Call Sales: 0845 470 4001Call Support: 0800 130 3365 | Support Portal Login

Vodafone blackout highlights urgent need to optimise the security and resilience of critical infrastructure

Vodafone-Outage_BlogHeader

On Monday 13th October, Vodafone customers experienced a blackout of internet and mobile services, with more than 130,000 reports flagged to web outage monitors. In many cases, business users reported they had been left unable to trade, or even communicate with colleagues or customers, throughout the outage, leading to a demonstrable loss of profits. This included other telecoms providers utilising Vodafone's network, who were similarly affected.

  153 Hits

Three steps to more secure employee passwords on World Password Day

three-steps-to-more-secure-employee-passwords-on-world-password-day

Passwords are often more associated with individual and consumer cyber security, but they are an essential part of an organisation's overall security posture. For example, you wouldn't leave the windows open overnight as this would allow easy access into the building for thieves. In the same way, a weak password offers cyber attackers easy access to your corporate infrastructure, after which they can use these credentials to escalate permissions until they granted themselves administration privileges, at which point the risk of financial and reputational damage becomes truly serious!

  2638 Hits

Cultivating a new breed of cyber security for the new shopping experience

cultivating-a-new-breed-of-cyber-security-for-the-new-shopping-experience

Retailers - be they small local shops, online sellers, or top global brands - generate, transfer, and store more data than ever before, ranging from customer data (both online and in-store, as we have considered in previous articles), to supply chain and asset tracking data. Whether it's shopping online or utilising in-store apps to access the latest savings and special offers, the way customers shop has fundamentally changed forever, with the data they generate online and in person allowing retailers to build up unique personas that drive truly bespoke experiences.

  2836 Hits

What does the ICO’s new fining guidance mean for your organisation?

what-does-the-icos-new-fining-guidance-mean-for-your-organisation

On the 18th March 2024, the Information Commissioner's Office issued its updated guidance around the issuing of fines when organisations have been found liable for the integrity of their customers' or end users' data being compromised. It is already well-established now that failure to ensure critical data remains secure will result in costly fines, as we have seen repeatedly in multiple high-profile cases over the years.

  1781 Hits

The Key to Establishing Ironclad Remediation and Disaster Recovery Processes

the-key-to-establishing-ironclad-remediation-and-disaster-recovery-processes

To Test or Not to Test?When it comes to IT disaster recovery and remediation processes, regular testing is not a 'nice to have' - it's absolutely essential!

This isn't hyperbole on my part. You just have to look at the news on any given day. We've all heard the horror stories of organisations in both the public and private sectors experiencing prolonged downtime during disasters due to inadequate preparation, lack of testing, and the unsuitability of their legacy remediation processes and systems.

  1602 Hits

Ransomware: lessons all companies can learn from the British Library attack

ransomware-lessons-all-companies-can-learn-from-the-british-library-attack

In October 2023, the British Library suffered "one of the worst cyber incidents in British history," as described by Ciaran Martin, ex-CEO of the National Cyber Security Centre (NCSC). 

The notorious Rhysida ransomware gang broke into one of the world's greatest research libraries, encrypting or destroying much of its data, and exfiltrating 600 GB of files, including personal information of British Library staff and users.

  78088 Hits

3.5 million Omni Hotel guest details held to ransom by Daixin Team

3-5-million-omni-hotel-guest-details-held-to-ransom-by-daixin-team

The international hotel chain Omni Hotels & Resorts has confirmed that a cyberattack last month saw it shut down its systems, with hackers stealing personal information about its customers.

In the aftermath of the attack, hotel guests reported that they had been forced to check in on paper, that room keys didn't work, and all phone systems and Wi-Fi were offline.

  87436 Hits

Offering clients the ultimate peace of mind – a new approach to security and remediation for legal firms

offering-clients-the-ultimate-peace-of-mind-a-new-approach-to-security-and-remediation-for-legal-firms

Although the sector as a whole has traditionally been comparatively wary of the ever-increasing pace of technology, legal services are increasingly data driven, with an abundance of AI-related discussion emerging within legal technology circles. The core Document Management Systems (DMS) and Practice Management Systems (PMS) remain the centre of focus for how and where to deploy a variety of rapidly maturing SaaS platforms, or dedicated, highly customised suites.

