Skip to main content
Attacks and Threats

Ransomware

Malicious software that encrypts a victim's files or systems and demands payment for the decryption key. Password hygiene and backups are key defenses.

Ransomware is a type of malware that encrypts a victim’s files, databases, or entire systems, rendering them inaccessible. The attacker demands a ransom (typically in cryptocurrency) in exchange for the decryption key. Some variants also exfiltrate data and threaten to publish it (double extortion).

Ransomware is often delivered through phishing emails, compromised websites, or exploited vulnerabilities. Once inside a network, it can spread laterally to other systems.

Defenses include regular offline backups, prompt patching, network segmentation, email filtering, endpoint detection, and (fundamentally) strong credential hygiene. Many ransomware attacks begin with a compromised password. Using unique, strong passwords and MFA makes initial access significantly harder for attackers.

Back to the glossary

Stop sharing passwords in spreadsheets

TeamPassword stores, shares and rotates your team credentials, encrypted end to end.

Trusted by 900+ agencies and small teams worldwide