maryland state house

Ransomware Possession Would Become A Crime In Maryland Under Proposed Legislation

Lawmakers are trying to deter would-be hackers from carrying out cyber attacks that have paralyzed companies, hospital systems and local governments, including Baltimore’s city government.

After two years of ransomware wreaking havoc on local governments, companies, hospital systems and school districts across the country, including the Baltimore city government, Maryland lawmakers have had enough. State senators are considering a bill that would make it a crime to possess ransomware with the intention to use it in a malicious way.

It’s already illegal in Maryland to use ransomware in a way that costs victims money. The malware encrypts data on an organization’s systems until a ransom is paid and has cost organizations millions of dollars over the past few years.

Under Senate Bill 30, ransomware owners convicted of possession with malicious intent would face a penalty of up to 10 years in prison and/or a fine of up to $10,000, according to Capital News Service. Researchers who possess ransomware would be exempt from the criminal penalty.

Senators heard arguments about the bill, introduced by state Sen. Susan Lee, last week. Lee originally introduced the legislation in 2019 and said she has cleaned up the bill ahead of the 2020 legislative session.

“It’s important to establish so criminals know it’s a crime,” Lee, a Democrat, told CNS. “[The bill] gives prosecutors tools to charge offenders.”

Other states have already made possession of ransomware a criminal offense, including Michigan and Wyoming. There is no official research to indicate that the creation of criminal penalties has deterred hackers, but cybersecurity experts say it’s important to show that there are consequences for carrying out the crimes.

“It’s important to send that signal [to perpetrators],” Markus Rauschecker, the program director of the University of Maryland’s Center for Health and Homeland Security, told CNS. “[This bill] highlights the threat and how big it is.”

Committing a cyber attack in Maryland that results in a loss of more than $10,000 is already a felony carrying penalties of up to 10 years in prison and/or up to $10,000 in fines.

Members of the Senate Judicial Proceedings Committee said on Tuesday that they would consider changing ransomware possession from a misdemeanor to a felony due to its huge impact on organizations, according to CNS. Local governments and companies have lost millions on lost revenue and the cost of cybersecurity services to regain access to their data. That’s not including companies that have paid out ransoms, some of whom still did not regain full access to their data.

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • From Surveillance to Intelligence

    Years ago, it would have been significantly more expensive to run an analytic like that — requiring a custom-built solution with burdensome infrastructure demands — but modern edge devices have made it accessible to everyone. It also saves time, which is a critical factor if a missing child is involved. Video compression technology has played a critical role as well. Over the years, significant advancements have been made in video coding standards — including H.263, MPEG formats, and H.264—alongside compression optimization technologies developed by IP video manufacturers to improve efficiency without sacrificing quality. The open-source AV1 codec developed by the Alliance for Open Media—a consortium including Google, Netflix, Microsoft, Amazon and others — is already the preferred decoder for cloud-based applications, and is quickly becoming the standard for video compression of all types. Read Now

  • Cost: Reactive vs. Proactive Security

    Security breaches often happen despite the availability of tools to prevent them. To combat this problem, the industry is shifting from reactive correction to proactive protection. This article will examine why so many security leaders have realized they must “lead before the breach” – not after. Read Now

  • Achieving Clear Audio

    In today’s ever-changing world of security and risk management, effective communication via an intercom and door entry communication system is a critical communication tool to keep a facility’s staff, visitors and vendors safe. Read Now

  • Beyond Apps: Access Control for Today’s Residents

    The modern resident lives in an app-saturated world. From banking to grocery delivery, fitness tracking to ridesharing, nearly every service demands another download. But when it comes to accessing the place you live, most people do not want to clutter their phone with yet another app, especially if its only purpose is to open a door. Read Now

  • Survey: 48 Percent of Worshippers Feel Less Safe Attending In-Person Services

    Almost half (48%) of those who attend religious services say they feel less safe attending in-person due to rising acts of violence at places of worship. In fact, 39% report these safety concerns have led them to change how often they attend in-person services, according to new research from Verkada conducted online by The Harris Poll among 1,123 U.S. adults who attend a religious service or event at least once a month. Read Now

New Products

  • EasyGate SPT and SPD

    EasyGate SPT SPD

    Security solutions do not have to be ordinary, let alone unattractive. Having renewed their best-selling speed gates, Cominfo has once again demonstrated their Art of Security philosophy in practice — and confirmed their position as an industry-leading manufacturers of premium speed gates and turnstiles.

  • HD2055 Modular Barricade

    Delta Scientific’s electric HD2055 modular shallow foundation barricade is tested to ASTM M50/P1 with negative penetration from the vehicle upon impact. With a shallow foundation of only 24 inches, the HD2055 can be installed without worrying about buried power lines and other below grade obstructions. The modular make-up of the barrier also allows you to cover wider roadways by adding additional modules to the system. The HD2055 boasts an Emergency Fast Operation of 1.5 seconds giving the guard ample time to deploy under a high threat situation.

  • Camden CM-221 Series Switches

    Camden CM-221 Series Switches

    Camden Door Controls is pleased to announce that, in response to soaring customer demand, it has expanded its range of ValueWave™ no-touch switches to include a narrow (slimline) version with manual override. This override button is designed to provide additional assurance that the request to exit switch will open a door, even if the no-touch sensor fails to operate. This new slimline switch also features a heavy gauge stainless steel faceplate, a red/green illuminated light ring, and is IP65 rated, making it ideal for indoor or outdoor use as part of an automatic door or access control system. ValueWave™ no-touch switches are designed for easy installation and trouble-free service in high traffic applications. In addition to this narrow version, the CM-221 & CM-222 Series switches are available in a range of other models with single and double gang heavy-gauge stainless steel faceplates and include illuminated light rings.