Home/Glossary/Ransomware

Ransomware

Malware that encrypts systems or exfiltrates data, demanding payment to restore access or prevent disclosure.

Risk & Resilience

Modern ransomware operators blend extortion with data theft, targeting the most business-critical systems.

Attack pattern

  • Initial access via phishing, exposed services, or compromised credentials.
  • Lateral movement to escalate privileges and locate backups.
  • Encryption or data theft, followed by ransom demands and deadlines.

Defensive focus

  • Enforce MFA and monitor remote access.
  • Segment backups and test restoration regularly.
  • Use EDR and network detection to spot lateral movement early.