Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      The satellite broadband operators taking on Starlink

      9 July 2025

      Yaccarino out: Musk’s handpicked CEO quits X suddenly

      9 July 2025

      AI gold rush propels Nvidia to record $4-trillion market cap

      9 July 2025

      Price hike for .za domains

      9 July 2025

      China’s Temu ups ante with South African warehouse launch

      9 July 2025
    • World

      Cupertino vs Brussels: Apple challenges Big Tech crackdown

      7 July 2025

      Grammarly acquires e-mail start-up Superhuman

      1 July 2025

      Apple considers ditching its own AI in Siri overhaul

      1 July 2025

      Jony Ive’s first AI gadget could be … a pen

      30 June 2025

      Bumper orders for Xiaomi’s YU7 SUV heighten threat to Tesla

      27 June 2025
    • In-depth

      Siemens is battling Big Tech for AI supremacy in factories

      24 June 2025

      The algorithm will sing now: why musicians should be worried about AI

      20 June 2025

      Meta bets $72-billion on AI – and investors love it

      17 June 2025

      MultiChoice may unbundle SuperSport from DStv

      12 June 2025

      Grok promised bias-free chat. Then came the edits

      2 June 2025
    • TCS

      TCS | Connecting Saffas – Renier Lombard on The Lekker Network

      7 July 2025

      TechCentral Nexus S0E4: Takealot’s big Post Office jobs plan

      4 July 2025

      TCS | Tech, townships and tenacity: Spar’s plan to win with Spar2U

      3 July 2025

      TCS+ | First Distribution on the latest and greatest cloud technologies

      27 June 2025

      TCS+ | First Distribution on data governance in hybrid cloud environments

      27 June 2025
    • Opinion

      In defence of equity alternatives for BEE

      30 June 2025

      E-commerce in ICT distribution: enabler or disruptor?

      30 June 2025

      South Africa pioneered drone laws a decade ago – now it must catch up

      17 June 2025

      AI and the future of ICT distribution

      16 June 2025

      Singapore soared – why can’t we? Lessons South Africa refuses to learn

      13 June 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CambriLearn
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Information security » NEC XON shares lessons learnt from ransomware attacks

    NEC XON shares lessons learnt from ransomware attacks

    Promoted | NEC XON has handled many ransomware attacks. Here it distils key insights to better equip you for such scenarios.
    By NEC XON21 May 2024
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp
    Divan de Nysschen, cybersecurity architect at NEC XON
    Divan de Nysschen, cybersecurity architect at NEC XON

    Every organisation faces the looming threat of ransomware. Malicious actors take control of IT assets and demand ransoms. Whether automated or human-operated, this type of malware encrypts files and folders, compelling victims to pay for decryption keys. Paying up doesn’t necessarily ensure restored access, either, and permanent data loss can be catastrophic.

    Understanding ransomware attacks

    There are two main categories of attacks:

    • Commodity ransomware attacks are often automated and spread virally, infiltrating through methods such as e-mail phishing and malware delivery.
    • Human-operated ransomware attacks involve active infiltration by cybercriminals into an organisation’s IT infrastructure. Hallmarks include credential theft and lateral movement with elevated privileges.

    Commodity ransomware is relatively easier to detect, whereas human-operated variants mimic legitimate IT activities, demanding meticulous attention for detection.

    Lessons learnt

    Both commodity and human-operated variants present significant challenges for organisations worldwide. As adversaries become increasingly sophisticated in their tactics, the imperative for proactive defence measures and swift incident response has never been more critical.

    In the following compilation of lessons learnt, we delve into key strategies and insights gleaned from real-world encounters with ransomware attacks:

    • Recognise the differences: While community-based variants exhibit predictable traits, detecting human-operated ransomware demands acute precision and attention. Stay vigilant to identify and thwart evolving threats effectively.
    • Empower your defence: Take charge of your security posture by fortifying your security awareness programme and tightening e-mail security controls. Proactively validate these measures weekly to stay ahead of commodity ransomware threats.
    • Guard your privileges: Proactively defend against human-operated ransomware by implementing a stringent privileged access model. Eliminate avenues for credential theft and safeguard privileged identities with unwavering diligence.
    • Establish clarity amid chaos: Pre-empt confusion during crises by establishing clear communication channels and defining roles in advance. Regularly stress-test these protocols to ensure seamless coordination when it matters most.
    • Detect and respond swiftly: Stay one step ahead of adversaries by deploying endpoint detection and response (EDR) solutions across your infrastructure. Act swiftly to identify and neutralise suspicious behaviour, thwarting modern adversaries’ attempts to blend in.
    • Secure your data’s future: Safeguard your organisation’s data integrity by implementing robust backup processes for critical systems. Regularly test restoration procedures to minimise downtime and ensure business continuity in the face of ransomware attacks.
    • Fortify your perimeter: Take proactive steps to fortify your infrastructure against adversarial access points. Conduct regular workshops to identify and eliminate vulnerabilities, reducing the complexity of your environment and bolstering defences.
    • Contain the threat: In the event of a ransomware breach, act decisively to contain the threat and minimise its impact on your organisation. Isolate compromised endpoints and identities, and swiftly trace the attack’s source for elimination.
    • Explore partnership opportunities: Unlock the full potential of your cybersecurity defences by considering outsourcing to a managed security partner (MSP). Let experts handle the burden of studying ransomware threats while you focus on innovation and growth.

    Ransomware cartels operate ruthlessly, exploiting double extortion tactics to unlock multiple revenue streams within the cybercriminal economy. Proactive cyber strategies and robust safeguards are essential for preparing against these attacks and mitigating potential business damage.

    About NEC XON
    NEC XON is a leading African integrator of ICT solutions and part of NEC, a Japanese global company. NEC XON has operated in Africa since 1963 and delivers communications, energy, safety, security and digital solutions. It co-creates social value through innovation to help overcome serious societal challenges. The organisation operates in 54 African countries and has a footprint in 16 of them. Regional headquarters are located in South, East and West Africa. NEC XON is a level 1-certified broad-based black economic empowerment business. Discover more at www.nec.xon.co.za.

    • Read more articles by NEC XON on TechCentral
    • This promoted content was paid for by the party concerned


    Divan de Nysschen NEC XON
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleAnd now for the next revolution in printing: HP Smart Ink Tank printers
    Next Article Ether leads fresh crypto rally

    Related Posts

    NEC XON expands cyber shield with Fortinet-backed managed services

    3 July 2025

    NEC XON earns XMDR partner status with Palo Alto Networks

    26 June 2025

    Disrupt first, ask questions later – the uncomfortable truth about incident response

    18 June 2025
    Add A Comment

    Comments are closed.

    Company News

    Samsung unfolds the future with thinnest, lightest Galaxy Z Fold yet

    9 July 2025

    Huawei supercharges South African SMEs with over 20 new eKit products

    9 July 2025

    Webtonic cracks the talent code with AWS-powered TonicHub

    9 July 2025
    Opinion

    In defence of equity alternatives for BEE

    30 June 2025

    E-commerce in ICT distribution: enabler or disruptor?

    30 June 2025

    South Africa pioneered drone laws a decade ago – now it must catch up

    17 June 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.