{"id":6971,"date":"2022-01-13T09:17:25","date_gmt":"2022-01-13T08:17:25","guid":{"rendered":"https:\/\/immune.institute\/?p=6971"},"modified":"2022-01-13T09:17:25","modified_gmt":"2022-01-13T08:17:25","slug":"ataque-ransomware-que-es","status":"publish","type":"post","link":"https:\/\/immune.institute\/en\/blog\/ataque-ransomware-que-es\/","title":{"rendered":"Ransomware attack: what is it and how to protect yourself?"},"content":{"rendered":"<p><b>Data kidnappings are also a reality. <\/b><span style=\"font-weight: 400;\">Individuals and companies are forced to pay (a grave error) to recover damaged files or equipment. A whole business from which hackers profit.<\/span><\/p>\n<blockquote>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">As we always say on this blog, IT security is fundamental. Therefore, we must be alert to cyberattacks.<\/span><\/p>\n<\/blockquote>\n<p><span style=\"font-weight: 400;\">On this page, we explain more about \u201cransomware attacks: what they are and how to stay protected\u201d.<\/span><\/p>\n<h2><span style=\"font-weight: 400;\">Ransomware: what it is and how it works<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">A ransomware attack is a type of malware, in which <\/span><b>An attacker locks a device or files in exchange for money.<\/b><span style=\"font-weight: 400;\">. The hacker requests a ransom so that the victim can regain access to their data.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">And to understand how a ransomware attack works, you need to know the following concepts.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">Exploits, social engineering, and phishing<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">To begin with, do you know what an exploit is?<\/span><\/p>\n<blockquote>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">An exploit is code or a program, designed by a cyber attacker, which serves to take advantage of a security vulnerability in a device, app or network; in order to use it for their benefit.<\/span><\/p>\n<\/blockquote>\n<p><span style=\"font-weight: 400;\">To this action, we must add <\/span><b>Social engineering or manipulation<\/b><span style=\"font-weight: 400;\"> to carry out the cyber attack. A convincing message that makes us bite, like fish.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Finally, the <\/span><a href=\"https:\/\/immune.institute\/en\/spear-phising-que-es-y-como-evitarlo\/\"><span style=\"font-weight: 400;\">Phishing<\/span><\/a><span style=\"font-weight: 400;\"> is the action which consists of a <\/span><b>link or attachment<\/b><span style=\"font-weight: 400;\"> (allegedly sent by a trusted contact) that when downloaded, the ransomware attack begins.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">4 types of ransomware attack<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">To answer the question of what ransomware is and how to stay protected, it's important to know the different types of ransomware that exist:<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">1. Encryption ransomware or encryptors<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">This group is also known as \u201cfilecolders\u201d. <\/span><b>They are the most popular type of ransomware attack.\u00a0<\/b><\/p>\n<blockquote>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">This type of malicious software is responsible for blocking and encrypting specific files (databases, documents, reports, videos, etc.). Attackers use cryptography to prevent the user from accessing them.\u00a0<\/span><\/p>\n<\/blockquote>\n<p><span style=\"font-weight: 400;\">In this way, the hacker gives the victim a deadline and demands payment in exchange for not damaging or destroying these files.<\/span><\/p>\n<p><b>How to know you are suffering a crypto-ransomware attack<\/b><span style=\"font-weight: 400;\"> The file extension will change and you will be unable to open it.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">Screen locker<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">Nowadays, screen lockers usually attack in <\/span><b>smartphones or tablets<\/b><span style=\"font-weight: 400;\">. And as its name suggests, this ransomware or virus locks your device's screen.\u00a0<\/span><\/p>\n<blockquote>\n<p style=\"text-align: center;\"><span style=\"font-weight: 400;\">Specifically, it prevents access to your computer's interface without affecting files or the system. This way, you may possibly be able to recover the files from the device once it's deleted.\u00a0<\/span><\/p>\n<\/blockquote>\n<p><b>How does this type of ransomware work?<\/b><span style=\"font-weight: 400;\"> A lock screen appears which either displays a message with payment instructions, or the hacker impersonates a police institution, \u2018informing\u2019 the user that they have broken the law and thus must pay a fine.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">3. Scareware<\/span><\/h3>\n<p><b>They pose as fake antivirus software.<\/b><span style=\"font-weight: 400;\"> Hackers create alert messages, informing the victim of potential problems with their equipment.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The user is pecking and, consequently, <\/span><b>pays for fake software that \u2013 on top of that \u2013 acts like malware<\/b><span style=\"font-weight: 400;\">. So not only will they have paid in vain, but from then on the attacker will have access to the victim's personal information.