Story image

Small businesses repeatedly falling victim to ransomware - Kaspersky

16 Oct 18

Small businesses with less than 50 employees can be a lucrative proposition for cybercriminals because of the data they hold on behalf of their clients and employees.

This can fetch a high price if sold or ransomed and can open up new revenue streams for enterprising criminals.

Besides the constant risk of cybersecurity disruption, a study from Kaspersky Lab has revealed that small businesses are also at risk because of their reliance on staff who are inexperienced at cybersecurity.

One-in-three firms this size entrust IT security to employees, who might not have the know-how necessary to protect businesses from prolific threats. 

The Kaspersky Lab report sheds light on how ransomware is impacting them — with findings showing that when these firms fall prey to ransomware, they tend to be victimised again and again.

Indeed, out of those small businesses that have suffered an incident in the past 12 months, many have fallen victim to multiple incidents – with 37% having experienced two or three infections.

This can have a crippling effect on a business because suffering downtime or a lack of access to files for prolonged periods can be extremely damaging.

Out of the ransomware victims surveyed, over a quarter (27%) have lost access to their data for weeks, meaning this issue is constantly putting small firms at risk of inactivity, and therefore loss of income and reputational damage.

Small businesses that are not cybersecurity-savvy are also more likely to pay the ransom requested as soon as possible to try to minimise downtime without knowing if the attacker legitimately has the ability or the intention to restore their business-critical data.

Kaspersky Lab B2B product marketing head Sergey Martsynkyan says, “Ransomware is one of the serious cyber threats faced by businesses today.

“When it strikes, it can have huge ramifications, no matter what size the business is. However, very small firms are particularly vulnerable to multiple incidents.

“One of the reasons for this may be that at many small businesses, the IT provision is managed by people that perhaps don’t know how to best avert the dangers – they simply don’t have the time or IT skills to cope with the threats”.

There are solutions in the market that can help businesses to protect themselves from the risk of ransomware and more.

Comms providers hit by most DDoS attacks in Q3 2018
New data indicates attackers preyed on the large attack surface of ASN-level communications service providers with a ‘bit-and-piece’ approach.
Check Point launches hyperscale network security solution
With Check Point Maestro, organisations can scale up their existing Check Point security gateways on demand.
Should AI technology determine the necessity for cyber attack responses?
Fujitsu has developed an AI that supposedly automatically determines whether action needs to be taken in response to a cyber attack.
Trend Micro’s telecom security solution certified as VMware-ready
Certification by VMware allows communications service providers who prefer or have already adopted VMware vCloud NFV to add network security services from Trend Micro.
Frost & Sullivan honours Honeywell's IIoT value creation
Frost & Sullivan has awarded Honeywell with the 2018 Global Customer Value Leadership Award for its work protecting industrial internet of things (IIoT) customers.
Top cybersecurity threats of 2019 – Carbon Black
Carbon Black chief cybersecurity officer Tom Kellermann combines his thoughts with those of Carbon Black's threat analysts and security strategists.
Google's €50m fine a wake up call for big data analytics
Data analytics are essential to company growth, competitive differentiation, and innovation. But there’s now a huge challenge.
UK security startup Barac sets sights on America
“Malware hidden in encrypted traffic is one of the biggest threats organisations are facing today,” says new EVP global sales.