Ransomware threat actors are becoming increasingly adept at exploiting vulnerable system services and unpatched operating systems to launch their attacks. However, most ransomware breaches still require end-user interaction.
Ransomware executes and establishes persistence mechanisms when an end-user clicks on a link or opens a weaponized attachment in a threat actor's email.
Command and Control
The ransomware calls home to an attacker-owned command-and-control server to provide information about the victim's computer and download an encryption key.
The ransomware uses the key to encrypt both the victim's hard drive(s) and all network-accessible data stores.
The attacker demands payment for the decryption key the victim needs to recover their files or risk losing them permanently if they miss the payment deadline.
Ransomware payments are typically made with digital currencies, such as bitcoin, that are difficult, but not impossible, to trace. Most, but not all, transactions end successfully.
Many companies are trying to figure out what the best solution is to mitigate and prevent ransomware. BlackBerry Cylance has you covered! Ever since we purchased the product over three years ago, we have yet to have one computer infected with any type of virus, ransomware, malware, etc.
IT Team Lead @ Anonymous Higher Education Company
Thanks to the AI engine that doesn't rely on signatures. CylancePROTECT® has prevented many ransomware infections and other malicious files, saving us lots of money.
Information Security Engineer @ Anonymous Healthcare Firm
Two years after its initial deployment, CylancePROTECT is still quietly at work combatting malware, memory exploits, malicious scripts, weaponized docs, and other threats at Dexar Group. "We haven’t had to contend with a single ransomware incident since completing the deployment.
Daniel Cox, Chief Information Officer, Dexar Group
Since installing CylancePROTECT, we have seen zero incidents of ransomware and zero-days, and experienced zero down time from endpoint security incidents which is pretty impressive. Cylance makes my life much easier!
Dave Smith, Cape Intermediate Holdings