Why Are Insurance Companies Insisting To Pay Ransom For Ransomware Attacks?

Stu Sjouwerman | Aug 29, 2019
HackBusters-Forum

This week, ProPublica published a report describing how insurance companies now prefer to fork over hundreds of thousands of dollars / pounds / Euros in ransom to minimize the detriment to their insured parties.

The ProPublica report states that paying a ransom to hackers makes complete sense as it cuts the cost of downtime, the need to pay massive overtime to employees who need to recover data and also prevents heavy public relation costs dealing with the aftermath of a ransomware attack.

But Cybersecurity experts working for governments and corporates suggest the other way round while dealing with the cyber attacks. Payment of ransoms in malware attacks doesn’t guarantee you get your data back and actually encourages this type of crime.

William Haul, the President of a Financial firm operating in the UK suggests the same advice given by his insurance company. His firm which became a victim of a WannaCry Ransomware attack in 2017 spent thousands of pounds to rebuild the lost data and in the purchase of new hardware and software.

So, what’s your take on this policy Insurance Company policy?

Once your system is compromised with ransomware there may be residual malware left behind and the only way to totally reduce that risk is to build back from bare metal. Discuss here at KnowBe4's Hackbusters Forum:

https://discuss.hackbusters.com/t/pay-or-not-pay-the-ransom-whats-your-opinion/4416

Get Your Ransomware Hostage Rescue Manual

Ransomware Hostage Rescue Manual Cover 2022This 26-page manual is packed with actionable info that you need to prevent infections, and what to do when you are hit with ransomware. You also get a Ransomware Attack Response Checklist and Prevention Checklist. You will learn more about:

  1. What is Ransomware?
  2. Am I Infected?
  3. I’m Infected, Now What?
  4. Protecting Yourself in the Future
  5. Resources

Don’t be taken hostage by ransomware. Download your rescue manual now! 

Get Your Manual

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.