The ransomware business is booming: In the United States alone, this form of cyberattack increased in frequency by 200% between 2019 and 2021. It’s an urgent threat, but too many leaders are caught flat-footed when it happens to them. Ransomware is malicious software that uses encryption to prevent access to data on the infected machine, effectively paralyzing the computer system. The culprits behind the attack then demand payment in exchange for decrypting the files and restoring access to the infected systems. The tactic dates to the 1980s, but it became a prominent threat to businesses after 2010 with the rise of cryptocurrency, criminals’ preferred mode of payment.
It’s a threat riddled with uncertainties, which makes planning a response difficult. Many organizations just want to find the quickest way out, and that often means paying the ransom, even though the financial burden may be considerable and the outcome far from certain. In a recent study of 300 companies, 64% revealed that they had experienced a ransomware attack within the previous 12 months, and a staggering 83% of those paid the ransom. On average, only 8% of organizations that paid up recovered all of their data, while 63% got about half of it back.
Some organizations receive a demand for a second (and perhaps even higher) ransom, despite having paid the first one on time, but the worst-case scenario is when the victim pays but either never receives the decryption key or it doesn’t work as intended.1
Organizations that decide not to pay also bear costs in terms of business downtime and lost revenues. And organizations that are caught unprepared, without a reliable backup system or an incident response plan, end up suffering the most — not only financially but also reputationally.
この記事は MIT Sloan Management Review の Summer 2022 版に掲載されています。
7 日間の Magzter GOLD 無料トライアルを開始して、何千もの厳選されたプレミアム ストーリー、9,000 以上の雑誌や新聞にアクセスしてください。
すでに購読者です ? サインイン
この記事は MIT Sloan Management Review の Summer 2022 版に掲載されています。
7 日間の Magzter GOLD 無料トライアルを開始して、何千もの厳選されたプレミアム ストーリー、9,000 以上の雑誌や新聞にアクセスしてください。
すでに購読者です? サインイン
Avoiding Harm in Technology Innovation
To capitalize on emerging technologies while mitigating unanticipated consequences, innovation managers need to establish a systematic review process.
Make a Stronger Business Case for Sustainability
When greener products and processes add costs, managers can shift other levers to maintain profitability.
How to Turn Professional Services Into Products
Product-based business models can help services firms achieve greater scale and profitability. But the transformation can be challenging.
Do You Really Need a Chief AI Officer?
The right answer depends on the strategic importance and maturity of AI in your company.
Where To Next? Opportunity on the Edge
Doing business in regions considered less stable or developed can pay off for companies. But they must invest in working with local communities.
Make Smarter Investments in Resilient Supply Chains
Many companies invest in resilience only after a disruption. Applying the concept of real options can help decision makers fortify supply chain capabilities no matter the crisis.
The Three Traps That Stymie Reinvention
Organizational identity, architecture, and collaboration can be either assets or liabilities to pursuing growth in new sectors.
What Makes Companies Do the Right Thing?
Vaccine makers varied widely in their engagement with global public health efforts to broaden access to COVID-19 immunizations. Ethically motivated leadership was a dominant factor.
Build the Right C-Suite Team for Your Strategy
CEOs can foster a more effective leadership team by understanding when to tap senior executives' competitive instincts and when to encourage collaboration.
A Better Way to Unlock Innovation and Drive Change
A strengths-based approach to building teams can win employee commitment to change and foster an inclusive, agile culture.