ARRL IT Security Incident – $1M ransom
arrl.org
arrl.org
So someone was using the same password for the work and personal stuff and no one has ever bothered prioritizing 2FA got it.
I am also left to wonder if paying helps the investigation.
They stand to loose future premiums if paying ransoms is NOT broadly seen as a viable option.
Sure, in the short term, they hate customers that make a lot of claims. But those claims, in aggregate, are the fuel for their 20% skimming…
If nobody paid ransom, why would they want insurance coverage? And if no insurance covered it, they wouldn’t be able to skim off the corresponding premiums…
We also have to consider the rebuild labor and if entire systems are corrupted then repurchasing new systems.
Yes I get that insurance paid the extortion, but besides just capitulating, why doesn't restoring from backup work, assuming you can spot the vulnerability that caused the ransomware attack?
I lost a hard drive once due to a failure. It was actually liberating. A lot of old stuff I didn't have to worry about anymore.
Also, paying ransomware demands should have civil and criminal penalties because all it does is cause more of it. Ransomware insurance should also be illegal.