Ransomware
What is Ransomware?
Malicious software that encrypts a victim's files or systems and demands payment (ransom) for the decryption key. Ransomware has become one of the most financially damaging forms of cyber attack affecting organisations worldwide.
Terms that appear alongside ransomware
Each of these is named in at least one of the same controls as ransomware. The number is how many controls name both.
- cybersecurity 28 shared controls
- nist 25 shared controls
- resilience 22 shared controls
- incident response 20 shared controls
- cyber incident 17 shared controls
- breach notification 17 shared controls
- lessons learned 17 shared controls
- compliance 17 shared controls
Frameworks that govern ransomware
What the standards actually require on ransomware
Requirements naming ransomware across 6 standards, quoted from the control text.
Business Continuity + Cyber Resilience is core per FSA Cybersecurity Guidelines + intersects with FSA Operational Resilience Framework (2023) + BCBS Principles for Operational Resilience (March 2021) + CPMI-IOSCO Guidance on Cyber Resilience for FMIs.
JP-FSA-CYB-Business-Continuity-Cyber-Resilience-RTO-RPO-Backup-Immutable-Air-Gapped-Disaster-Recovery-Ransomware-Resistance · Japan FSA Cybersecurity Business Continuity + Cyber Resilience + RTO + RPO + Backup + Immutable + Air-Gapped + Disaster Recovery + Ransomware Resistance + Operational Resilience + Critical Function Mapping + FSA Operational Resilience Framework →HKMA C-RAF 2024-2025 pipeline + emerging risks + sectoral cybersecurity evolution. KEY 2024-2025 INITIATIVES: (1) AI + MACHINE LEARNING + GENERATIVE AI CYBER GOVERNANCE - AIs deploying AI/ML for fraud detection + AML + customer service + lending + risk managem...
HKMA-CRAF-2024-2025-AI-Quantum-Cloud-Ransomware-DORA · HKMA C-RAF 2024-2025 Pipeline - AI, Quantum-Resistant Cryptography, Cloud Security, Ransomware, EU DORA Coordination →Lloyds Cyber Insurance Requirements - Claims Handling Standards for Cyber Events and Sanctions/Ransomware Compliance. Claims Handling Standards for Cyber Events: (a) Specialised cyber claims handling capability + Lloyds claims handler training in cyber-specifi...
LLOYDS-CI-Claims-Handling-Standards-Cyber-Events-Sanctions-Ransomware-Payment-Compliance-OFAC-HMT · Lloyds Cyber Insurance Claims + Sanctions + Ransomware Payment + OFAC →The ransomware payment report must contain the prescribed information, including details of the incident, the demand, the payment made and the entity to which it was made.
AUCSA-RAN-CONTENT · Content of a ransomware payment report →HITECH 4-tier CIVIL MONETARY PENALTIES (CMP) + enforcement (Section 17939; 45 CFR 160.404; inflation-adjusted annually). HHS OCR ENFORCEMENT AUTHORITY: HHS Office for Civil Rights (OCR) primary federal enforcer;
HITECH-Enforcement-CMP-Tiers-StateAGs-OCR · HITECH 4-Tier Civil Monetary Penalty Structure, State AGs Enforcement and HHS OCR Settlements →A covered entity that makes a ransom payment as the result of a ransomware attack must report the payment to CISA not later than 24 hours after the payment is made, even if the attack is not a covered cyber incident.
CIRCIA-2242a2 · 24-Hour Ransom Payment Report →Questions people ask about ransomware
What is Ransomware?
Why is Ransomware important for compliance?
Which compliance frameworks address Ransomware?
Where can I learn more about Ransomware?
See how Ransomware applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.