Ransomware is malicious software that locks files or systems and demands payment for their release. Some attackers also steal information before encrypting it, then threaten to publish the data unless a ransom is paid.

Large organisations are not the only targets. Small businesses can be especially vulnerable because they often depend on a limited number of computers, email accounts and cloud services to continue operating.

How ransomware enters a business

Common entry points include:

  • Phishing emails and malicious attachments

  • Stolen or reused passwords

  • Unprotected remote-access services

  • Outdated website plugins and applications

  • Compromised administrator accounts

  • Infected downloads

  • Suppliers with access to connected systems

An infection on one device may spread to shared folders, network storage and synchronised cloud files.

Backups are your recovery plan

A backup is only useful if it is current, complete and capable of being restored.

Keep multiple copies of important business data and ensure at least one copy is isolated from everyday computers and networks. If every backup remains continuously connected, ransomware may encrypt those copies as well.

Backups should cover more than website files. Consider:

  • Business documents and financial records

  • Customer and supplier information

  • Email and contact data

  • Website files and databases

  • Application settings

  • Licence information and recovery codes

Test restoring your backups regularly. Discovering that a backup is incomplete during an emergency is too late.

Reduce the likelihood of an attack

Businesses can reduce their exposure by:

  • Enabling multi-factor authentication

  • Using unique passwords and a password manager

  • Updating operating systems, plugins and applications

  • Removing accounts that are no longer required

  • Restricting administrator access

  • Securing remote desktop and control-panel access

  • Training staff to recognise phishing attempts

  • Monitoring unusual login activity

Website owners should remove abandoned plugins and themes rather than merely deactivating them.

What to do during a ransomware incident

Disconnect affected devices from the network, but do not erase them. Preserve any ransom messages, suspicious emails and system logs.

Contact your IT or security provider and report the incident through ReportCyber. Consider legal, privacy and insurance obligations before communicating with customers or third parties.

Paying a ransom does not guarantee that your files will be restored or stolen information deleted.

How MediaRack can help

MediaRack customers should submit an urgent support ticket if they believe a hosting account, website or mailbox has been compromised.

Hosting backups provide an important recovery option, but they should not be treated as the only copy of business-critical information. Maintain your own independent backups and regularly confirm that they can be restored.

The best time to prepare for ransomware is before an attack—not after access to your files has disappeared.

 



Sexta-feira, Setembro 11, 2026





« Voltar