{"id":7590,"date":"2021-07-01T12:55:00","date_gmt":"2021-07-01T00:55:00","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=7590"},"modified":"2021-07-01T12:55:00","modified_gmt":"2021-07-01T00:55:00","slug":"yet-another-reason-why-paying-ransomware-demands-hurts","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=7590","title":{"rendered":"(yet) another reason Why paying ransomware demands hurts. (The FBI agrees)"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221;][et_pb_row column_structure=&#8221;2_5,3_5&#8243; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; sticky_enabled=&#8221;0&#8243;][et_pb_column type=&#8221;2_5&#8243; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221;][et_pb_text _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; sticky_enabled=&#8221;0&#8243;]<\/p>\n<h2 style=\"text-align: center;\">We don&#8217;t negotiate with terrorists<\/h2>\n<p>Recently, we asked the<a href=\"http:\/\/kinetics.co.nz\/should-it-be-illegal-to-pay-ransomware-in-nz\/\"> question if organisations should pay ransomware demands.<\/a> There is a balance between desperation and the uneasy knowledge that you might be funding further criminal attacks on the community.<\/p>\n<p>We\u2019ve just read a paper which tells us that it also makes you more likely to be subject to another attack.\u00a0<\/p>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;3_5&#8243; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221;][et_pb_image src=&#8221;http:\/\/kinetics.co.nz\/wp-content\/uploads\/2021\/06\/RansomDemand.jpg&#8221; title_text=&#8221;RansomDemand&#8221; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;-30px|auto||auto||&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221;][et_pb_text _builder_version=&#8221;4.9.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; sticky_enabled=&#8221;0&#8243; min_height=&#8221;464px&#8221; custom_margin=&#8221;8px|||||&#8221;]<\/p>\n<p>The authors of the paper, Cybereason, are trying to sell their service, so you might well think it is a little self-serving of them to come to this conclusion, but in this case, we think they are right. It makes sense and the data they present is compelling.<\/p>\n<p>Their paper tells us that 80% of organisations that pay a ransom are attacked again, often by the same criminals. These ransoms are crippling once, let alone twice.<\/p>\n<p><strong>One statistic that jumped out at me was the comment that 50% of law firms that suffered ransomware had to lay off staff to survive.<\/strong><\/p>\n<p>That is a little more than average which was 29% of organisations having to lay off staff after an attack, only slightly more than the number of organisations that had to shut down their operations entirely.<\/p>\n<p>Another conclusion the report draws is that paying the ransom doesn\u2019t necessarily give you back your data. In almost half the ransoms paid, the data came back infected or damaged.<\/p>\n<p><strong>Chris Wray is the director of the FBI. <\/strong><a href=\"https:\/\/www.reuters.com\/technology\/fbi-director-wray-urges-companies-stop-paying-ransoms-hackers-2021-06-23\/\">\u00a0Here&#8217;s what he had to say:<\/a><\/p>\n<p style=\"padding-left: 40px;\"><em>&#8220;In general, we would discourage paying the ransom because it encourages more of these attacks, and frankly, there is no guarantee whatsoever that you are going to get your data back,&#8221; Wray testified before a U.S. Senate appropriations panel.&#8221;<\/em><span style=\"font-size: 14px;\">\u00a0<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>The obvious conclusion is to invest in your cyber-protection, rather than paying out ransoms.\u00a0 We&#8217;re committed to bringing forward pragmatic<a href=\"http:\/\/kinetics.co.nz\/cybersecurity\/\">\u00a0cyber-security solutions<\/a> for our clients, and we will keep developing these with new services forward as the threats evolve.<\/p>\n<p><strong>Read the Cybereason report yourself<\/strong> : <a href=\"https:\/\/www.cybereason.com\/ebook-ransomware-the-true-cost-to-business\">[eBook] Ransomware: The True Cost to Business (cybereason.com)<\/a><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We don&#8217;t negotiate with terrorists Recently, we asked the question if organisations should pay ransomware demands. There is a balance between desperation and the uneasy knowledge that you might be funding further criminal attacks on the community. We\u2019ve just read a paper which tells us that it also makes you more likely to be subject [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":7592,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-7590","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/7590","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=7590"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/7590\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=7590"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=7590"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=7590"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}