Skip to content

1.0 - Malware and Ransomware

1.1 - The Threat

  • Malware: Any software designed to gain unauthorised access to technical equipment, with the intention of causing damage, or financial gain to unauthorised parties.
  • Malware can be found in many forms, including viruses, worms, trojans, adware, spyware
  • A newer form is cryptojacking
  • Exploits system resources to carry out crypto mining
  • Systems often become infected by malware due to:
  • System vulnerabilities: Flaws in hardware or software
    • Can usually be fixed by patches, but these may not be applied in a timely manner
    • Even old vulnerabilities can still be malware targets
  • Social engineering: Attackers convince users to allow access to the system, this can be via methods such as downloading infected software, or infected email attachments
  • Ransomware: Malware that encrypts data and files on infected systems until the victim sends money to the attacker(s)
  • Files may also be stolen and threatened to be exposed as part of ransomware attacks.
  • One of the most common methods used to initiate ransomware attacks is phishing emails.

1.2 - Protection Steps

  1. Make frequent backups of systems - the more frequent the better, to reduce the impact of any lost data.
  2. Ensure backups are tested!
  3. Apply security updates and patches in a timely manner i.e. ASAP when released.
  4. Upgrade to the latest OS versions in a timely manner.
  5. Install and configure firewalls to deny by default
  6. Install anti-malware software to systems