Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Isolated data key to combating ransomware attacks

by The Gurus
October 10, 2016
in This Week's Gurus
Share on FacebookShare on Twitter

The threat of cyber-attacks is something with which many businesses are familiar. The sad truth is that they are not going to go away any time soon and, if anything, they are getting more sophisticated and more difficult to prevent.
One of the most damaging is the ransom attack, in which an organisation’s data is compromised and only released on payment of a ransom. In a widely reported case, Sony Pictures’ internal network was taken down, business critical data was leaked, and untold reputational damage was done in the media fallout that followed. In the US there are other documented cases of ransomware attacks affecting organizations like hospitals. The number of reported ransoms being paid is probably only the tip of the iceberg as it is widely agreed that many organizations that have paid ransoms will not have disclosed the fact, in order to protect their reputations.
No organisation wants to be in a position where they are vulnerable to such an attack, and soon there will be even more of an incentive to take strong measures to protect data from all kinds of breaches. The European Parliament recently adopted its Directive on Security of Network and Information Systems, which presents a framework under which critical infrastructure providers will need to report incidences of ransomware and so-called ‘hacktivist’ attacks, and detail their responses. Given the damage such disclosures could cause, organizations are likely to look for ever more robust ways to protect their data.
One such solution is to maintain safe copies of critical data ‘off grid’, where they are entirely inaccessible to potential hacktivists. This evolves a more familiar anti-malware protection, which relies on the ‘backup and restore’ principle, in which corrupted data is overwritten with a clean copy. In a ransomware attack, both the live and backup data can be compromised by encryption techniques, so there is no clean copy to restore, making this method ineffectual. Restoration is only possible on payment of the ransom, which generates decryption of the data.
By taking the backup instance of critical data off grid, organizations can be assured that it can’t be reached by intruders who access the network with the malicious intent of encrypting data and holding it to ransom. The mechanism for doing this is what we call an Isolated Recovery Solution (IRS). In this scenario, the organization identifies its mission-critical data and this data is backed up to storage that is only connected to the network for very limited periods – purely for the purpose of making a ‘gold copy’ of key data. During these short connected periods, there are strict security monitoring systems in place, and oversight is limited to a small number of trusted technicians.
In this way, a copy of all mission-critical data is maintained outside of the usual network. Its existence is not publicised – even within the organization. It is accessible by just a very small number of highly trusted, security-cleared personnel. Think of it as a sort of ‘panic room’: if the network perimeter is breached, there’s a secret inner sanctum that is separate, secure and reliable. When the data stored in an IRS is needed, it can be scanned and verified as safe, before it’s easily restored. This means criminals perpetrating a ransomware attack will have no leverage – the encrypted data is simply overwritten in the restore process and there’s nothing that the victim company needs to pay for.
For those organisations required to comply with the European Parliament’s recently adopted Directive on Security of Network and Information Systems, this solution minimises the likelihood that they will suffer the damage to their reputation and sales pipeline that comes with reporting the losses from a ransomware or hacktivist instance. If there is a breach of the firewall this will, of course, still need to be reported. But rather than recording massive instances of compromised data, the organization can report its successful protection of its data and its reputation will remain intact.  And, of course, they won’t be forced to meet the financial demands of a ransomware attack.

ShareTweet
Previous Post

CISOs: Five Ways to Ramp Up Your Security Strategy

Next Post

WikiLeaks releases second batch of 2,086 hacked emails from Clinton campaign chairman

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol