Skip to main content

Ransomware

security
cybercrime

Malware that encrypts a victim’s data and demands payment—often in cryptocurrency—for decryption.

1
definition

Ransomware is malware that encrypts files, locks systems, or steals data and then demands payment for decryption or non-disclosure. Attackers often request cryptocurrency because it can be transferred globally, but payments are traceable on public blockchains and may be subject to legal restrictions.

2
prevention

Resilience depends on security basics: offline backups, patching, least-privilege access, multi-factor authentication, phishing training, endpoint monitoring, and a tested incident response plan. Paying is risky because decryption is not guaranteed and funds may support criminal activity.

Conceptual links

Related terms

4 linked

Explore connected entries beyond the alphabetical index.

All terms and definitions may update as the Cryptionary improves.