This worrying new ransomware trend is hitting businesses where it hurts

Lock on Laptop Screen
(Image credit: Future)

New evidence suggests that senior employees are those most likely to need ransomware protection, with cyberattackers deliberately targeting c-suite members and other high-ranking individuals.

 In addition, attackers are increasingly focusing on individual workstations to see if they can acquire information that might be used to threaten or embarrass senior members of staff.

In a standard ransomware attack, threat actors steal sensitive data pertaining to a company before sending a ransom demand and threatening to leak the information if it is not met. However, ZDNet reports that ransomware gangs have begun targeting information that, while not necessarily important for a compromised company, could prove damaging for top-level employees.

Individual targets

Often, senior members of staff are those most likely to be in a position to authorize ransomware payments, making them valuable targets. As a result, some attacks have focused on individual workstations rather than company-wide IT infrastructure.

So far, the sort of ransomware attacks that specially target individuals has been employed by groups that use the so-called “Clop” ransomware, a strain of malware that has been around since at least 2019. Other ransomware gangs may also be adopting similar tactics, particularly if they prove effective.

What’s more, it’s been observed that ransomware attackers have begun backing up their campaigns with threatening phone calls, press outreach and other tactics to put pressure on businesses and individuals to meet ransom demands.

Often, this new type of ransomware attack looks for information regarding any ongoing legal disputes that a company may be experiencing. Bill Siegel, CEO of security firm Coveware, told ZDNet that any claims made by an attacker should be scrutinized. Many ransomware groups overstate the importance of the information they have secured in an attempt to encourage payment.

Via ZDNet

TOPICS
Barclay Ballard

Barclay has been writing about technology for a decade, starting out as a freelancer with ITProPortal covering everything from London’s start-up scene to comparisons of the best cloud storage services.  After that, he spent some time as the managing editor of an online outlet focusing on cloud computing, furthering his interest in virtualization, Big Data, and the Internet of Things. 

Latest in Security
Isometric demonstrating multi-factor authentication using a mobile device.
NCSC gets influencers to sing the praises of 2FA
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Dangerous new CoffeeLoader malware executes on your GPU to get past security tools
China
Notorious Chinese hackers FamousSparrow allegedly target US financial firms
A digital representation of a lock
NYU website defaced as hacker leaks info on a million students
NHS
NHS IT supplier hit with major fine following ransomware attack
Businessman holding a magnifier and searching for a hacker within a business team.
Cloud streaming hoster StreamElements confirms data breach following attack
Latest in News
cheap Nintendo Switch game deals sales
Nintendo didn't anticipate that Mario Kart 8 Deluxe was 'going to be the juggernaut' for the Nintendo Switch when it was ported to the console, according to former employees
Three angles of the Apple MacBook Air 15-inch M4 laptop above a desk
Apple MacBook Air 15-inch (M4) review roundup – should you buy Apple's new lightweight laptop?
Witchbrook
Witchbrook, the life-sim I've been waiting years for, finally has a release window and it's sooner than you think
Amazon Echo Smart Speaker
Amazon is experimenting with renaming Echo speakers to Alexa speakers, and it's about time
Shigeru Miyamoto presents Nintendo Today app
Nintendo Today smartphone app is out now on iOS and Android devices – and here's what it does
Nintendo Virtual Game Card
Nintendo reveals the new Virtual Game Card feature, an easier way to manage your digital Switch games