Should a business ever pay a ransomware demand?

Should a business ever pay a ransomware demand?
The one word that universally incites fear, concern, stress and sleepless nights across every in a business is commonly known as Ransomware.
What is Ransomware?
Ransomware is a type of malware from cryptovirology that threatens to publish the victim's data or perpetually block access to it unless a ransom is paid.
It started with a trojan called PC Cyborg and has evolved into a multitude of darkweb services examples include Petya, Cerber, Satan RaaS Platform etc.
How is it delivered?
Typically to an unsuspecting user, either through spamming hundreds of thousands of accounts with malicious links to play the numbers game. Or alternatively targeting specific individuals with an intelligence led attack. There are many social sophisticated engineering attacks deployed to get a user to open or click a link.
Should you pay?
- If you pay up, what is to stop it happening again?
- If you don’t pay, will you get your data back? This becomes slightly more desperate if you don’t have recent or an adequate backup of your data.
- If you pay, you make it worth fuel the success of the criminal actions.
- No data, no business. Will the business survive if you don’t?
The various silver bullet products, solutions, policies and system testing can and absolutely go a long way in preventing, securing and backing up your data to make your business as resilient as possible.
The other key is to raise awareness and train the weakest link, aka the users of the systems. An educated user who is aware of the basics of cyber security will make a significant difference.
Thoughts from an expert:
Clive Finlay Head of EMEA Solution Engineering Symantec (A Division of Broadcom)
Companies should never pay the ransomware, for a multitude of reasons, the main one being that you may fuel the criminal organisation to do more; and there is no reason why they will not hit your company again after you pay. Also, bear in mind that in some parts of the world like the US it is a criminal offence to pay the ransom, this is considered funding terrorism. However, we all appreciate what a difficult position a company may be in should their critical data be crypto-locked via ransomware, since there is no way of decrypting without the key due to the industrial strength of the encryption that is typically used today. This is why investment in modern cyber security endpoint protection and system back-ups are critical. Your last line of defence is backing up your data and if there is a weak link here in your current organisational back-up process then don’t delay in putting it right.
Andy Qualtro. Security Professional.
Don’t ever pay.
1) You fund the bad guys
2) There’s no guarantee that someone who was willing to blackmail you in the first place will keep to their side of any deal ... I know what I’d put my money on.
Prevention is the best course of action. Focus on keeping your malware defences up to date and your data backed up.
If you are hit you’ll have a backup, right? A simple restore and a tool such as Power Eraser (available free from Norton) will sort you out.

Latest Jobs
-
- IAM Consultant- OKTA
- Germany
- upto €90,000 plus benefits
-
I am looking for an experienced IAM process Manager to help drive forward a series of IAM implementation for a global Manufacturing business, Ideally you will be skilled with Okta and have knowledge of PAM Solutions, You will be responsible for: Driving the design and continuous improvement of complex IAM solutions in close collaboration with business partners Consult on the optimisation of IAM processes and design proper IT-based solutions to meet availability and quality targets Define technical specifications for SW-development (standards, design patterns, test cases, scenarios) and manage the life cycle of designed solutions Actively scan for relevant innovations and new technologies to identify further potential for improving IAM solutions and processes using OKTA Analyse new features of the regular Okta releases We are looking for someone with strong IAM experience as an Architect, Analyst, Technical Engineer, or similar role in the Identity and Security domain Experience with relevant certifications in development/administration, design and configuration of the Okta IAM platforms Familiar with LCM - joiners, movers, leavers, application federation - SAML, OIDC, SCIM and many other IAM terms Good mix of competences in IAM business process and project management concepts and tools e.g., ServiceNow, Jira, PRINCE2, SCRUM (agile)
-
- SAP Security Consultant
- France
- upto €70,000 plus benefits
-
I am looking for an experienced SAP Security Consultant. The ideal candidate will have a strong understanding of SAP security concepts and be able to apply them to real-world scenarios. ideally you will also have experience with Securitybridge or Onapsis, or a similar SAP security tool. Your responsibilities will include: Reviewing and auditing SAP security settings and controls Identifying and remediating security vulnerabilities Implementing security best practices Educating users on SAP security Experience experience in SAP security Experience with Securitybridge or Onapsis, or a similar SAP security tool would be very advantageous Strong understanding of SAP security concepts Excellent problem-solving and analytical skills Excellent communication and presentation skills Fluent in French & English
-
- Post Grad MSc Cyber security - Junior Cyber Risk Analyst wanted. UK
- United Kingdom
- Entry role
-
The perfect start to your new Cyber Security Career. Post Graduate Cyber Risk Analyst Wanted. Are you are fresh from earning your Cyber Security MSc and eager to start your career in Cyber Security? We are looking for a recent post graduate to join a forward thinking Cyber Security Consultancy for the ideal entry role into Cyber Security. Whilst employed industry experience is not expected, as full training and support will be provided, a history of recent education in Cyber Security / Cyber Risk is essential. We are looking for someone with an inquisitive mind, who is confident to ask the right questions and who isn't afraid to challenge the status quo. Superb communication skills are a must (in person, written and verbal) This is a UK based role that is remote first with monthly travel (1-2 a month) to meet with the team and in time to meet clients. If you aren’t available to travel this isn’t the opportunity. We are unable to provide VISA sponsorship as there will be a requirement to achieve Security clearance If you're adaptable, open to fresh perspectives, and excited to be part of a forward-thinking team and looking for an opportunity to help make a difference in a Cyber consulting role, this opportunity is for you. For more information apply here……
-
- Microsoft Exchange Contractor | London | OUTSIDE IR35 | SC Cleared
- London
- OUTSIDE IR35
-
Microsoft Exchange Contractor | London | OUTSIDE IR35 | SC Cleared • We require someone that has experience of migration exchange from windows server 2012 to 2019. • In depth understand of On-Prem exchange server management and deployment. • Experience migrating On-Prem exchange servers from 2012 upwards. • Secure Email Gateway experience essential Due to the nature of the requirement the individual must be commutable to London 2-3 days a week.