{"id":7403,"date":"2019-08-12T04:47:50","date_gmt":"2019-08-12T11:47:50","guid":{"rendered":"https:\/\/www.acalvio.com\/?p=7403"},"modified":"2019-08-12T04:47:50","modified_gmt":"2019-08-12T11:47:50","slug":"ransomware-deja-vu-louisiana-declares-state-emergency-after-cyberattacks-on-schools","status":"publish","type":"post","link":"https:\/\/acalvio.p2staging.us\/index.php\/2019\/08\/12\/ransomware-deja-vu-louisiana-declares-state-emergency-after-cyberattacks-on-schools\/","title":{"rendered":"Ransomware Deja Vu &#8211; Louisiana Declares State Emergency After Cyberattacks on Schools"},"content":{"rendered":"<p>On <strong>24 July, 2019<\/strong> the <strong>State of Louisiana<\/strong> actually had to declare a state of <a href=\"http:\/\/gov.louisiana.gov\/assets\/EmergencyProclamations\/115-JBE-2019-State-of-Emergency-Cybersecurity-Incident.pdf\" target=\"_blank\" rel=\"noopener\">emergency<\/a> over what appears to have been a <strong>ransomware attack<\/strong> against at least three of the school districts within the state. So far, the districts impacted include Sabine, Ouachita, and Morehouse parishes. The attacks seemed to impact various information technology resources as well as the phone systems.<br \/>\n<a href=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/ransomwarelouisiana.jpg\"><img loading=\"lazy\" class=\"alignnone size-medium wp-image-7410\" src=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/ransomwarelouisiana-300x177.jpg\" alt=\"\" width=\"300\" height=\"177\" srcset=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/ransomwarelouisiana-300x177.jpg 300w, https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/ransomwarelouisiana.jpg 513w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<h3>Formal State of Emergency<\/h3>\n<p>The formal state of emergency allows for the use of the Louisiana National Guard, the Louisiana State Police and the State Office of Technology Services by these local districts. In 2017 the Louisiana state governor established the <a href=\"https:\/\/lacybercommission.la.gov\/\" target=\"_blank\" rel=\"noopener\">Louisiana Cybersecurity Commission<\/a> to help educate, prepare for events such as these, and provide a key hand in remediating damage and recovering from such an attack. Various state agencies are now coordinating on this attack, gathering additional data, and communicating with the Federal Bureau of Investigation.<br \/>\nAll in all, like many other city, municipality, or state directed attacks, this attack may be quite expensive to clean-up and remediate. Lost productivity cannot always be calculated easily but we see from other major reports that it can be substantial. Lost funds may have been used for actual payment of the ransomware attack, and for recovery of data, which sometimes may be required even if the ransom is paid.<br \/>\n<img loading=\"lazy\" class=\"alignnone size-medium wp-image-7408\" src=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/paymentofransomwareattack-300x199.jpg\" alt=\"\" width=\"300\" height=\"199\" srcset=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/paymentofransomwareattack-300x199.jpg 300w, https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/paymentofransomwareattack-768x509.jpg 768w, https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/paymentofransomwareattack.jpg 1000w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><br \/>\nExternal cyber consultants, accountants, and a myriad of other staffers are often required to assist with the recovery of data and resumption of normal services.<\/p>\n<h3>Itb\u0000\u0019s Deja Vu all over again!<\/h3>\n<p>Remember the City of Atlanta press coverage? The City of Atlanta had to spend over $2.5 million on emergency information technology services contracts to help remediate and recover from a SAMSAM ransomware attack which impacted a multitude of city services for several days. It was a mess and received substantial press coverage for a number of weeks.<br \/>\nThe state of Colorado similarly had to spend substantial funds to remediate and recover from a ransomware attack that impacted many thousands of computers at the Colorado state department of transportation (CDOT). Colorado state expenditures have been estimated at approximately $1 to $1.5 million as reported so far. It seems to have taken many months to recover from the event and in some internal systems complete recovery could not be achieved.<\/p>\n<h3>Successful Ransomware Attacks now Entirely Preventable<\/h3>\n<p>The most important lesson to learn from all of this is that a successful ransomware attack is now entirely preventable. Many important state, city, and municipal institutions have started to make the investment in deception technology so they can put an end to ransomware anywhere within their enterprise.