<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What is the answer to Ransomware? in Industry News</title>
    <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39695#M4969</link>
    <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/690706113"&gt;@tmekelburg1&lt;/a&gt;There we are discussing and then all of a sudden another guide is published:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf" target="_blank"&gt;https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What do you think of this one?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
    <pubDate>Sat, 03 Oct 2020 06:18:37 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2020-10-03T06:18:37Z</dc:date>
    <item>
      <title>What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39579#M4938</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So exactly what is the answer to Ransomware ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.zdnet.com/article/ransomware-is-the-biggest-problem-on-the-web-this-big-change-could-be-the-answer/" target="_blank"&gt;https://www.zdnet.com/article/ransomware-is-the-biggest-problem-on-the-web-this-big-change-could-be-the-answer/&lt;/A&gt;?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp; Cyber-insurance company position - pay it - here is the money in bitcolin.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2)&amp;nbsp; Cyber-criminal - thank you - I think we will do this again.....&amp;nbsp;&amp;nbsp; Lovely&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3)&amp;nbsp; Now what would happen if paying Ransomware demands was made illegal?&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Would that work?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;4)&amp;nbsp; Is it enforceable?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Your thoughts?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:38:57 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39579#M4938</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-10-09T09:38:57Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39582#M4939</link>
      <description>&amp;gt; Caute_cautim (Community Champion) posted a new topic in Industry News on&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; So exactly what is the answer to Ransomware ?&lt;BR /&gt;&lt;BR /&gt;Backups. Make a backup. Make multiple types of backup.&lt;BR /&gt;&lt;BR /&gt;====================== (quote inserted randomly by Pegasus Mailer)&lt;BR /&gt;rslade@gmail.com rmslade@outlook.com rslade@computercrime.org&lt;BR /&gt;Open source should be about giving away things voluntarily. When&lt;BR /&gt;you force someone to give you something, it's no longer giving,&lt;BR /&gt;it's stealing. Persons of leisurely moral growth often confuse&lt;BR /&gt;giving with taking. - Larry Wall&lt;BR /&gt;victoria.tc.ca/techrev/rms.htm &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413" target="_blank"&gt;https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413&lt;/A&gt;</description>
      <pubDate>Mon, 28 Sep 2020 21:54:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39582#M4939</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-09-28T21:54:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39583#M4940</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;I agree, that is an obvious move, but also to have your incident Response playbooks up to date, PR media communications ready to go.&amp;nbsp; Plus make sure your hygiene levels are good.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, this will not stop the current practices extorted by the cyber criminals.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Why should we allow them to actually do this against society and organisations and carry on doing it?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 22:18:37 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39583#M4940</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-09-28T22:18:37Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39584#M4941</link>
      <description>&amp;gt; Caute_cautim (Community Champion) mentioned you in a post! Join the conversation&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; Why should we allow them to actually do this&lt;BR /&gt;&amp;gt; against society and organisations and carry on doing it?&lt;BR /&gt;&lt;BR /&gt;Natural selection? Evolution in action? Thinning the herd?&lt;BR /&gt;&lt;BR /&gt;(Anyway, I'm getting tired of discussing ransomware, when most of the attacks&lt;BR /&gt;these days are actually breachstortion ...)&lt;BR /&gt;&lt;BR /&gt;====================== (quote inserted randomly by Pegasus Mailer)&lt;BR /&gt;rslade@gmail.com rmslade@outlook.com rslade@computercrime.org&lt;BR /&gt;To define recursion, we must first define recursion.&lt;BR /&gt;victoria.tc.ca/techrev/rms.htm &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413" target="_blank"&gt;https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413&lt;/A&gt;</description>
      <pubDate>Mon, 28 Sep 2020 23:30:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39584#M4941</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-09-28T23:30:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39585#M4942</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;So what you are asking is it merely conjecture that they have been breached, i.e. prove it is real?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or you are pointing out the game that is being played out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.ckd3.com/blog/breachstortion" target="_blank" rel="noopener"&gt;https://www.ckd3.com/blog/breachstortion&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 23:40:24 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39585#M4942</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-09-28T23:40:24Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39590#M4944</link>
