VOOZH about

URL: https://thenewstack.io/kaseya-sera-whatever-will-be-will-be/

⇱ Eradicate Ransomware by Changing Attacker Risk and Reward - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2021-07-16 11:00:34
Eradicate Ransomware by Changing Attacker Risk and Reward
contributed,sponsor-synopsys,sponsored,sponsored-post-contributed,
Security

Eradicate Ransomware by Changing Attacker Risk and Reward

The way to eradicate ransomware is to increase attackers’ risk, increase attackers’ effort and lower rewards.
Jul 16th, 2021 11:00am by Jonathan Knudsen
👁 Featued image for: Eradicate Ransomware by Changing Attacker Risk and Reward
Lead image via Pixabay.
Synopsys sponsored this post.
Jonathan Knudsen
Jonathan is a senior security strategist at Synopsys. He is the author of seven books on topics such as cryptography, graphics, robotics and mobile development. In addition, he has written more than 100 articles about software security, fuzz testing and software development. Jonathan also teaches a class about security in software development for Duke University.

Smart criminals look for opportunities that offer low risk, low effort and high reward. Ransomware is currently a sweet spot for the bad guys. Earlier this month, IT management software company Kaseya fell victim to a ransomware attack, which led to infections at some of Kaseya’s customers. Sadly, reports of ransomware attacks are commonplace. This post explores how changing the equation of risk, effort and reward could make ransomware a relic of the past.

The anonymity of internet attacks and the availability of non-governmental payment options — Bitcoin and other cryptocurrencies — means that careful cybercriminals have a low risk of being identified and apprehended. Ransomware toolkits are readily available and can be applied to new victims with relatively little effort. Victim organizations that are desperate to recover their own data will pay a steep premium.

The way to eradicate ransomware is to increase attackers’ risk, increase attackers’ effort and lower rewards.

Increasing Attacker Risk

Increasing risk is the least promising approach. The decentralized, transnational nature of the internet will always give attackers the opportunity to operate mostly anonymously. Even in cases where crimes can be properly attributed, which is difficult at best, navigating a multijurisdictional apprehension and prosecution can be nearly impossible.

Likewise, the ready availability of decentralized financial systems like Bitcoin will always give attackers a means of getting paid without being identified.

Increasing Attacker Effort

This is by far the best protection for individual organizations. Software security needs to be a first-class citizen in every organization. In the big picture, software security is a part of risk management. Savvy organizations make plans and structure their businesses to minimize risk from accidents, natural disasters, infrastructure failures and malicious insiders. Software is a fundamental infrastructure for every business and must be included in risk management.

At the top level, this means that security must be part of selecting, deploying, operating and maintaining software. It’s not enough just to get software working. Organizations must ensure that the software they use has minimal risk.

The intrinsic security of any piece of software should be evaluated before it is used. This includes verifying that the software vendor has used a secure software development process, examining test results and security artifacts, and performing independent analysis. Using a secure development process ensures that the number of weaknesses in the software is as low as it can be, which makes an attacker’s job more difficult.

Synopsys provides solutions that transform the way development teams build and deliver software. Our comprehensive portfolio interoperates with third-party and open source tools, allowing organizations to build the security program that’s best for them. Build trust in your software with Synopsys.
Learn More
The latest from Synopsys

Updates must be installed as quickly as possible. This minimizes the amount of time a ransomware gang has to exploit a known vulnerability.

All personnel must be trained to understand the threats and risks of everyday software use. Well-trained employees will be less likely to click on a malicious link or perform other actions that could introduce ransomware into an organization.

Decreasing Attacker Rewards

Ultimately, it’s all about the money. Criminals invade victims with ransomware because they want to be paid. If victims never paid a ransom, ransomware gangs would cease to exist.

Disaster recovery planning and business continuity planning are the facets of risk management that deal with exactly these types of events. What happens if a tropical storm knocks your data center offline? What happens if half your CxO team is wiped out in an airplane crash? What happens if you are infected with ransomware?

By planning ahead and putting mitigating controls in place, you can minimize the effects when something bad happens. When planning for ransomware, for example, you should put a robust plan in place for regular data backups. Properly implemented, such backups would allow you to rebuild your computing resources quickly if a ransomware attack did happen. With good planning and execution, rebuilding will be quicker and less expensive than paying a ransom.

When security incidents happen, it is important to take the lessons learned and feed them back into your existing security program so you never get burned by the same kind of problem again.

Learn From Others

My wife is the youngest of three siblings. When she was growing up, she observed what her brother and sister did that got them in trouble and adjusted her behavior to avoid the same problems. The situation with ransomware is similar. Organizations that have been lucky enough to be unaffected should keep an eye on current events and adjust their behavior. Many organizations are completely unprepared for this type of attack. If you are not ready, start today with a proactive approach to software security.

You can never eliminate risk completely, but you can take fundamental steps to improve your security posture. In the case of ransomware specifically, you can make it harder for attackers to break into your organization. If the worst should happen and you get infected anyhow, you can make sure you are prepared for a speedy, no-ransom-paid recovery.

Synopsys provides solutions that transform the way development teams build and deliver software. Our comprehensive portfolio interoperates with third-party and open source tools, allowing organizations to build the security program that’s best for them. Build trust in your software with Synopsys.
Learn More
The latest from Synopsys
TRENDING STORIES
Jonathan is a senior security strategist at Synopsys. He is the author of seven books on topics such as cryptography, graphics, robotics and mobile development. In addition, he has written more than 100 articles about software security, fuzz testing and...
Read more from Jonathan Knudsen
Synopsys sponsored this post.
SHARE THIS STORY
TRENDING STORIES
TNS owner Insight Partners is an investor in: Pragma, Kaseya.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.