Canadian Government Urges Organizations to Take Additional Steps to Protect Against Ransomware Attacks

Stu Sjouwerman | Dec 23, 2021

ransomware-attacksCiting upticks in attacks, Canada’s Centre for Cyber Security asks organizations to step up protective measures, offering guidance and a playbook to improve security.

An open letter to Canadian organizations was released earlier this month warning of a “surge in ransomware incidents” and asking organizations to adopt “basic but appropriate cyber security practices” to stop “the vast majority of cyber incidents targeting Canadians.” According to the letter, ransomware attacks have been targeting Canadian small and medium-sized businesses, health care organizations, utility organizations, and municipalities.

The letter goes on to provide guidance in the form of a baseline set of organizational and security controls, as well as a top 10 list of IT security actions (shown below):

ITSM-10-189_top_10-fig1

We’re glad to see Security Awareness Training included (at number 6) and that it’s encouraged to be “tailored” to meet the needs of the organization. No two organizations are exactly alike, and not every user needs the same amount of education to become vigilant. It’s one of the reasons I also encourage phishing testing to identify the users that continue to be a weak link by engaging with potentially harmful email content.

Given the massive rise in ransomware attacks experienced, it makes sense for the Canadian government to take the time now to encourage businesses to improve their security stance, stating "It’s time to think seriously about cyber security." 

Get Your Ransomware Hostage Rescue Manual

Ransomware Hostage Rescue Manual Cover 2022This 26-page manual is packed with actionable info that you need to prevent infections, and what to do when you are hit with ransomware. You also get a Ransomware Attack Response Checklist and Prevention Checklist. You will learn more about:

  1. What is Ransomware?
  2. Am I Infected?
  3. I’m Infected, Now What?
  4. Protecting Yourself in the Future
  5. Resources

Don’t be taken hostage by ransomware. Download your rescue manual now! 

Get Your Manual

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.