\u00a0<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">4. Doxware or doxing<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">Also known as leakware, this type of attack plays on the <\/span><b>The victim's personal files<\/b><span style=\"font-weight: 400;\"> (photographs, videos, credit card details...).<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A fake link or file is the key for these hackers to access that personal data. The attacker blackmails the victim with publishing said information.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">Identifying the type of ransomware is essential for protection.<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">Indeed, <\/span><b>to know what type of ransomware we are facing<\/b><span style=\"font-weight: 400;\"> This is fundamental to being able to eliminate it. This would, firstly, be one of the key points that all types of companies carry out in the face of cyberattacks.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">This is added to different <\/span><b>Information security methodologies or philosophies.<\/b><span style=\"font-weight: 400;\"> Examples of this? In the first area, the <\/span><a href=\"https:\/\/immune.institute\/en\/reversing-de-malware-bases-ciberseguridad\/\"><span style=\"font-weight: 400;\">Reversing the malware<\/span><\/a><span style=\"font-weight: 400;\"> (that in-depth study of a malicious software) and, on the other hand, there is <\/span><a href=\"https:\/\/immune.institute\/en\/devsecops-y-su-importancia-en-la-ciberseguridad\/\"><span style=\"font-weight: 400;\">DevSecOps<\/span><\/a><span style=\"font-weight: 400;\">. This software development philosophy advocates for the automation of security processes.<\/span><\/p>\n<p><b>Prevention is key in cybersecurity.<\/b><span style=\"font-weight: 400;\"> And companies know this. That's why these repeated actions are important:\u00a0<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Perform <\/span><b>Backups<\/b><span style=\"font-weight: 400;\"> periodically.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Keep the <\/span><b>Operating system updated<\/b><span style=\"font-weight: 400;\"> of all the teams.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Train staff <\/b><span style=\"font-weight: 400;\">in the face of potential risks (for example, emphasising the importance of never opening strange emails or clicking on suspicious links).<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To install an <\/span><b>Information security solution<\/b><span style=\"font-weight: 400;\">.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Hire professionals<\/b><span style=\"font-weight: 400;\">, specialising in cybersecurity.<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">And you, have you ever wondered <\/span><a href=\"https:\/\/immune.institute\/en\/que-se-necesita-para-trabajar-en-ciberseguridad\/\"><span style=\"font-weight: 400;\">What does it take to work in cybersecurity?<\/span><\/a><span style=\"font-weight: 400;\">?<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">Dedicate yourself to cybersecurity with IMMUNE<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">If you are interested in a career in the world of computer security, training is necessary., <\/span><b>At IMMUNE, we have various training options for future cybersecurity professionals.<\/b><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">So, don't forget to watch our <\/span><a href=\"https:\/\/immune.institute\/en\/programas\/bootcamp-en-ciberseguridad\/\"><span style=\"font-weight: 400;\">MSc Cybersecurity,<\/span><\/a><span style=\"font-weight: 400;\">\u00a0which is also available at <\/span><a href=\"https:\/\/immune.institute\/en\/ciberseguridad-avanzada-online\/\"><span style=\"font-weight: 400;\">online version<\/span><\/a><span style=\"font-weight: 400;\">. Enter a high-demand sector with the <a href=\"https:\/\/immune.institute\/en\/programas\/bootcamp-en-ciberseguridad\/\">Cybersecurity Bootcamp<\/a>.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Furthermore, if you wish, at IMMUNE we have this <\/span><a href=\"https:\/\/immune.institute\/en\/ingenieria-software\/\"><span style=\"font-weight: 400;\">Degree in Software Development Engineering<\/span><\/a><span style=\"font-weight: 400;\">, which you can supplement with your cybersecurity training.<\/span><\/p>","protected":false},"excerpt":{"rendered":"<p>Los secuestros de datos son tambi\u00e9n una realidad. Particulares y empresas se ven sometidos a pagar (craso error) para recuperar archivos o equipos da\u00f1ados. Todo un negocio del que sacan provecho los hackers. Como decimos siempre en este blog, la seguridad inform\u00e1tica es fundamental. Por tanto, hay que estar alerta ante los ciberataques. De esta [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":7405,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"ai_generated_summary":"","footnotes":""},"categories":[1],"tags":[],"class_list":["post-6971","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog"],"acf":[],"_links":{"self":[{"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/posts\/6971","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/comments?post=6971"}],"version-history":[{"count":0,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/posts\/6971\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/media\/7405"}],"wp:attachment":[{"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/media?parent=6971"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/categories?post=6971"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/immune.institute\/en\/wp-json\/wp\/v2\/tags?post=6971"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}