GDPR fines 'could increase cybercrime ransom demands'

12 Jun 2018

As a result of the introduction of the General Data Protection Regulation (GDPR) last month, cybersecurity firm CrowdStrike has warned that businesses may be lured into paying cyber ransom demands to criminals, rather than pay costly GDPR fines.

Ransomware is a form of malicious software that threatens to publish confidential data, or locks your files until a cyber ransom is paid.

Fines for non-compliance with the GDPR cost up to €20 million, or up to 4% of global turnover, whichever is higher. The GDPR fines have allowed criminals to increase ransom demands, while keeping ransom fees lower than the GDPR penalties.

George Kurtz, Chief Executive of CrowdStrike, stated: ‘If [you have] a 4% fine on your overall top-line revenue, or you have a ransomware that you can pay off and maybe quietly make it go away, I think there’s going to be an interesting dynamic in the amount that the market values paying off enterprise ransomware.’

Many consumers have recently been bombarded with what Security Boulevard, a security bloggers’ network, calls a ‘barrage of new terms and conditions’ from businesses, which are designed to gather and record individuals’ consent in regard to firms’ marketing emails and other communications. Criminals have been taking advantage of the sending of such emails to carry out scams by ‘catching internet users off guard’, according to a report published by Security Boulevard.

If a business finds itself victim of a ransomware attack, business owners should contact the National Cyber Security Centre (NCSC), which provides crisis support to affected firms.

Register for our newsletter

Once a month we'll send you an email packed full of essential business news and handy tax tips to help save you money.

Register

Weston-super-Mare

34 Boulevard
Weston-super-Mare
Somerset
BS23 1NF

01934 415022


Home | Contact us | Accessibility | Disclaimer & Privacy Policy | Help | Site map |

© 2024 Four Fifty Partnership. All rights reserved.

We use cookies on this website, you can find more information about cookies here.


Registered to carry on audit work in the UK by the Institute of Chartered Accountants in England and Wales. Details about our audit registration can be found at auditregister.org.uk under the reference C001092613.

"four fifty partnership" is a trading name of Four Fifty Partnership Limited. Registered in England. Company Number 5032008. Registered Office 34 Boulevard, Weston super Mare, Somerset BS23 1NF.

Directors: Richard Acreman BSc CTA, Joy Boswell FCCA FCA, Peter Ison BA FCA and Nick Gravell FCCA FCA.

Professional Indemnity Insurers: Nexus Underwriting Limited, 52-56 Leadenhall Street, London, EC3A 2EB (Policy Number: 44402654). The territorial coverage is worldwide excluding professional business carried out from an office in the United States of America or Canada and excludes any action for a claim brought in any court in the United States of America or Canada.