​How to avoid being attacked by ransomware

7 tips to avoid ransomware attacks

Picture: Buster Benson, Flickr

Picture: Buster Benson, Flickr

Ransomware is one of the fastest-growing and most lucrative forms of cybercrime in the world. It's malware that encrypts files on your device and is often delivered through an innocent-seeming link in an email or when a “helpful” program is downloaded.

When files are encrypted they can no longer be read unless you have access to a 'key' - something the bad guys don’t provide until the ransom is paid. Some ransomware will encrypt regular data files like images and documents, but lately there have also been ransomware attacks that instead encrypt special system files. When this happens the experience for the victim is bit different and could include not being able to start their device at all or ending up with a computer that’s forgotten where all its files are.

Whatever the symptoms, the effect is the same: no key, no data until the ransom has been paid. One of the toughest questions is what to do if your data is in fact hijacked - do you pay the crooks or do you not engage with them? Typically, security experts advise the latter because paying the ransom makes the bad guys more brazen, while others believe there are times where there’s really no choice but to pay.

At a typical price point around $300 to $600, ransomware can be expensive. On the other hand, think about what might be in those scrambled files: your baby videos; those tax return documents you were supposed to keep for seven years; the assignment you need to submit on Friday… how much are those really worth?

For better or for worse, most ransomware gangs have acquired a bit of an “honour among thieves” reputation, so that if you do pay the money, you almost certainly will get your files back. On the other hand, law enforcement and security experts are most likely to say, “This is extortion! If you can possibly take it on the chin, we urge you NOT TO PAY!”

But those are easy words to say if it’s not your data on the line. We’ve shied away from moralising about whether it’s always unacceptable to support criminality by paying up, even if you are in a difficult position.

So how do you protect yourself from getting put in this no-win situation in the first place?

How to avoid ransomware attacks

1. Firstly, do not try to remove the malware yourself. Some variants of ransomware have trip-wires built in that erase your data permanently if you do the wrong thing.

2. Make regular backups of your critical data and store this data on a device that is offline and not connected to any network.

3. Regularly update software on your desktop and mobile devices. Set Windows Update to automatically install updates and alert you to updates for other applications, if you are a PC user. Apple also has automatic checks for software and OS updates.

4. Block or do not open attachments with file types that have odd extensions e.g .exe

5. Avoid installing or running unwanted software on your desktop or mobile devices.

6. Don’t plug in external devices like a USB-drive from unknown sources.

7. Finally, don’t pay if you can possibly avoid it, even if it means some personal hassle.

Justin Peters is Technology Solutions Director APAC at Sophos

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags sophossecurityransomwaremalwarehacking

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Justin Peters

PC World
Show Comments

Father’s Day Gift Guide

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

David Coyle

Brother PocketJet PJ-773 A4 Portable Thermal Printer

I rate the printer as a 5 out of 5 stars as it has been able to fit seamlessly into my busy and mobile lifestyle.

Kurt Hegetschweiler

Brother PocketJet PJ-773 A4 Portable Thermal Printer

It’s perfect for mobile workers. Just take it out — it’s small enough to sit anywhere — turn it on, load a sheet of paper, and start printing.

Matthew Stivala

HP OfficeJet 250 Mobile Printer

The HP OfficeJet 250 Mobile Printer is a great device that fits perfectly into my fast paced and mobile lifestyle. My first impression of the printer itself was how incredibly compact and sleek the device was.

Armand Abogado

HP OfficeJet 250 Mobile Printer

Wireless printing from my iPhone was also a handy feature, the whole experience was quick and seamless with no setup requirements - accessed through the default iOS printing menu options.

Azadeh Williams

HP OfficeJet Pro 8730

A smarter way to print for busy small business owners, combining speedy printing with scanning and copying, making it easier to produce high quality documents and images at a touch of a button.

Andrew Grant

HP OfficeJet Pro 8730

I've had a multifunction printer in the office going on 10 years now. It was a neat bit of kit back in the day -- print, copy, scan, fax -- when printing over WiFi felt a bit like magic. It’s seen better days though and an upgrade’s well overdue. This HP OfficeJet Pro 8730 looks like it ticks all the same boxes: print, copy, scan, and fax. (Really? Does anyone fax anything any more? I guess it's good to know the facility’s there, just in case.) Printing over WiFi is more-or- less standard these days.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?