Ukraine War Has Actually REDUCED Ransomware Attacks: The Economist 

“Recent years had seen a boom in the use of ransomware, which scrambles victims’ computer data until a payment is made. Now, (Chairman of ISSP, a Ukrainian computer-security firm, Oleh) Derevianko says, the number of such attacks on ISSP’s corporate and government clients has dropped pretty-much to zero. Instead, many of those once involved in … Read more

Should Ransomware Payments Be Banned?

Australia’s Home Affairs Minister said the government is considering just such a move, following a dramatic ransomware attack (where the victim did not pay ransomware and had no cyber insurance).  A recent study reports that ransomware payments are far from guaranteed to produce system recovery. “(T)he Veeam report said: ‘One of the more notable statistics … Read more

Most K-12 Schools Have Cyber Insurance, But Still Lack Basic Security Measures:  MS-ISAC Report 

In our opinion, the report’s authors are diplomatic in their summary: “The K-12 community displayed an overall average maturity score of 3.55 on the 2021 NCSR’s 1 through 7 maturity scale. Results from the Nationwide Cybersecurity Review (NCSR) risk-based assessment have shown the K-12 sector is improving in its cybersecurity capabilities over time, though the … Read more

Inadequate Security + No Insurance + No Ransomware Payment = Disaster for Australian Health Insurer 

Australian health insurance provider Medibank Private Ltd. refused to pay ransom. Now hackers are releasing records from some of the app. 10 million customers whose data was compromised. “Following through on a threat, the hackers began publishing the most private medical details of some of Medibank’s customers, including terminated pregnancies, treatment for drug and alcohol … Read more

K-12 Schools Having Trouble Getting & Maintaining Cyber Insurance: GAO

“Additional federal coordination is needed to enhance K-12 cybersecurity,” says the report from the United States Government Accountability Office (GAO). But it looks as if many school districts are failing to do their part, from failing to report all cyber attacks to not instituting MFA and training. Note the reference to one school district being … Read more