  1537 Hits

$10 million reward offer for apprehension of unmasked LockBit ransomware leader

10-million-reward-offer-for-apprehension-of-unmasked-lockbit-ransomware-leader

Do you know Dmitry Yuryevich Khoroshev?

If you do, there's a chance that you might well on the way to receiving a reward of up to $10 million.

Law enforcement agencies across the US, UK, and Australia have named Dmitry Yuryevich Khoroshev as the mastermind behind the notorious LockBit ransomware group, estimated to have extorted $500 million from companies worldwide.

  95715 Hits

Black Basta ransomware group's techniques evolve, as FBI issues new warning in wake of hospital attack

black-basta-ransomware-groups-techniques-evolve-as-fbi-issues-new-warning-in-wake-of-hospital-attack
Security agencies in the United States have issued a new warning about the Black Basta ransomware group, in the wake of a high-profile attack against the healthcare giant Ascension.
  116108 Hits

'Big-game hunting' - Ransomware gangs are focusing on more lucrative attacks

big-game-hunting-ransomware-gangs-are-focusing-on-more-lucrative-attacks
2024 looks set to be the highest-grossing year yet for ransomware gangs, due - in no small part - to emboldened cybercriminals causing costly disruption at larger companies.

The so-called 'big-game hunting' cyberattacks which target larger, higher-value organisations have contributed to US $459.8 million paid to cybercriminals in the six months of 2024, according to a report by the cryptocurrency research firm Chainalysis.


Although the rise in money criminals have generated through ransomware has risen by what may appear to be a small percentage amount (approximately 2% from US $449.1 million to US $459.8 million), this is in spite of disruption caused to ransomware-as-a-service operations such as LockBit and ALPHV/BlackCat by law enforcement agencies.

The figures for the first half of 2024 include the US $75 million reportedly paid to the Dark Angels ransomware gang by an undisclosed Fortune 50 company, in what was believed to be the largest ever single ransom payment made since records began.

The ballooning size of maximum ransom payments represents a 96% year-on-year growth from 2023, and a 335% increase from the maximum payment made in 2022.

Chainalysis's research reveals that the median ransom payment made in response to the most severe ransomware has rocketed from just under US $200,000 in early 2023 to US $1.5 million by mid-June 2024.

The researchers believe that this 7.9x increase in the typical size of ransom payment (a nearly 1200x rise since the start of 2021) suggests that larger businesses and critical infrastructure providers considered more likely to agree to make higher payments due to their greater access to funds and the more significant impact of downtime.

Against this backdrop, the study claims that ransomware victims are giving in to extortion demands less often. As it explains:

Posts to ransomware leak sites as a measure of ransomware incidents have increased YoY by 10%, something we would expect to see if more victims were being compromised. However, total ransomware payment events as measured on-chain have declined YoY by 27.29%. Reading these two trends in tandem suggests that while attacks might be up so far this year, payment rates are down YoY. This is a positive sign for the ecosystem signalling that perhaps victims are better prepared, negating the need to pay.

In short, ensuring that your organisation had prepared to respond to a ransomware attack is essential.

Many organisations underestimate the importance of having a robust incident response plan. But knowing how to respond, especially in those critical first 48 hours after a cyber attack, can be critical.

Do you worry your company won't know how to recover after a cyber attack? Has your business just been hit by ransomware and you're wondering what to do?

There's still hope.

Don't make the mistake of believing that your organisation will never be targeted. The right approach is to take proactive measures in advance - as it's not a case of whether your business will suffer the likes of a ransomware attack but when.

Make sure to read Exponential-e's step-by-step guide on ransomware remediation.

