{"id":41162,"date":"2020-12-19T18:15:37","date_gmt":"2020-12-19T10:15:37","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=41162"},"modified":"2020-12-19T18:16:20","modified_gmt":"2020-12-19T10:16:20","slug":"ransomware-2-0-employs-pressure-tactic-to-prey-on-organizations-digital-reputation-in-apac","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2020\/12\/19\/ransomware-2-0-employs-pressure-tactic-to-prey-on-organizations-digital-reputation-in-apac\/","title":{"rendered":"Ransomware 2.0 employs &#8216;pressure tactic&#8217; to prey on organizations\u2019 digital reputation in APAC"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>Global cybersecurity company Kaspersky recently revealed in a virtual conference that 2020\u2019s cybersecurity \u201cdisease\u201d is targeted ransomware. Also dubbed as \u201cRansomware 2.0\u201d, this type of attack goes beyond kidnapping a company\u2019s or an organization\u2019s data. These groups are now utilizing the increasingly valued digital reputation to force their preys to pay hefty ransom.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Vitaly Kamluk, Director of Global Research and Analysis Team (GReAT) for APAC at Kaspersky, revealed that at least 61 entities from the region were breached by a targeted ransomware group in 2020. Australia and India logged the highest number of incidents across APAC.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In terms of industries, Kaspersky\u2019s data shows that the following segments were compromised:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Light Industry &#8211; includes the manufacturing of clothes, shoes, furniture, consumer electronics and home appliances<\/li><li>Public service<\/li><li>Media and Technology<\/li><li>Heavy Industry \u2013 includes oil, mining, shipbuilding, steel, chemicals, machinery manufacturing<\/li><li>Consulting<\/li><li>Finance<\/li><li>Logistics<\/li><\/ul>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/ecp.yusercontent.com\/mail?url=https%3A%2F%2Flh3.googleusercontent.com%2FJFDKfiaDyvLxtVvkgJ0UbTDsN2Wrqpkz1PpVOufIZ9ZaJYMV-mI2RTlxZ70yJq2_gwA8RsW3nMd-5ZJZgEGm0PiwplIaC6P-553OqOFKKxy8Bgr_G72saEtITr2Gy3PBWq3fXGEB&amp;t=1608372745&amp;ymreqid=27f3344f-c727-c29c-1cb0-1f005d01df00&amp;sig=Lm1dvYLBHNenwGMbTYt21w--~D\" alt=\"C:\\Users\\gonzales_r\\AppData\\Local\\Microsoft\\Windows\\INetCache\\Content.Word\\Kaspersky_Targeted ransomware APAC.png\"\/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cTargeted ransomware has been a problem for many Asian enterprises. Over 61 companies were breached this way in Asia alone. In some cases, Maze ransomware gang claimed responsibility and published stolen data from the compromised companies,\u201d said Kamluk.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Maze group stands out as the most active and the most damaging of all. Formed in summer 2019, it took them about half a year to prepare and launch a full scale campaign against many businesses. The first victims appeared in November 2019, when they leaked 700MB of victim\u2019s internal data online.\u00a0<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Many other cases followed and within a year Maze breached at least 334 companies and organizations. This is one of the first groups which started the use of \u201cpressure tactic\u201d. This refers to cybercriminals threatening victims that they will publicly leak most sensitive data stolen from their compromised systems via the group\u2019s own website.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cPressure tactic is a serious threat to public and private organizations. This attack plays on companies\u2019 digital reputation as it threatens to divulge data of a breached entity, compromising its security and its name at the same time,\u201d he added.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Kamluk noted that digitalization has birthed different pressure points for a company. Before, enterprises\u2019 main concerns only included business continuity and, depending on the industry, government regulation. Now, surviving in the era of digital reputation economy means that they should also be aware of business trust \u2013 with their partners and customers \u2013 as well as public opinion.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A recent survey conducted by Kaspersky proved Vitaly\u2019s points. Results showed that 51% of users in APAC agree that a company\u2019s online reputation is essential. Almost half (48%) also admitted that they avoid companies who were involved in a scandal or had received negative news coverage online.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cMaze group just announced that they are closing down, but this gang just triggered the beginning of this trend. A successful targeted ransomware attack is a PR crisis which can damage an organization\u2019s reputation, online and offline. Financial toll aside, fixing one\u2019s name is quite a harder task to take which is why we urge public and private entities to take their security seriously,\u201d adds Kamluk.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To remain protected against these threats, Kamluk suggests enterprises and organizations to:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Stay ahead of your enemy: make backups, simulate attacks, prepare action plans for disaster recovery.<\/li><li>Deploy sensors everywhere: monitor software activity on endpoints, record traffic, check hardware integrity.<\/li><li>Never follow demands of the criminals. Do not fight alone &#8211; contact Law Enforcement, CERT, security vendors like Kaspersky.<\/li><li>Train your staff while they work remotely: digital forensics, basic malware analysis, PR crisis management.<\/li><li>Follow the latest trends via premium threat intelligence subscriptions, like Kaspersky APT Intelligence Service.<\/li><li>Know your enemy: identify new undetected malware on premises with Kaspersky Threat Attribution Engine.<\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Vitaly Kamluk, Director of Global Research and Analysis Team (GReAT) for APAC at Kaspersky, revealed that at least 61 entities from the region were breached by a targeted ransomware group in 2020. Australia and India logged the highest number of incidents across APAC. <\/p>\n","protected":false},"author":6,"featured_media":40197,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[101,54,2103,3914,53,4100,4234],"class_list":["post-41162","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-kaspersky","tag-security","tag-security-breach","tag-security-platform","tag-security-risk-management","tag-security-solutions","tag-security-as-a-service"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/41162","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=41162"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/41162\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/40197"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=41162"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=41162"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=41162"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}