Ransomware is a type of malicious software, or malware, designed to deny access to, or "lock," files on a computer system until the victim makes a ransomware payment to the attacker.


It’s often distributed as a trojan (malware disguised as a legitimate file) through phishing emails or links on an infected website. Once a system is infected, the ransom demand is typically displayed on the locked screen with directions on how to pay (often with cryptocurrency, since it’s untraceable). Unfortunately, paying the ransom doesn’t always result in restored access to files or removal of the ransomware. Some of the most damaging recent examples of ransomware include WannaCry, Petya and Locky

Ransomware and Why It Matters


You’ve seen it all over the news: ransomware has run amok. Attacking and squeezing organizations of all sizes and types, this especially insidious malware boils down to something like, hand over the cash or lose your data (and surprise, surprise: the former doesn’t necessarily guarantee the latter).    


Between nation-state threat actors and the rise of ransomware as-a-service (RaaS) operations, ransomware seems to be the weapon of choice for today’s cybercriminal. As it happens, experts currently estimate that a business is hit by ransomware every 11 seconds.1


Just in case that’s not enough to lose sleep over, ransomware continues its fast-track evolution. Sneakier and more aggressive variants have already been spotted in the wild, with some of them using novel techniques like intermittent encryption to evade detection. And thanks to ransomware authors leasing their user-friendly products on the dark web, it no longer takes a skilled hacker to perform such an attack. That’s right—the market is now wide open to garden-variety criminals, as well. And if paying to get your own data back wasn’t bad by itself, some victims must pay a second ransom to prevent these criminals from releasing their information publicly. 


