maryland state house

Ransomware Possession Would Become A Crime In Maryland Under Proposed Legislation

Lawmakers are trying to deter would-be hackers from carrying out cyber attacks that have paralyzed companies, hospital systems and local governments, including Baltimore’s city government.

After two years of ransomware wreaking havoc on local governments, companies, hospital systems and school districts across the country, including the Baltimore city government, Maryland lawmakers have had enough. State senators are considering a bill that would make it a crime to possess ransomware with the intention to use it in a malicious way.

It’s already illegal in Maryland to use ransomware in a way that costs victims money. The malware encrypts data on an organization’s systems until a ransom is paid and has cost organizations millions of dollars over the past few years.

Under Senate Bill 30, ransomware owners convicted of possession with malicious intent would face a penalty of up to 10 years in prison and/or a fine of up to $10,000, according to Capital News Service. Researchers who possess ransomware would be exempt from the criminal penalty.

Senators heard arguments about the bill, introduced by state Sen. Susan Lee, last week. Lee originally introduced the legislation in 2019 and said she has cleaned up the bill ahead of the 2020 legislative session.

“It’s important to establish so criminals know it’s a crime,” Lee, a Democrat, told CNS. “[The bill] gives prosecutors tools to charge offenders.”

Other states have already made possession of ransomware a criminal offense, including Michigan and Wyoming. There is no official research to indicate that the creation of criminal penalties has deterred hackers, but cybersecurity experts say it’s important to show that there are consequences for carrying out the crimes.

“It’s important to send that signal [to perpetrators],” Markus Rauschecker, the program director of the University of Maryland’s Center for Health and Homeland Security, told CNS. “[This bill] highlights the threat and how big it is.”

Committing a cyber attack in Maryland that results in a loss of more than $10,000 is already a felony carrying penalties of up to 10 years in prison and/or up to $10,000 in fines.

Members of the Senate Judicial Proceedings Committee said on Tuesday that they would consider changing ransomware possession from a misdemeanor to a felony due to its huge impact on organizations, according to CNS. Local governments and companies have lost millions on lost revenue and the cost of cybersecurity services to regain access to their data. That’s not including companies that have paid out ransoms, some of whom still did not regain full access to their data.

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • Tradeshow Work Can Be Fun

    While at ISC West last week, I ran into numerous friends and associates all of which was a pleasant experience. The first question always seemed to be, “How many does this make for you?” Read Now

    • Industry Events
    • ISC West
  • New Report Says 1 in 5 SMBs Would Be Forced to Shutter After Successful Cyberattack

    Small and medium-sized businesses (SMBs) play a crucial role in the U.S. economy, making up 99.9% of all businesses and contributing to half of the nation's GDP. However, these vital economic growth drivers face an escalating threat—cyberattacks that could put them out of business. Read Now

  • The Yellow Brick Road

    The road to and throughout Wednesday's and Thursday's ISC West was crowded but it was amazing. Read Now

    • Industry Events
    • ISC West
  • An Inside Look From Napco at ISC West

    Get a look into the excitement at ISC West 2025 from Napco. Hear from some of their top-tech executives live from the show floor. Read Now

    • Industry Events
    • ISC West
  • Upping the Ante

    I am not a betting man in terms of cards, dice, blackjack or that wheel with the black marble racing around the circumference of a spinning wheel, but I would bet on the success of ISC West this year. Read Now

    • Industry Events
    • ISC West

New Products

  • Compact IP Video Intercom

    Viking’s X-205 Series of intercoms provide HD IP video and two-way voice communication - all wrapped up in an attractive compact chassis.

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge.

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols.