomware variants to the RaaS sales model, ransomware not only continues to be a clear and present danger to enterprise organizations, but organizations can expect a significant uptick in the volume and severity of attacks for the coming year. By using the RaaS model, the authors of malware such as Sodinokibi and Nemty are significantly lowering the bar for launching attacks, making ransomware even more accessible and profitable for a growing pool of bad actors.
Organizations need to take steps now to protect their networks and networked resources from the growing problem of sophisticated ransomware. Here are 15 things you can start to implement today.
As cybercriminals expand the RaaS market with new ransomware variants to expand their earning potential, enterprises have to significantly step up their efforts to protect themselves. Bad actors are focusing their attacks to achieve maximum impact and profitability, often combining highly targeted attacks with increasingly stealthy and unexpected methods. Organizations that prepare now stand the greatest chance of withstanding this latest wave of malicious criminal activity.
This blog is a summary of a byline entitled, “All in the (Ransomware) Family: 10 Ways to Take Action,” written for Threatpost by Fortinet’s Chief of Security Insights & Global Threat Alliances, Derek Manky.
Read more about the latest cybersecurity threat trends and the rapidly evolving threat landscape in our latest Quarterly Threat Landscape Report.