80% of orgs that paid the ransom were hit again
91–100 of 386 posts
Re: 80% of orgs that paid the ransom were hit again
#92Anyone else think we should make it illegal to pay ransom? These people are just financing the next generation of cyber criminals. Once people stop paying, people will stop attacking.
Yes, because criminals definitely follow the law.
Re: 80% of orgs that paid the ransom were hit again
#93Re: 80% of orgs that paid the ransom were hit again
#94Earlier quoted context omitted.
Once the criminals start maintaining their own backups of victims data and helping them restore from rival attacks, they can successfully call themselves a mob. Somehow, that's a quite believable scenario.
> they can successfully call themselves a mob Or Backblaze's evil twin.
Re: 80% of orgs that paid the ransom were hit again
#95“Never negotiate with terrorists” is a simple and clear mantra, and as most clear and simple concepts it hides a lot of assumptions. One of them is you are ready to lose the hostage in the worst case scenario. That’s how the police sees it, because the society benefits more from being firm in individual cases than losing a few of its members that might not come back anyway. That’s a hard one to swallow, hard enough t…
Re: 80% of orgs that paid the ransom were hit again
#96According to a study by Cybereason, which sells endpoint protection software.
Alternatively, Cybereason are probably in a really good position to snarf passwords and then parallel construct an attack from a third party who gives a few major individual shareholders a kickback.
Does endpoint security even work?
Re: 80% of orgs that paid the ransom were hit again
#97“Never negotiate with terrorists” is a simple and clear mantra, and as most clear and simple concepts it hides a lot of assumptions. One of them is you are ready to lose the hostage in the worst case scenario. That’s how the police sees it, because the society benefits more from being firm in individual cases than losing a few of its members that might not come back anyway. That’s a hard one to swallow, hard enough t…
That's the theory. But much like war on drugs or TSA, whether its real-world outcomes match the theoretical ones is debatable.
https://www.newamerica.org/international-security/policy-pap...
Re: 80% of orgs that paid the ransom were hit again
#98Meaningless stat without a baseline to compare against. How many who didn't pay were hit again?
If the attacker isn't paid for the first attack, why would she attack again? She's not doing it for the lulz! I do agree with you that there should be more visibility for the "silent majority" of firms who operate their businesses responsibly, and therefore don't ever need to pay ransom.
Maybe it's all automated shotgun based attacks and they don't close the holes and so the act of paying the ransom is statistically meaningless
This is shoddy journalism. Might as well just say "X%". It implies you shouldn't pay lest you fall victim again but they don't actually say that.
Things that implicate what they refuse to say is kind of suspect
Re: 80% of orgs that paid the ransom were hit again
#99The fast growth desires lead to a lot of vulnerabilities, yesterday I signed up to a service and they emailed me my own username and password, simple plain text. Incredible.
Re: 80% of orgs that paid the ransom were hit again
#100Meaningless stat without a baseline to compare against. How many who didn't pay were hit again?
If the attacker isn't paid for the first attack, why would she attack again? She's not doing it for the lulz! I do agree with you that there should be more visibility for the "silent majority" of firms who operate their businesses responsibly, and therefore don't ever need to pay ransom.