      <description>&lt;P&gt;So it should be a multi-prong effort.&lt;/P&gt;&lt;P&gt;1) Recovery -Backups&lt;/P&gt;&lt;P&gt;2) Prevention - Awareness training&lt;/P&gt;&lt;P&gt;3) Detection - Antivirus/Antimalware&lt;/P&gt;&lt;P&gt;4) Prevention - Secure design&lt;/P&gt;&lt;P&gt;Just doing one action alone won't be very effective.&lt;/P&gt;&lt;P&gt;We have a vendor in the US that is running a commercial claiming their product protects you from the ransomware virus. It irks me every time I hear it. I know they only have 30 seconds to try to sell their product so they are dumbing it down for the consumer but I feel it is counterproductive as it makes the customer think that ransomware is just a virus so it should be caught by the antivirus product and they can click away without worry of it infecting themselves.&lt;/P&gt;&lt;P&gt;I think it will eventually evolve into everything being clicked on going into a sandbox to be unpackaged and evaluated before being returned to the user.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 12:26:59 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39590#M4944</guid>
      <dc:creator>CISOScott</dc:creator>
      <dc:date>2020-09-29T12:26:59Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39591#M4945</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's been on my list to look into, but maybe you have the answer, I have heard that some ransomware can hit backups. I am guess these would be near line backups connect as a share. So any idea what types of backups ransomware can and cannot get too?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;John-&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 13:02:42 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39591#M4945</guid>
      <dc:creator>JKWiniger</dc:creator>
      <dc:date>2020-09-29T13:02:42Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39594#M4947</link>
      <description>&lt;P&gt;Speaking of which...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A title="https://apnews.com/article/media-archive-21ebb97dc7b9e2a7c06244069a35b7e6" href="https://apnews.com/article/media-archive-21ebb97dc7b9e2a7c06244069a35b7e6" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;Cyberattack hobbles major hospital chain's US facilities&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.uhsinc.com/statement-from-universal-health-services/" target="_blank" rel="noopener"&gt;https://www.uhsinc.com/statement-from-universal-health-services/&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A title="https://ir.uhsinc.com/news-releases/news-release-details/universal-health-services-inc-reports-information-technology" href="https://ir.uhsinc.com/news-releases/news-release-details/universal-health-services-inc-reports-information-technology" target="_blank" rel="noopener"&gt;Universal Health Services, Inc. Reports Information Technology Security Incident&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;"No patient or employee data appears to have been accessed, copied or misused"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I'm going to guess at this point they have no idea. Can't wait to read the OCR corrective action plan on this.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 13:56:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39594#M4947</guid>
      <dc:creator>tmekelburg1</dc:creator>
      <dc:date>2020-09-29T13:56:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39600#M4949</link>
      <description>&amp;gt; JKWiniger (Contributor III) mentioned you in a post! Join the conversation&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; It's been on my list to look into, but maybe you have the answer, I&lt;BR /&gt;&amp;gt; have heard that some ransomware can hit backups. I am guess these would be near&lt;BR /&gt;&amp;gt; line backups connect as a share. So any idea what types of backups ransomware&lt;BR /&gt;&amp;gt; can and cannot get too?&lt;BR /&gt;&lt;BR /&gt;As usual, convenience is the enemy of security. Yes, constantly connected,&lt;BR /&gt;constantly updating backups are going to be subject to ransomware attacks. So,&lt;BR /&gt;intermittent, stored offline types of backups are going to be less subject to those&lt;BR /&gt;attacks. Removeable (and then stored elsewhere) media is going to be best.&lt;BR /&gt;Incovenient, yes, but safer.&lt;BR /&gt;&lt;BR /&gt;There used to be an attack called data diddling. It was never very prevalent, but it&lt;BR /&gt;was particularly insidious. It made small mofidications (errors) to data&lt;BR /&gt;incrementally over time. If you couldn't detect it, it would affect any kinds of&lt;BR /&gt;backups, too. But that isn't what modern ransomware does.&lt;BR /&gt;&lt;BR /&gt;====================== (quote inserted randomly by Pegasus Mailer)&lt;BR /&gt;rslade@gmail.com rmslade@outlook.com rslade@computercrime.org&lt;BR /&gt;It is not the strongest of the species that survives, nor the&lt;BR /&gt;most intelligent, but the ones most responsive to change.&lt;BR /&gt;- Charles Darwin.&lt;BR /&gt;victoria.tc.ca/techrev/rms.htm &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413" target="_blank"&gt;https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413&lt;/A&gt;</description>
