Thursday, March 20, 2014

Ransomware next targets could be enterprises



This is natural progression and more money. Of course, we will have security vendors who would claim protection against these and sell us more crap (using buzz words like Analytics) with common characteristics like:
  • Partial Implementation
  • No Tune-up
  • Fake ROI
  • Ultimately false sense of security (remember Target and FireEye). This is the result of #1 and #2.


DISCLAIMER:

"I am not GOD so, I admit that I could be wrong anywhere between 0 - 100%"

According to the article:- 

Encrypting your most important files isn’t the only method that cyber criminals employ, however. They can also place files on your computer that put you in an awkward position. Common practice includes downloading indecent materials on a computer that one uses for work. Employees fearful of losing their jobs for having illicit content found on their devices are that much more likely to pay the “ransom.”

So why is ransomware gaining so much momentum among cyber criminals? Well, its rise to prominence has paralleled the explosion in popularity of the bring-your-own-device (BYOD) movement. 


The answer is for enterprises to implement a comprehensive, defense in depth information security framework that allows for BYOD and remote access without compromising the corporate network

The first line of defense would be to require best-of-breed anti-virus and anti-malware solutions on employee devices to protect them against a range of malicious software


The links below has additional information:

No comments:

Post a Comment