FBI Warns Businesses and Organizations of Rising “High-Impact” Ransomware Threat

FBI Warns Businesses and Organizations of Rising “High-Impact” Ransomware Threat

Even if an organization decides to pay a ransom against the FBI’s advice, they should report the crime to law enforcement, according to the FBI alert.

Following a summer of increasingly worrisome ransomware attacks, the FBI issued a public service announcement on Wednesday warning of “high-impact” cyberattacks that are increasingly threatening hospitals, small businesses and local governments. 

While the FBI has issued similar warnings about malicious hacking attempts in previous years, this is the first announcement concerning ransomware in 2019, The Hill reported. The agency noted that ransomware attacks are becoming more “targeted, sophisticated and costly” even as the overall frequency of them has not increased. 

“Since early 2018, the incidence of broad, indiscriminate ransomware campaigns has sharply declined, but the losses from ransomware attacks have increased significantly,” the alert reads, citing complaints data collected by the FBI’s Internet Crime Complaint Center. 

The alert comes as a growing number of city governments, hospitals and businesses report debilitating ransomware attacks, which shut down an organization’s systems until a ransom is paid. In August, over 20 Texas towns were hit by an attack, and just this week, three Alabama hospitals were forced to turn away new patients after their systems were paralyzed. 

Read more: Report: Insurance Companies Are Exacerbating Rise in Ransomware Attacks

Beyond detailing some of the methods malicious actors use to infect computer systems with ransomware, the FBI said that it does not advocate paying a ransom, partly because it does not guarantee that a hacker will provide a key to decrypt the organization’s files. 

“In some cases, victims who paid a ransom were never provided with decryption keys,” the alert reads. “In addition, due to flaws in the encryption algorithms of certain malware variants, victims may not be able to recover some or all of their data even with a valid decryption key.” 

That advice is a bit of a switch-up from how one FBI agent described the FBI’s advice to victims in 2015. ZDNet reports that an agent told attendees at a 2015 conference that “we often advise people just to pay the ransom.” 

Now, the FBI notes that paying ransoms only gives other criminals the signal that ransomware is an “alluring and lucrative enterprise.” But the alert acknowledged that individual organizations may want to pay the fee because they need to function and are losing money while their systems are down. 

“Regardless of whether you or your organization have decided to pay the ransom, the FBI urges you to report ransomware incidents to law enforcement,” the alert reads. “Doing so provides investigators with the critical information they need to track ransomware attackers, hold them accountable under U.S. law, and prevent future attacks.” 

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • 2024 Gun Violence Report: Fewer Overall Incidents, but School Deaths and Injuries Are on the Rise

    Omnilert, provider of gun detection technology, today released its compilation of Gun Violence Statistics for 2024 summarizing gun violence tragedies and their adverse effects on Americans and the economy. While research showed a decrease in overall deaths and injuries, the rising number of school shootings and fatalities and high number of mass shootings underscored the need to keep more people safe in schools as well as places of worship, healthcare, government, retail and commerce, finance and banking, hospitality and other public places. Read Now

  • Survey: Only 7 Percent of Business Leaders Using AI in Physical Security

    A new survey from Pro-Vigil looks at video surveillance trends, how AI is impacting physical security, and more. Read Now

  • MetLife Stadium Uses Custom Surveillance Solution from Axis Communications

    Axis Communications, provider of video surveillance and network devices, today announced the implementation of a custom surveillance solution developed in collaboration with the MetLife Stadium security team. This new, tailored solution will help the venue augment its security capabilities, providing high-quality video at unprecedented distances and allowing the security team to identify details from anywhere in the venue. Read Now

  • U.S. Cyber Trust Mark Launches for Consumer Internet-Connected Devices

    The White House recently announced the launch of a cybersecurity label for internet-connected devices, known as the U.S. Cyber Trust Mark, completing public notice and input over the last 18 months. During that time, FCC Commissioners decided in a bipartisan and unanimous vote to authorize the program and adopt final rules, as well as the trademarked, distinct shield logo that will be applied to products certified for the U.S. Cyber Trust Mark label. Read Now

Featured Cybersecurity

Webinars

New Products

  • Camden CM-221 Series Switches

    Camden CM-221 Series Switches

    Camden Door Controls is pleased to announce that, in response to soaring customer demand, it has expanded its range of ValueWave™ no-touch switches to include a narrow (slimline) version with manual override. This override button is designed to provide additional assurance that the request to exit switch will open a door, even if the no-touch sensor fails to operate. This new slimline switch also features a heavy gauge stainless steel faceplate, a red/green illuminated light ring, and is IP65 rated, making it ideal for indoor or outdoor use as part of an automatic door or access control system. ValueWave™ no-touch switches are designed for easy installation and trouble-free service in high traffic applications. In addition to this narrow version, the CM-221 & CM-222 Series switches are available in a range of other models with single and double gang heavy-gauge stainless steel faceplates and include illuminated light rings. 3

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols. 3

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3