      <pubDate>Tue, 29 Sep 2020 17:40:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39600#M4949</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-09-29T17:40:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39612#M4951</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's kind of what I thought. It would be interesting is they malware gateway for backups. I mean it wouldn't be very hard to do, allow data to be pulled from behind it and don't allow any kind of push.. kind of like making backups read only if you will..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As for the old malware.. I so get it.. there was a time I have an old x286 that I wanted to use for all the viruses I collected just to see the payloads, you know when viruses where cool, like RedX, Vadar, and dropper.. sadly never seemed to have the time.. to busy rebuilding corrupt double space drives and getting the boot sectors back from.. umm was in the money virus? Can't remember the names...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes, I'm old.. I remember going to computer show in high school and getting the latest vscan on 3.5..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It was funny this one show was setup around the edges of a pool! and batch then the surcharge to use a CC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ya 2600 wasn't just a magazine, it was the other name for captain crunch and the crystal I put in my tone dailer I used at Woodstock.. wait what who say that?!?! hahah&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;John-&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 22:52:14 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39612#M4951</guid>
      <dc:creator>JKWiniger</dc:creator>
      <dc:date>2020-09-29T22:52:14Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39642#M4956</link>
      <description>&lt;P&gt;When all ransomware did was encrypt your files, restore from backup was the easy answer.&amp;nbsp; Now that they upped their game by exfiltrating your data and threatening to make it public if you don't pay, we are seeing more victims resorting to paying the ransom in exchange for the "certificate of destruction".&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 23:20:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39642#M4956</guid>
      <dc:creator>chogan</dc:creator>
      <dc:date>2020-09-30T23:20:09Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39664#M4959</link>
      <description>&amp;gt; chogan (Newcomer I) posted a new reply in Industry News on 09-30-2020 07:20 PM&lt;BR /&gt;&lt;BR /&gt;&amp;gt; When all ransomware did was encrypt your files, restore from backup was the easy&lt;BR /&gt;&amp;gt; answer.&amp;nbsp; Now that they upped their game by exfiltrating your data and&lt;BR /&gt;&amp;gt; threatening to make it public if you don't pay, we are seeing more victims&lt;BR /&gt;&amp;gt; resorting to paying the ransom in exchange for the "certificate of&lt;BR /&gt;&amp;gt; destruction".&lt;BR /&gt;&lt;BR /&gt;The fact that everyone is reporting this as "ransomware" really gets my goat.&lt;BR /&gt;Everybody is always careless with malware terminology, and not only is extracting&lt;BR /&gt;data and then threatening to release it not ransomware, it doesn't even involve&lt;BR /&gt;malware of any kind.&lt;BR /&gt;&lt;BR /&gt;I've heard some people call it breachstortion, which is kind of tortured, but&lt;BR /&gt;ransomware it isn't.&lt;BR /&gt;&lt;BR /&gt;====================== (quote inserted randomly by Pegasus Mailer)&lt;BR /&gt;rslade@gmail.com rmslade@outlook.com rslade@computercrime.org&lt;BR /&gt;Q. What is the difference between a computer salesman and a used&lt;BR /&gt;car salesman?&lt;BR /&gt;A. A car salesman knows how to drive, and knows when he's lying.&lt;BR /&gt;victoria.tc.ca/techrev/rms.htm &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413" target="_blank"&gt;https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413&lt;/A&gt;</description>
      <pubDate>Thu, 01 Oct 2020 18:30:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39664#M4959</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-10-01T18:30:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39666#M4960</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;Say that again and again to the Cyber security insurance who are exasperating the situation, by being called in and immediately paying the Bitcoin ransomsome.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just make it illegal to pay the ransom, and it will soon die out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Thu, 01 Oct 2020 19:13:48 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39666#M4960</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-10-01T19:13:48Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39671#M4963</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;Well here is one answer - warn organisations about the tax implications of paying the ransom.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.securityweek.com/treasury-department-warns-ransomware-payment-facilitators-legal-implications?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+Securityweek+%28SecurityWeek+RSS+Feed%29" target="_blank"&gt;https://www.securityweek.com/treasury-department-warns-ransomware-payment-facilitators-legal-implications?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+Securityweek+%28SecurityWeek+RSS+Feed%29&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Thu, 01 Oct 2020 20:27:42 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39671#M4963</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-10-01T20:27:42Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39686#M4968</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;Say that again and again to the Cyber security insurance who are exasperating the situation, by being called in and immediately paying the Bitcoin ransomsome.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just make it illegal to pay the ransom, and it will soon die out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;To be a devil's advocate, it's not your business that's about to go under or patient's safety at risk. Is it the best decision in the big picture of fighting back against these threats? I'd say it's not but we have that luxury with our 30,000 foot view.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now, should we have corrective action plans implemented and enforced by government regulators for companies that opt to have cyber liability insurance pay the ransom? I absolutely believe so. There definitely should be some kind of accountability for going down that route.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Oct 2020 17:34:26 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39686#M4968</guid>
