Cyber Crime is big business…

>

Cyber Crime is big business…

Cyber crime is big business. Here’s what the attackers do…

First they send you a link in an email, or someone clicks on a link on a website, or perhaps there is a hole in your security and they exploit this.

A payload is delivered which allows them to exfiltrate your data. Basically they copy up to the cloud as much as they can get access to… shared drives, emails, HR or Finance databases… anything they can get their hands on quickly.

Then they will run a script which will encrypt all of your files, basically putting a password on every single one of your files.

A file will appear with a ransom demand, asking you to contact them to discuss your options.

They now start reviewing your data to see what loot they have got. Financial information, PII, commercially sensitive information?

Put yourself in this situation, what data could they have possibly taken from your computer or network? How will you recover your files and/or computers without having to pay to decrypt/get the password?

Prevention and minimising risk is a much better thing to do in advance of being in this situation.

Here are our tips…

Things you can do yourself:

  • Review the data that you keep in your organisation, if you don’t need it anymore, archive or destroy it.
  • Talk to your staff about the risks of data, regularly changing strong passwords, and being careful online.

What should you talk to your IT team about?

  • When were the backups last fully tested? Are they stored offline and safe from an attacker?
  • Is the antivirus/anti-malware solution capable of detecting and blocking cryptolocker ransomware? (Many aren’t)
  • Is multifactor authentication used on all remote access?
  • Are systems reviewed for vulnerabilities and patches recently deployed?
  • What legacy systems are still online that could be decommissioned to reduce attack surface?

Due diligence to do:

  • Get a third party to review the security and risks to your environment.
  • Get proof of working backups and restore capabilities and understand the real world recovery times of a full system outage.
  • Investigate Cyber Insurance, but know that it’s not a get out of jail free card.

Share this post and follow us for more tips. If you find this handy or have any questions, post it on here so we know to write more of this kind of content.

Call us on 1300 642 267 or email support@miacorit.com.au if you’d like to have an obligation free chat about how MIACOR IT can help you improve your data security.

Related Post

Queensland Government Suppliers: Is Your Cyber Security Ready for 2027?

Queensland Government suppliers face new cyber security expectations under the Procurement Assurance Model (PAM) from 1 January 2027. Learn what the changes mean, why Section 2.3 of the Supplier Code of Conduct matters, and how to strengthen your cyber security posture.

How Much Does Managed IT Support Actually Cost in Australia

It is almost always the first question. And most IT providers dance around it with something like "it depends on your requirements" before eventually getting to a number.

How Proactive IT Monitoring Prevents Costly Downtime for Businesses

Most IT problems do not appear without warning. They build gradually, through a missed patch, a failing...

What Is a Managed IT Service Provider? And Do You Need One?

Managed IT Services Brisbane is one of those phrases many business owners hear long before they fully understand what it means.

5 Signs Your Business Has Outgrown Its Current IT Setup

IT support Brisbane problems rarely show up all at once. More often, they build slowly in the background. A few dropped connections here.

EOFY IT Audit Checklist – Stop SaaS Waste

Many businesses are unknowingly overspending on software licences that are active but rarely used. This blog highlights how SaaS waste builds up, why it matters, and how an EOFY audit can uncover hidden costs, improve security, and ensure you’re only paying for tools that deliver real value.