  91679 Hits

Ransomware-hit vodka maker Stoli files for bankruptcy in the United States

ransomware-hit-vodka-maker-stoli-files-for-bankruptcy-in-the-united-states

Stoli Group USA, the US subsidiary of vodka maker Stoli, has filed for bankruptcy – and a ransomware attack is at least partly to blame.

The American branch of Stoli, which imports and distributes Stoli brands in the United States, as well as the Kentucky Owl bourbon brand it purchased in 2017, was hit by a ransomware attack in August 2024.

  107927 Hits

UK Government proposes ransomware payment ban for public sector

uk-government-proposes-ransomware-payment-ban-for-public-sector

The UK government has proposed extending its ban on ransomware payments to cover the entire public sector in an attempt to deter cybercriminal attacks and protect taxpayers.

  62580 Hits

£3 million fine for healthcare MSP with sloppy security after it was hit by ransomware attack

3-million-fine-for-healthcare-msp-with-sloppy-security-after-it-was-hit-by-ransomware-attack

A UK firm has been hit by a £3.07 million fine after being hit by a ransomware attack that exposed sensitive data related to almost 80,000 people, and disrupted NHS services.

  80165 Hits

Blue Locker ransomware hits critical infrastructure - is your organisation ready?

cyber-security-defence-against-blue-locker-ransomware
Critical infrastructure organisations are once again being warned of the threat posed by malicious cybercriminals, following a ransomware attack against a state-owned energy company in Pakistan.
  331 Hits

Germany charges hacker with Rosneft cyberattack in latest wake-up call for critical infrastructure

Germany charges hacker with Rosneft cyberattack in latest wake-up call for critical infrastructure

A 30‑year‑old man has been charged with launching a cyberattack on the German subsidiary of Russia's state-owned oil giant Rosneft. The cyberattack, which happened in March 2022 in the aftermath of Russia's invasion of Ukraine, crippled the company's operations and cost millions of euros in damages.

  441 Hits

Retail is a prime target for cyberattacks… but it’s time to fight back

Retail is a prime target for cyberattacks… but it’s time to fight back

Traditionally, retailers' biggest security concern has been theft, and so CCTV systems evolved to ensure shoplifters could be identified as quickly as possible and stock shrinkage minimised, forming a foundational element of on-site infrastructure. However, as retailers expanded their operations and looked to achieve seamless communication and interoperability between sites and warehouses, the security concern grew to include data theft, and so secure, resilient connectivity became a key priority.

  371 Hits

UK Government ponders major changes to ransomware response – what you need to know

uk-government-ponders-major-changes-to-ransomware-response-what-you-need-to-know

What's happened? 

Recorded Future has reports that the British Government is proposing sweeping change in its approach to ransomware attacks.

  119002 Hits

Keeping our schools cybersafe throughout lockdown

keeping-our-schools-cybersafe-throughout-lockdown

The past year has challenged the UK's education sector in ways that would previously have been inconceivable, with children learning from home the majority of the time since March.

  3117 Hits

Creating new workspaces for the distributed workforce’s ‘liquid footprint’

creating-new-workspaces-for-the-distributed-workforces-liquid-footprint

With the flexible office model slowly but surely supplanting the traditional working environments in favour of dynamic co-working spaces for a number of years now, we have seen many organisations reconsider the way they think about commercial real estate.

  2736 Hits
London Head Office

100 Leman Street, London, E1 8EU

Manchester Office

1 Spinningfields, Quay Street, Manchester, M3 3JE

Sales: 0845 470 4001
Support Portal Login
Service & Support: 0800 130 3365

 

*Calls to 0845 numbers will cost 7p p/m plus your phone company’s access charge. All inbound and outbound calls may be recorded for training or quality purposes.

*Calls to 0845 numbers will cost 7p p/m plus your phone company’s access charge.
All inbound and outbound calls may be recorded for training or quality purposes.

Click here to find out more about all of Exponential-e's accreditations.
© 2025 Exponential-e Ltd. Reg. No. 04499567, Reg. Address:100 Leman Street, London E1 8EU