      <dc:creator>tmekelburg1</dc:creator>
      <dc:date>2020-10-02T17:34:26Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39695#M4969</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/690706113"&gt;@tmekelburg1&lt;/a&gt;There we are discussing and then all of a sudden another guide is published:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf" target="_blank"&gt;https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What do you think of this one?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Sat, 03 Oct 2020 06:18:37 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39695#M4969</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-10-03T06:18:37Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39721#M4971</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/690706113"&gt;@tmekelburg1&lt;/a&gt;There we are discussing and then all of a sudden another guide is published:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf" target="_blank" rel="noopener"&gt;https://www.cisa.gov/sites/default/files/publications/CISA_MS-ISAC_Ransomware%20Guide_S508C.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What do you think of this one?&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;I think it's a great guide to go through to double check your current plan. You could easily divide the prevention section up and send to the different system admins within the organization. This also reinforces what&amp;nbsp;&lt;A href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413" target="_blank"&gt;@rslade&lt;/A&gt;&amp;nbsp;said about offline backups.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Something else that came to mind that we had this issue on. Make sure your data pipe is big enough for Cloud backups to meet your maximum tolerable downtime (MTD) and the timeframe on shipping a recovery drive. Make sure they ship on weekends and not just business days (yes, it's surprisingly a thing written in very small print at the bottom of the contract).&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 15:54:06 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39721#M4971</guid>
      <dc:creator>tmekelburg1</dc:creator>
      <dc:date>2020-10-05T15:54:06Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39726#M4972</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/690706113"&gt;@tmekelburg1&lt;/a&gt;&amp;nbsp;I can't tell you how many times I have seen it where people thing they can just backup to the cloud and how no idea of what their up band internet speed is. I am starting to see more and more gig packages that are gig up and down which will support things but below that... not a chance!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;John-&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 20:15:54 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39726#M4972</guid>
      <dc:creator>JKWiniger</dc:creator>
      <dc:date>2020-10-05T20:15:54Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39729#M4974</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1542574691"&gt;@JKWiniger&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/690706113"&gt;@tmekelburg1&lt;/a&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Plus I would not reply wholly on the cloud itself, due to latency issues, related bandwidth and consumption charges from some providers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think the way we are moving forward, 5G and Edge Computing would be more appropriate and likely to be far cheaper, with less latency and far quicker too.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;Grandpa is correct on the storage issue, but please ensure your backup regime is encrypted in motion and at rest plus make sure it is thoroughly tested plus a good offsite - yes Tape even encrypted still works very well indeed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Plus a) Prove to me you have my data&amp;nbsp; b) Or you are a fake&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 20:30:53 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39729#M4974</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-10-05T20:30:53Z</dc:date>
    </item>
    <item>
      <title>Re: What is the answer to Ransomware?</title>
      <link>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39731#M4976</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;&amp;nbsp;While I agree the 5G does hold some promise it seems like it is still a ways away. There are still not many 5G devices on the market yet, and although I have seen Verizon offering 5G home internet the infrastructure just doesn't seem to be there yet. And although tapes will always be a great solution they are not with out their problems. One place I worked many years ago, what a mess, when I got there backups consisted of a hand full of takes on someone's desk that randomly got used. So basically I started from scratch! They didn't like the 5-10k I said I needed just for tapes! hahah I setup their first Iron Mountain contract... But where it bit me in the but is that I wasn't testing the backups, sure I got a full fiber channel system working that they were stuck on and had a library system running for many machines, but it only takes that on to find out that you had a bad tape head that showed no errors or problems, but failed when you tried to restore! Moral to the story.. test you back ups!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;John-&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 23:28:37 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/What-is-the-answer-to-Ransomware/m-p/39731#M4976</guid>
      <dc:creator>JKWiniger</dc:creator>
      <dc:date>2020-10-05T23:28:37Z</dc:date>
    </item>
  </channel>
</rss>

