Protected Voices: Ransomware
The FBI’s Protected Voices initiative provides cybersecurity recommendations to political campaigns on multiple topics, including ransomware, to help mitigate the risk of cyber influence operations targeting U.S. elections.
Hello, my name is Jim, and I’m a special agent with the FBI. In this video, I want to help you recognize, understand, and protect yourself from ransomware attacks.
Ransomware is a type of cyberattack in which an adversary accesses your computer and encrypts your data, which can cripple your campaign. Once you realize you can no longer access your own files, the adversary demands a ransom payment in exchange for a decryption key. If you pay the ransom, the promised key may or may not be provided, and it may or may not work. If you pay the ransom once, it’s likely they’ll come back again, infect your systems with ransomware a second time, and ask for more money.
The key to ransomware defense is prevention. Here are some specific steps your campaign can take to keep your data safe.
Train all staff in cyber hygiene awareness. Many ransomware attacks start by convincing a user to take an action, such as clicking a link, typing a password into a fake website, or downloading a file. Watch our other Protected Voices videos for more cyber security hygiene tips.
Use a least-privilege principle. Limit users’ access to only the parts of the computer network they actually need. If a staff member only needs to read certain files, give him or her read-only access, and don’t allow that user to edit the files. Before you give anyone administrator access to files, make very sure they need that powerful access. This least-privilege principle may help stop malware from spreading.
Back up data to a standalone source. Ransomware spreads through a network, so anything connected to that network when the infection hits—including network backups—is likely to be infected, too. Some ransomware strands can even lock down cloud-based backups. The one best defense to ransomware is a backup to a separate computer or hard drive that’s disconnected from the main network after a backup is done. It’s a good idea to periodically check your backup to ensure it’s not corrupted. And you should also practice restoring your data from your backup copy from time to time.
Keep your anti-virus programs up to date and patched. And don’t put off installation of system updates that require you to restart your computer.
Keep your software updated so you’re using the latest versions.
What if you do get infected with ransomware?
Call your local FBI field office to report a problem. The FBI does not condone paying the ransom. If you pay the ransom, you’re encouraging the adversary to continue infecting other victims. And even if you pay, there’s no guarantee that you’ll regain access to your data.
Remember, your voice matters, so protect it.
- 01.27.2022 — FBI Los Angeles and Southern California Edison Describe Cybersecurity Partnership (Extended)
- 01.27.2022 — FBI Los Angeles and Southern California Edison Describe Cybersecurity Partnership
- 01.26.2022 — FBI Pittsburgh: Where We Work
- 01.26.2022 — Director Wray Addresses Human Trafficking
- 01.25.2022 — FBI Phoenix Tech Tuesday: Cyber Hygiene
- 01.12.2022 — Inside the FBI Podcast: Fighting Violent Crime
- 12.21.2021 — FBI Seattle Warns About Ransomware
- 12.20.2021 — Stay Cybersecure This Holiday Season
- 12.07.2021 — FBI Salt Lake City Shares Tips to Avoid Holiday Scams
- 12.06.2021 — Consumer Shares Their Holiday Shopping Scam Experience
- 12.02.2021 — Victim of Romance Scam Who Became Money Mule Tells Story
- 11.23.2021 — Citizens Academy Alumni Association President Reflects on Organization's Role
- 11.22.2021 — Karen Corrigan Describes Role of FBI Citizens Academy Alumni Association
- 11.19.2021 — FBI Salt Lake City Warns About Holiday Scams
- 11.18.2021 — Iranian Nationals Charged with Interfering in 2020 U.S. Presidential Election
- 11.16.2021 — Sister of Missing Woman Katelin Akens Marks Six Years Since Disappearance
- 11.16.2021 — Mother of Katelin Akens Marks Six Years Since Daughter's Disappearance
- 11.15.2021 — Inside the FBI: Health Care Fraud
- 11.15.2021 — Friend of Missing Person John Tran Seeks Clues in Disappearance
- 11.15.2021 — Missing Person: John Bui Tran