The new threat
Recent months have seen a sharp rise in targeted ransomware attacks against Greek small and medium-sized businesses. The Five Mellon team analysed more than 40 incidents and identified specific patterns every business should know about.
How it spreads
In most cases the initial breach comes through a phishing email impersonating a well-known institution (tax authority, social security, banks). As soon as the user opens the attachment, the ransomware runs silently and encrypts files within seconds.
Protective measures
- Patch your operating system and all applications immediately
- Apply a 3-2-1 backup policy with offline copies
- Enable MFA on every account
- Train staff to recognise phishing
- Deploy an EDR solution with behavioural analysis
78% of the businesses that were hit had no up-to-date incident response plan.
What to do if you are hit
If you find an infected system, disconnect it from the network immediately, do not pay the ransom and contact specialists straight away. Five Mellon operates a 24/7 incident response team.