Re: 'Ransomware attacks that take longer than five days are now considered 'slow attacks'
I modified our mail server detection's - we received "DHL CONSIGNMENT NOTIFICATION: AWB 9899691012 Clearance Doc" this morning but my log shows a "AWB 9899691099 Clearance Doc_pdf.gz" attachment so my updates have blocked it. I've been describing my functional checks to the mail server company for years now but they are always ignored - they keep telling everyone that users need to keep paying for a new antivirus update.
Essentially Ransomware and Malware attacks are very risky everywhere but they seem to be resulting in corporations everywhere offering new update purchases, not just features that totally block this crap. Viruses and Malware have always been profitable on both sides ever since they originally appeared.
I remember a comment on El Reg about 20 years ago that suggested that the anti-virus companies were creating viruses to make sure everyone purchased their anti-virus software ... I expect that was just a snivelling miserable comment back then, but the attack environment has been profitable on all sides every since, we're paying a little regularly for protection - and a lot if the protection doesn't work.