Ransomware

software used to extort money from an individual or organization by encrypting or otherwise blocking access to applications or files on a computer system until a sum of money is paid.

  • The Six Days America Ran Out of Gas

    On May 7, 2021, the Colonial Pipeline experienced a ransomware attack due to a compromised VPN account lacking multi-factor authentication. The attackers, linked to the DarkSide group, stole 100 gigabytes of data, prompting a shutdown of fuel operations affecting the East Coast. Colonial paid $4.4 million in ransom, later recovering part of it.

    Read more →

  • On May 14, 2021, Ireland’s Health Service Executive fell victim to a devastating ransomware attack triggered by a single phishing email. The attack crippled hospitals nationwide, delaying treatments and compromising patient data. Despite warnings, the incident reflected systemic cybersecurity failures within the organization, ultimately highlighting vulnerabilities in health services globally.

    Read more →

  • On June 27, 2017, the NotPetya cyber attack began in Ukraine, initially appearing as ransomware but ultimately functioning as wiper malware, aimed at destroying systems. Spreading globally, it disrupted major companies and caused over $10 billion in damages. The attack highlighted vulnerabilities in supply chains and the geopolitical implications of cyber warfare.

    Read more →

  • On May 12, 2017, the WannaCry ransomware attack rapidly infected over 300,000 computers worldwide, affecting critical systems like hospitals and manufacturing plants. Exploiting a Microsoft Windows vulnerability known as EternalBlue, it demanded a ransom in Bitcoin. Cybersecurity weaknesses were exposed, prompting global reforms to enhance digital resilience and address vulnerabilities.

    Read more →