Ransomware Attack On Accenture

The global business consulting firm Accenture has confirmed that it has become a victim of a LockBit ransomware attack. According to the company, LockBit was used in attempt to freeze various corporate databases, although the firm says that it has recovered all its data using backups. 

The LockBit ransomware-as-a-service (RaaS) gang has published the name and logo of Accenture, with a mischievous message and an implied threat to the security of even some of the world’s biggest, most powerful companies.

Ransomware Background

Ransomware is a subset of malware in which the data on a victim's computer is locked, typically by encryption, and payment is demanded before the ransomed data is decrypted and access is returned to the victim. The motive for ransomware attacks is usually monetary, and unlike other types of attacks, the victim is usually notified that an exploit has occurred and is given instructions for how to recover from the attack. Payment is often demanded in a virtual currency, such as bitcoin, so that the cyber criminal's identity is not known.

In May this year Colonial Pipeline paid almost $5 million to restore its systems after DarkSide used encryption to hold hostage the pipeline, which supplies nearly half of the East Coast’s fuel to 50 million people. 

The cybersecurity industry is stretched thin. Ransomware attacks are now so prolific that some companies simply cannot help every newly hacked victim get back online and a shortage of workers means no immediate help in sight. One of the biggest problems that organisations face in the battle against ransomware is a lack of expert guidance and attacks have become so prolific that organisations don’t have the internal expertise to address the risk and are unable to seek assistance from third parties.

The pace of attacks is seemingly relentless. President Biden has spoken about  the issue, stressing how much ransomware activity originates from Russia,where cyber criminals seem to work with impunity. In  of the most prolific ransomware gangs, REvil, carried out one of its boldest attacks on the Fourth of July weekend on Kaseya, a n IT services buisness which infected the customer supply chain. Experts say the hack permitted REvil to infect  more than 1,500 corporations in the US and around the world. 

Types of Ransomware

There are three main types of ransomware.

Scareware:   Scareware includes rogue security software and tech support scams. You might receive a pop-up message claiming that malware was discovered and the only way to get rid of it is to pay up. If you do nothing, you’ll likely continue to be bombarded with pop-ups, but your files are essentially safe. A legitimate cyber security software program would not solicit customers in this way. If you don’t already have this company’s software on your computer, then they would not be monitoring you for ransomware infection. If you do have security software, you wouldn’t need to pay to have the infection removed, you’ve already paid for the software to do that very job.

Screen Lockers:   When lock-screen ransomware gets on your computer, it means you’re frozen out of your PC entirely. Upon starting up your computer, a full-size window will appear, often accompanied by an official-looking like police  or Department of Justice seal saying illegal activity has been detected on your computer and you must pay a fine. However, the police would not freeze you out of your computer or demand payment for illegal activity. If they suspected you of piracy, child pornography, or other cyber crimes, they would go through the appropriate legal channels.

Encrypting Ransomware:   The hacking gangs steal your files and encrypt them, demanding payment in order to decrypt and redeliver. The reason why this type of ransomware is so dangerous is because once cyber criminals get ahold of your files, no security software or system restore can return them to you. Unless you pay the ransom, for the most part, they’re gone. Even if you do pay up, there’s no guarantee the cyber criminals will give you those files back.

The Future Of Ransomware 

As ransomware technology continues to advance, the technological margin between attackers and public targets has the potential to grow even wider. Within these targeted public sectors, specifically healthcare, attacks may be more costly in the coming years than ever before.

Predictions also indicate a growing focus on small businesses that run outdated security software. As the number of IoT business devices grows, small businesses can no longer think that they are too small to be attacked. This  attack vector is growing faster than effective the available security measure and the risk is that  domestic devices will become progressively more likely targets, alongside business.

NBC:     IEEE:      Oodaloop:        War on the Rocks:     ITGovernance:    Malwarebytes:      Techtarget:

CRN:        Threatpost:   Infosecurity Magazine:     

You Might Also Read:

No More Ransom Saves Victims:

 

« Suspected Russian Spy Arrested
Norton To Pay $8bn To Buy Avast »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Navista

Navista

Navista's hardware and software modules are especially designed to ease the deployment of secure networks.

Kualitatem

Kualitatem

Kualitatem Inc. is an independent software testing and information systems auditing company

ZyberSafe

ZyberSafe

ZyberSafe is an innovative Danish company specialized within building hardware encryption solutions.

SecuGen

SecuGen

SecuGen is a leading provider of advanced, optical fingerprint recognition technology, products, tools and platforms for physical and information security.

Arab Information & Communication Technologies Organization (AICTO)

Arab Information & Communication Technologies Organization (AICTO)

The Arab ICT Organization (AICTO) is an Arab governmental organization working under the aegis of the league of Arab States.

National Health Care Anti-Fraud Association (NHCAA)

National Health Care Anti-Fraud Association (NHCAA)

National Health Care Anti-Fraud Association is the leading national organization focused exclusively on the fight against health care fraud.

Global Cybersecurity Forum (GCF)

Global Cybersecurity Forum (GCF)

Global Cybersecurity Forum is a catalyst platform designed to create a more resilient and better cyberworld for all.

PixelPlex

PixelPlex

PixelPlex is a blockchain and custom software development company with offices and developers in New York, Geneva, and Seoul.

Marlabs

Marlabs

Marlabs is a Digital Technology Solutions company that helps companies adopt digital transformation using a comprehensive framework including Digital Automation, Enterprise Analytics and Security.

Mosaic Insurance

Mosaic Insurance

Mosaic is a next-generation global specialty insurer distinguished by an exceptional team, agile technology, and a structure that combines Lloyd’s of London strength with a global distribution network

6clicks

6clicks

6clicks is an easy way to implement your risk and compliance program or achieve compliance with ISO 27001, SOC 2, PCI-DSS, HIPAA, NIST, FedRAMP and many other standards.

NetGain Technologies

NetGain Technologies

NetGain Technologies helps small to medium-sized businesses gain access to expert IT talent. We provide strategies that use technology as a driving force behind business growth.

RAND Corporation

RAND Corporation

The RAND Corporation is a non-profit institution that helps improve policy and decision making through research and analysis.

Certera

Certera

Certera is a modern and affordable SSL Certificate, Code Signing Certificate, and Cyber Security Services provider.

SFY Information Technology

SFY Information Technology

SFY helps companies with Cyber Security and Managed IT, allowing them to focus on what really matters to them.

Clear Ridge Defense

Clear Ridge Defense

Clear Ridge was founded in April 2015 with the mission and vision to support Joint, Service Cyber Components, and commercial clients in specialized cyber support.