You can’t run and you can’t hide from ransomware, no matter platform, device or operating system. That’s the word from security provider Sophos in its 2018 Malware Forecast, which recaps data gleaned from customers running the vendor’s software in the six-month period from April to October of this year.
Here are some of the report’s top line tracking data:
Here’s what Dorka Palotay, SophosLabs security researcher, has to say about the findings:
On WannaCry:
“Even though our customers are protected against it and WannaCry has tapered off, we still see the threat because of its inherent nature to keep scanning and attacking computers.”
On Cerber:
“This Dark Web business model is unfortunately working and similar to a legitimate company is likely funding the ongoing development of Cerber. We can assume the profits are motivating the authors to maintain the code.”
On NotPetya:
“We suspect the cyber criminals were experimenting or their goal was not ransomware, but something more destructive like a data wiper.”
What does Sophos say about combating ransomware? (Is anybody out there listening to advice from security pros?)
An optimistic word (via a Sophos Q&A) on the Dark Web from principal research scientist Chester Wisniewski:
"After years of doing criminal business in the open on the Dark Web, the bad guys have gotten careless with their operational security. Increasingly, we see mistakes leading to the uncloaking of some of the most infamous handles online. There have been many arrests and takedowns this year, like Hansa Market and Alpha Bay, and I expect that will continue into 2018. The police have figured out how to work in these dark corners and are making a mockery of the poor security employed by the crooks."