<br \/>\n<img loading=\"lazy\" class=\"alignnone size-full wp-image-7415\" src=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/08\/bewareransomware2.jpg\" alt=\"\" width=\"176\" height=\"99\" \/><br \/>\nDeception technology can detect ransomware quickly &#8211; more quickly than other technologies. Deception technology can alert on both known, and unknown ransomware attacks and provide confident and rapid detection.<br \/>\nIt does not matter how the ransomware is delivered &#8211; deception can handle it all. The malevolent code can come from a compromised website, email attacks, infected USB memory stick, or directly from a malicious actor. Deception works with all of the file types that may be used to transport malware into your enterprise.<\/p>\n<h3>Deception Technology &#8211; the best solution for detection of ransomware<\/h3>\n<p>Why is deception technology by far the best solution for the detection of ransomware? The answer &#8211; <strong>Acalviob\u0000\u0019s ShadowPlex Deception Technology can identify ransomware, from any source, at any stage of deployment, and with the highest accuracy<\/strong> available. Deception technology is not conditional, nor probabilistic. <strong>The detection is absolute and 100% certain<\/strong>. Deception technology provides virtually flawless detection to ensure that the ransomware is identified, and then rapidly shut down. Speed and accuracy combine to meet and defeat ransomware threats.<br \/>\nBeyond ransomware, there are many other benefits to be found by investing in deception technology. Deception technology can rapidly and decisively identify attacker command and control which is hidden away in your networks, embedded processors, your internet of things (IoT) devices and much more. Malware, attacker tools, or malicious insiders &#8211; it doesnb\u0000\u0019t matter. At any point in time when they touch a deception decoy, Acalvio ShadowPlex will identify them immediately and conclusively. We will then issue a very high integrity alert for action by your SOC team responders.<br \/>\nIn summary, <strong>Acalvio deception technology is optimized and well architected to protect state, city, and municipal networks against ransomware and many other threats<\/strong>. Ransomware can be detected and shut down. There is no reason to expose your agency to the threats and high expense of a successful ransomware attack. Our <strong>high accuracy<\/strong>, <strong>ease-of-deployment<\/strong>, and <strong>broad spectrum of protection<\/strong> will help your government entity avoid the extreme financial costs of a successful ransomware attack.<br \/>\nIf you want to know more about how Acalvio ShadowPlex can protect your agency from ransomware, please review our resource page here: <a href=\"https:\/\/www.acalvio.com\/our-blog\/resources\/\">https:\/\/www.acalvio.com\/our-blog\/resources\/<\/a> or contact us for a free trial. Web\u0000\u0019d be pleased to introduce you to our latest technology and share confidential information about customers that have used Acalvio ShadowPlex to shut down the most difficult ransomware attacks.<\/p>\n<p><a href=\"https:\/\/www.acalvio.com\/contact\/\" style=\"cursor:hand;border: 0px solid #a21d20;padding: 10px 48px;background-color: #A21D20;color: #fff!important;font-size: 20px;font-weight: 500; line-height: 1.7em !important;text-decoration: none;text-align: center !important;width:auto;cursor:hand;\">CONTACT US<\/a><\/p>\n<div class=\"sharethis-inline-share-buttons\" style=\"margin-top:32px;\"><\/div>\n","protected":false},"excerpt":{"rendered":"<p>On 24 July, 2019 the State of Louisiana actually had to declare a state of emergency over what appears to have been a ransomware attack against at least three of the school districts within the state. So far, the districts impacted include Sabine, Ouachita, and Morehouse parishes. The attacks seemed to impact various information technology [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":7404,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[3],"tags":[30,32,34,57,83,101,102,103,111,131,136],"_links":{"self":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts\/7403"}],"collection":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/comments?post=7403"}],"version-history":[{"count":0,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts\/7403\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/media\/7404"}],"wp:attachment":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/media?parent=7403"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/categories?post=7403"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/tags?post=7403"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}