← Blog
Cybersecurity 12 May 2026

New ransomware wave targets Greek SMEs

Our team analysed more than 40 incidents over the past month — every preventive measure you need to know.

The new threat

Recent months have seen a sharp rise in targeted ransomware attacks against Greek small and medium-sized businesses. The Five Mellon team analysed more than 40 incidents and identified specific patterns every business should know about.

How it spreads

In most cases the initial breach comes through a phishing email impersonating a well-known institution (tax authority, social security, banks). As soon as the user opens the attachment, the ransomware runs silently and encrypts files within seconds.

Protective measures

  • Patch your operating system and all applications immediately
  • Apply a 3-2-1 backup policy with offline copies
  • Enable MFA on every account
  • Train staff to recognise phishing
  • Deploy an EDR solution with behavioural analysis

78% of the businesses that were hit had no up-to-date incident response plan.

What to do if you are hit

If you find an infected system, disconnect it from the network immediately, do not pay the ransom and contact specialists straight away. Five Mellon operates a 24/7 incident response team.