malware

Ransomware

Malware that encrypts victim files or locks systems and demands a ransom payment for decryption. Modern ransomware groups also exfiltrate data and threaten to publish it if the ransom is not paid (double extortion).

Extended Explanation

Ransomware has become one of the most damaging cyber threats, with attacks costing organizations millions of dollars in ransom payments, downtime, and recovery. Common infection vectors include phishing emails, exploited vulnerabilities, and compromised remote access services. Prevention strategies include regular backups, network segmentation, endpoint detection, and employee security awareness training.