• Cyber Security
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware File Recovery
    • Ransomware Types
  • Ransomware Services
    • Ransomware Removal
    • Ransomware File Recovery
  • News
  • Tutorials
  • Ransomware TV

Average Ransomware Extortion Payment Rises in the Last Quarter of 2018

March 4, 2019Simeon Georgiev

Ransomware has been around for quite some time now. Its exploits in the last three years have made it one of the leading cyber threats for the corporate world. Cybersecurity fraternity tirelessly works to spread awareness regarding the cryptovirological attacks. Many organizations have also taken up security measures that are centered on thwarting ransomware activity.

Amidst all this, a cybersecurity firm Coveware has found out that ransom extortion payments saw a 13% rise in the least quarter of 2018 over the preceding quarter. This shows that many affected organizations despite knowing all about cryptovirological attacks resorted to paying the attackers to get ransomware removal. Researchers at Coveware are in agreement that entities who cave into attackers’ demand invest least on their IT structure. Experts have inferred two possible causes behind increased average ransom payment.

1) Increased Customized Attacks

It is important to understand that many cryptovirological operators now prefer to tailor their attacks. Instead of launching a mass email campaign, they are focused on targeting through RDPs and via special socially engineered maneuvers. The report notes that the majority of successful ransomware attacks in Q4 -2018 were launched through compromised RDPs.

2) Prevalence of High-Priced Ransomware Attacks

Not all cryptovirological attacks entail equal extortion payments for ransomware removal.  The researchers have noted that amid mounting GandCrab, Dharma and Globelmposter exploits, SamSam and Ryuk ransomware strains made a comeback in the Q4-2018. Operators of these strains usually make high extortion demands which could also possibly be the reason behind the rise in average ransomware payment.

Average Downtime Also Increased in Q4

Besides average ransomware payment that went to $6,733 from $5,973, the downtime incurred by ransomware attacks also increased by 47% in the Q4 as compared to Q3. On average, a ransomware attack lasted for 6.2 days during the Q4. The increased downtime resulted in an average business loss of $55,000.  

The extended downtime indicates that affected organizations found it difficult to deal with ransomware removal and recovery measures in the attacks happened in the last 3 months of 2018 as compared to the rest of the year. This also shows that cryptovirological operators are constantly improving their encryption skills. It is also interesting to note that third-fourth of all the affected organizations that paid the attackers also got their backups compromised, indicating poor CDM practices.

Bitcoin Is Still the Preferred Mode of Payment

Despite its plummeting value in the last couple of months, more than 90% of attackers used Bitcoin as the currency for ransom payments in Q4-2018. However, Dash, a cryptocurrency with more anonymous nature of transactions, is also getting traction as a mode of ransomware payments.

Simeon Georgiev
https://www.linkedin.com/in/simeon--georgiev/
I am a Cyber Security Enthusiast from Bulgaria. I like to write about malware and ransomware and global cyber attacks. You can reach me on Twitter @sgeorgiev1995 or Email: [email protected]
Previous post ASL Airlines Evading Ransomware Attacks Through a Robust Backup Routine Next post Cryptovirological Discovery: Cr1ptT0r Ransomware

Related Articles

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

January 27, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Ransomware: 4 Types of the Latest Trend in Cybercrimes

February 1, 2018Simeon Georgiev
Ransomware: 4 Types of the Latest Trend in Cybercrimes

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

February 1, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Latest on Ransomware TV

https://vimeo.com/399908876?loop=0

Recent Posts

  • How to protect your organization against ransomware reinfections
  • AuKill Helps Ransomware Operators Disable EDR and Security Tools
  • AI-ransomware is a real threat, just not a realistic one yet
  • Rorschach is the new speed king in the ransomware space
  • The Role of Supply Chain Breaches in Ransomware Attacks

Stay Protected

Subscribe to our mailing list to get the latest cyber security and ransomware removal articles!

Thank you for subscribing.

Something went wrong.

Navigation

  • Cyber Security
    • Ransomware File Recovery
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware Types
  • News
  • Tutorials

Ransomware Attacks (Last 6M)

0

Connect & Protect

Facebook
Google+
LinkedIn
YouTube
Vimeo

More

  • BECOME A CONTRIBUTOR

MonsterCloud Reviews

© 2020 MonsterCloud.com. All Rights Reserved.