ARTICLE
21 October 2019

FBI Public Service Announcement On Ransomware

SS
Seyfarth Shaw LLP

Contributor

With more than 900 lawyers across 18 offices, Seyfarth Shaw LLP provides advisory, litigation, and transactional legal services to clients worldwide. Our high-caliber legal representation and advanced delivery capabilities allow us to take on our clients’ unique challenges and opportunities-no matter the scale or complexity. Whether navigating complex litigation, negotiating transformational deals, or advising on cross-border projects, our attorneys achieve exceptional legal outcomes. Our drive for excellence leads us to seek out better ways to work with our clients and each other. We have been first-to-market on many legal service delivery innovations-and we continue to break new ground with our clients every day. This long history of excellence and innovation has created a culture with a sense of purpose and belonging for all. In turn, our culture drives our commitment to the growth of our clients, the diversity of our people, and the resilience of our workforce.
This month, the Federal Bureau of Investigation published information and guidance for organizations about ransomware attacks, along with some suggested preventative measures.
United States Technology

This month, the Federal Bureau of Investigation published information and guidance for organizations about ransomware attacks, along with some suggested preventative measures. There is a section in the bulletin discussing whether victims should consider paying ransom to attackers. According to the statement, the FBI "does not advocate paying a ransom, in part because it does not guarantee and organization will regain access to its data," and paying ransoms emboldens criminals to target others.

Several of the suggested "best practices" are somewhat generalized, such as increased employee awareness about how ransomware is delivered, and basic security techniques (we would recommend adding anti-phishing training and tests to the list). However, several others are more specific. All of the measures listed should be considered as parts of a comprehensive standard information security program.

Among the list of the FBI's "Cyber Defense Best Practices" recommended are:

  1. Regular backups of data to locations that are not connected to the computers and networks they are backing up;
  2. Employee awareness and training;
  3. Regular updates to anti-virus and anti-malware, firmware updates and operating system patches;
  4. Disabling macro-scripts from Office files sent via email;
  5. Regular audits of systems using RDP, logging of RDP activity and two-factor authentication;
  6. Data categorization by sensitivity and organizational value; and
  7. Physical and logical separation of networks and data for different organizational units.

The complete bulletin, titled High-Impact Ransomware Attacks Threaten U.S. Businesses and Organizations, can be found here.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More