Skip to main content

Hackers are now favoring ransomware over personal data theft

IBM’s latest X-Force Threat Intelligence Index report reveals that more than 2.9 billion records were leaked through publicly disclosed incidents in 2017. While that sounds horribly bad, there’s a bright side to this stormy disclosure: the number is 25 percent lower than the amount of records leaked in 2016. Why? Because hackers are shifting over to ransomware. They’re becoming more focused on holding files hostage for money than on unleashing all that data to the dark markets. 

According to IBM, this shift to ransomware cost corporations more than $8 billion globally during 2017, a number derived from downtime, ransom payments, and other impacts on day-to-day business. The global logistics and transportation industries alone lost “millions of dollars” in revenue during 2017 due to ransomware attacks. 

Recommended Videos

Ransomware is a type of malware that infiltrates a network and encrypts files on connected PCs. These files become unrecoverable, and require a “key” generated by the hacker to be released from captivity. These keys are provided after a payment using cryptocurrency, adding to the overall cost corporations incur due to downtime. Hiring a third party to recover the files may or may not work, depending on the level of encryption. 

“With the potentially irreversible encryption lock of crypto-ransomware, victims without up-to-date backups often choose to pay the ransom their attackers demand,” the report states. “Losing one’s files on personal devices may cost a few hundred dollars, but that effect extends much further for organizations where infected users could cause the company to lose massive amounts of data, and possibly to have to pay the criminals considerable sums of money to get it back.” 

The report reveals that many organizations keep cryptocurrency on hand so they can resolve the problem quickly and reduce costly downtime. Law enforcement agencies discourage payments to hackers, but the rising ransomware “epidemic” is getting to the point where it may potentially cost corporations across the globe more than $11.5 billion annually by 2019, according to research by Cybersecurity Ventures. Malware, by contrast, values leaked personal data over the potential financial gain of locking sensitive data on corporate networks. 

In addition to ransomware, the report covers network attack trends, inadvertent insider incidents, insider-inflicted breaches, cybercrime, and cryptocurrency. One of the more alarming entries is the section about misconfigured cloud servers, which resulted in the exposure of more than two billion records in 2017, a whopping 424-percent increase over 2016. The problem actually dates back to 2015, as researchers found they could access the data on these cloud servers without the need for a username or password. 

In 2017 alone, 19 incidents regarding misconfigured cloud storage breached 345,850,453 records, equaling 2.2TB worth of data. Meanwhile, misconfigured cloud databases enabled 11 incidents exposing 566,402,270 records equaling 1.2TB worth of data. Misconfigured rsync, NAS, and backup solutions caused five incidents exposing 393,434,309 records equaling to 1TB of data. 

Financial services saw the largest issues in 2017 for the second year in a row. They experienced the highest volume of security incidents while falling in third place regarding actual cyberattacks. Information and communications technology industries experienced the highest number of attacks and the second-largest in security incidents. Manufacturing fell to third place in both attacks and incidents, followed by professional services. 

Kevin Parrish
Former Digital Trends Contributor
Kevin started taking PCs apart in the 90s when Quake was on the way and his PC lacked the required components. Since then…
The creators of the Arc browser are reimagining web browsers yet again
A screenshot of Dia being used on a Mac.

The people behind the Arc browser are recruiting for a new big project -- a second browser product powered by AI. It was hinted at recently, but now it's official. It's called Dia, and it's built around The Browser Company's belief that AI features can't be contained in a single app or behind a single button -- instead, software needs to built from the ground up with AI in mind.

The video the company posted is part product announcement and part recruitment video, and it teases a few features the new browser will have. It seems it will get all the now-usual AI features like an autocomplete-type feature that fetches facts from the web, as well as summary generation and idea generation.

Read more
These Cyber Monday stocking stuffers are now on sale
Two boys playing with a Simon Says Micro.

Christmas is upon us, and although there's a lot of heartfelt sentiment around the biggest holiday of the year, it also means something more material: gifting (!). If you're using Cyber Monday deals to start getting gifts, that's great — but most buys are usually too large to fit in a stocking (just try to fit one of these Cyber Monday Alienware deals in a sock!), and the prices can be way off.

How much should you spend on stocking stuffers? What is "allowed"? We rounded up a list of the best gifts to buy on Cyber Monday for your stocking-stuffing needs — all of which are tiny treasures that will undoubtedly be well-received and, in some cases, will generate a fun laugh.
Best Cyber Monday Sales

Read more
The Acer Aspire Go 15 Slim is sold out, so get this Acer Aspire Cyber Monday deal instead
Acer Aspire 3 Slim Laptop Cyber Monday deal

Not every laptop or desktop computer has to be built to tackle a super-heavy workflow or resource-heavy software suites. In fact, if you’re the kind of user who just needs a basic PC for web browsing, video chats, watching movies, and light gaming, we think the following offer may be of interest: For Black Friday and Cyber Monday, the Acer Aspire Go 15 was discounted by $100.

Unfortunately, that deal is sold out, but we found an Acer Aspire 3 Slim for $280 -- saving you over $40. It features a 15.6-inch full HD display, AMD Ryzen 3 7320U processor, 8GB of LPDDR5 RAM, and a 128GB NVMe solid-state drive. Honestly, it might be more impressive than the Aspire Go from the previous deal.

Read more