Connect with us

Hi, what are you looking for?

HEADLINES

Education sector hardest hit by ransomware in 2020

As the Philippines continues to be on lockdown, virtual classes are still the safest option so students can continue to learn. However, digital transformation comes with cybersecurity risks. 

Sophos, a global leader in next-generation cybersecurity, recently published the “Sophos State of Ransomware in Education 2021,”which looks at the extent and impact of ransomware attacks on educational institutions worldwide during 2020. 

As the Philippines continues to be on lockdown, virtual classes are still the safest option so students can continue to learn. However, digital transformation comes with cybersecurity risks. 

The research findings provide the vulnerability of educational institutions that they should be aware of, review, and act on. 

The main research findings include:

Advertisement. Scroll to continue reading.
  • Education, together with retail, faced the highest level of ransomware attacks during 2020, with 44% of organizations hit (compared to 37% across all industry sectors) 
  • For educational institutions, the financial impact of a ransomware attack in 2020 was crippling. The total bill for rectifying a ransomware attack in the education sector, considering downtime, people time, device cost, network cost, lost opportunity, ransom paid, and more, was, on average, US$2.73 million – the highest across all sectors surveyed, and 48% above the global average.
  • Over half (58%) of the education organizations hit by ransomware said the attackers had succeeded in encrypting their data. 
  • Over a third (35%) of those with encrypted data gave in to the attackers’ demands and paid the ransom. Only the energy, oil/gas, and utilities (43%) and local government (42%) sectors were more likely to pay.
  • The average ransom payment was US$112,435 (lower than the global average of US$170,404). However, those who paid recovered on average only around two-thirds (68%) of their data, leaving almost a third inaccessible, and just 11% got all their encrypted data back.
  • Of those institutions that were not hit with ransomware last year (55% of respondents), the majority (61%) expect to be targeted in the future. The main reasons for this are that cyberattacks are now so sophisticated (46%) and prevalent (42%) that they are almost impossible to stop.

“The education sector has long been an attractive target for cyber-attackers,” Chester Wisniewski, principal research scientist at Sophos, said. “The budgets for IT and cybersecurity can be very tight, with stretched IT teams battling to protect what is often outdated infrastructure using limited tools and resources, coupled with risky end-user behaviors, such as downloading pirated software. 

All this increases exposure to risk in any year, but in 2020 the pandemic happened, and education establishments had to switch, on short notice, to virtual learning environments, with very little time to think about security or provide basic cybersecurity training for all the new remote users. It significantly increased the sector’s vulnerability, and adversaries were quick to seize the opportunity, leaving victims with the substantial financial impact of rebuilding IT infrastructure from scratch.

To secure the network against ransomware, we advise IT teams to focus resources on three critical areas: building more robust defenses against cyberthreats, introducing security skills training for users, and, where possible, investing in more resilient infrastructure.” 

The Sophos State of Ransomware in Education 2021 survey polled 5,400 IT decision-makers, including 499 education IT managers, in 30 countries across Europe, the Americas, Asia-Pacific, Central Asia, the Middle East, and Africa.

Advertisement. Scroll to continue reading.
Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

The attackers used a series of campaigns with novel exploits and customized malware to embed tools to conduct surveillance, sabotage and cyberespionage as well...

HEADLINES

Financial phishing attacks are rapidly increasing in the country as cybercriminals continuously evolve and adapt their tactics, making them sophisticated. The number of attacks...

HEADLINES

A Scale of Harm study by the International Justice Mission revealed that almost half a million Filipino children were trafficked to produce new child...

HEADLINES

Yondu launched an extensive, month-long cybersecurity awareness campaign focused on modern threat detection, incident response, and social engineering defense.

ELECTRONICS

Philips EasyKey partnered with Megaworld and equipped their world-class properties with only the best-in-class smart locks we have on offer, the Philips EasyKey 9300.

HEADLINES

The rising rate of ransomware attacks against healthcare institutions contrasts with the declining rate of ransomware attacks across sectors; the overall rate of ransomware...

HEADLINES

The PLDT wireless unit is also calling on customers to report these messages to Smart’s HULISCAM portal for further action.

HEADLINES

The all-cash transaction is valued at approximately $859 million. Sophos is backed by Thoma Bravo, a leading software investment firm.

Advertisement