{"id":26958,"date":"2023-05-31T14:22:43","date_gmt":"2023-05-31T18:22:43","guid":{"rendered":"https:\/\/michigan.it.umich.edu\/news\/?p=26958"},"modified":"2024-07-08T06:04:17","modified_gmt":"2024-07-08T10:04:17","slug":"stay-alert-to-protect-against-ransomware-tactics","status":"publish","type":"post","link":"https:\/\/michigan.it.umich.edu\/news\/2023\/05\/31\/stay-alert-to-protect-against-ransomware-tactics\/","title":{"rendered":"Stay alert to protect against ransomware tactics"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">A <a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2023\/05\/23\/cisa-and-partners-update-stopransomware-guide-developed-through-joint-ransomware-task-force-jrtf\">recent alert<\/a> from the <a href=\"https:\/\/www.cisa.gov\/joint-ransomware-task-force\">Joint Ransomware Task Force (JRTF)<\/a> warns about the accelerated growth of tactics used by ransomware actors. Founded in 2022, the JRTF acts as an interagency collaborative effort to reduce the prevalence and impact of ransomware attacks and is comprised of members from the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the National Security Agency (NSA), and the Multi-State Information Sharing and Analysis Center (MS-ISAC).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">You can do your part to protect yourself and the university by being aware of ransomware and taking steps to secure yourself. Ransomware attempts often begin with a phishing email. When a recipient opens an attachment or shared document or visits a malicious website, ransomware or other malware is installed on their device. It can then infect and encrypt files on their device or connected systems. In other cases, attackers gain access to install ransomware on a system that is exposed to the internet or through vulnerabilities in software that is not kept up-to-date.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Once systems are compromised, the threat actor demands a ransom (usually to be paid through cryptocurrency) to restore access. They may also threaten to publish or delete the data if the ransom is not paid.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">You can help stop ransomware by doing the following:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Recognize and avoid falling for <a href=\"https:\/\/safecomputing.umich.edu\/be-aware\/phishing-and-suspicious-email\">phishing and suspicious email<\/a>.<\/li>\n\n\n\n<li><a href=\"https:\/\/safecomputing.umich.edu\/protect-yourself\/secure-your-devices\">Secure your devices<\/a> by keeping your software up-to-date. Apply software updates promptly, and ensure that security software (such as antivirus) is running and up-to-date.<\/li>\n\n\n\n<li>Back up your data. See <a href=\"https:\/\/safecomputing.umich.edu\/protect-the-u\/protect-your-unit\/backup-um-data\">Back Up U-M Data<\/a> for requirements if you are responsible for managing university data and\/or systems that store it.<\/li>\n\n\n\n<li>Ensure <a href=\"https:\/\/safecomputing.umich.edu\/crowdstrike-falcon\">CrowdStrike Falcon<\/a> is installed on all U-M owned systems (Windows, macOS, and Linux operating systems, whether workstations or servers).<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">See <a href=\"https:\/\/safecomputing.umich.edu\/be-aware\/phishing-and-suspicious-email\/ransomware\">Ransomware: Don&#8217;t Pay the Ransom!<\/a> and <a href=\"https:\/\/safecomputing.umich.edu\/protect-the-u\/protect-your-unit\/backup-um-data\/ransomware-mitigation\">Ransomware Mitigation<\/a> for additional details, and print and post this 8-1\/2 X 11 inch poster\u2014<a href=\"https:\/\/drive.google.com\/file\/d\/1EbbVRQwRgqq3wVTW1acmVSv87SIK3B4C\/view\">Poster: Beware of Ransomware!<\/a><\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"600\" height=\"335\" src=\"https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-600x335.gif\" alt=\"Hooded person sitting at a computer with virus icons\" class=\"wp-image-26959\" srcset=\"https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-600x335.gif 600w, https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-300x167.gif 300w, https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-768x429.gif 768w, https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-665x371.gif 665w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>A recent alert from the Joint Ransomware Task Force (JRTF) warns about the accelerated growth of tactics used by ransomware actors. Founded in 2022, the JRTF acts as an interagency collaborative effort to reduce the prevalence and impact of ransomware attacks and is comprised of members from the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of\u2026 <span class=\"read-more\"><a href=\"https:\/\/michigan.it.umich.edu\/news\/2023\/05\/31\/stay-alert-to-protect-against-ransomware-tactics\/\">Read More &raquo;<\/a><\/span><\/p>\n","protected":false},"author":68,"featured_media":26959,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_uag_custom_page_level_css":"","_umich_oidc_access":"","_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_ef_editorial_meta_date_first-draft-date":"","_ef_editorial_meta_paragraph_assignment":"","_ef_editorial_meta_checkbox_needs-photo":"","_ef_editorial_meta_number_word-count":"","footnotes":""},"categories":[27],"tags":[488],"class_list":["post-26958","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-safe-computing","tag-cybersecurity"],"uagb_featured_image_src":{"full":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573.gif",1000,558,false],"thumbnail":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-400x266.gif",400,266,true],"medium":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-300x167.gif",300,167,true],"medium_large":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-768x429.gif",665,371,true],"large":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-600x335.gif",600,335,true],"1536x1536":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573.gif",1000,558,false],"2048x2048":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573.gif",1000,558,false],"excerpt-thumbnail":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-200x140.gif",200,140,true],"themonic-thumbnail":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-60x42.gif",60,42,true],"ioslider-thumbnail":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-658x300.gif",658,300,true],"post-thumbnail":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-665x371.gif",665,371,true],"400x250-crop":["https:\/\/michigan.it.umich.edu\/news\/wp-content\/uploads\/2023\/05\/dreamstime_m_195922573-400x250.gif",400,250,true]},"uagb_author_info":{"display_name":"Matt Martin, ITS Privacy Office","author_link":"https:\/\/michigan.it.umich.edu\/news\/author\/mattmart\/"},"uagb_comment_info":0,"uagb_excerpt":"A recent alert from the Joint Ransomware Task Force (JRTF) warns about the accelerated growth of tactics used by ransomware actors. Founded in 2022, the JRTF acts as an interagency collaborative effort to reduce the prevalence and impact of ransomware attacks and is comprised of members from the Cybersecurity and Infrastructure Security Agency (CISA), the&hellip;","_links":{"self":[{"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/posts\/26958","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/users\/68"}],"replies":[{"embeddable":true,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/comments?post=26958"}],"version-history":[{"count":3,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/posts\/26958\/revisions"}],"predecessor-version":[{"id":26994,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/posts\/26958\/revisions\/26994"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/media\/26959"}],"wp:attachment":[{"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/media?parent=26958"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/categories?post=26958"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/michigan.it.umich.edu\/news\/wp-json\/wp\/v2\/tags?post=26958"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}