Immediate Vault Immediate Access

Charting the Rise of Ransomware

At the beginning of the year, Risk Management put ransomware at the top of the list when surveying the 2016 cyberrisk threat landscape, and these attacks have arguably come to the fore as cyberthreat of the year, whether you measure by buzz or by increase in incidents.

Indeed, ransomware is not just grabbing headlines—these cyberattacks have quadrupled in 2016, according to a recent Beazley Breach Response Services review of client data breaches. Authorities report a similar surge at large, with the Department of Justice estimating that more than 4,000 ransomware attacks have occurred daily since the beginning of the year, representing a 300% increase from 2015.

buy imuran online www.arborvita.com/wp-content/uploads/2023/10/jpg/imuran.html no prescription pharmacy

In July and August alone, 20% more of Beazley’s clients suffered a ransomware attack than in all of 2015. While the ransoms remain low, often in the range of $1,000, the firm points out that the true costs are dramatically higher due to the extensive review of company systems and data required to ensure the malware has been removed and data is clean.

Looking at specific industries, Beazley noted a significant uptick in attacks against financial institutions in the first three quarters of 2016, with hacking and malware accounting for 39% of breaches in the sector, up from 26% in 2015, and in higher education, these attacks increased from 38% last year to 46% in 2016. Hacking and malware account for a relatively steady proportion of just over half of breaches in the retail sector.

buy synthroid online www.arborvita.com/wp-content/uploads/2023/10/jpg/synthroid.html no prescription pharmacy

Among healthcare organizations, however, human error has spiked, with 40% of industry incidents caused by unintended disclosure compared to 28% last year.

“From what we are seeing, it appears that many hackers are finding it easier to make money by holding companies to ransom for bitcoin than through selling personal data on the dark web,” said Katherine Keefe, global head of BBR Services. “But, the persistently high levels of hacking and malware attacks of all kinds are a reminder that organizations across industries, and of all sizes, need actionable plans ready to implement when a breach occurs.

buy addyi online www.arborvita.com/wp-content/uploads/2023/10/jpg/addyi.html no prescription pharmacy

Check out the infographic below from security intelligence firm LogRhythm for more background on the rise in ransomware, how these attacks are impacting businesses, and how businesses are responding.

ransomware logrhythm
ransomware logrhythm

Making the Most out of a Crisis

CALGARY, ALBERTA, CANADA—Suppose your company experiences a major hurricane, tornado or fire: Property is destroyed and your business is stalled, meaning customers are left waiting. But there are buildings to be rebuilt and equipment to be replaced, and the claims process hasn’t even started. This is when the risk manager’s skills at placing the company’s insurance coverage and negotiating for the best payout can not only demonstrate their true value, but can put the company back on course, according to experts here at RIMS Canada’s annual conference.

“When there’s a serious property loss, this is the time for the risk manager to shine, because up until then it’s about premium, premium, premium,” Tom Parsons, manager of risk management at Fairmont Raffles Hotels International in Toronto said during a RIMS Canada Conference session. “Up until a serious loss occurs, I don’t think you feel the impact that you can give back to the company. Because what we do is buy insurance, so it has to work. It is what you helped craft and build into your policy through the years. You have created a policy that is robust, and that is going to cover everything—you hope.”

Among the examples cited was a soft drink bottling plant flooded with eight feet of water following a hurricane. While the company’s high-speed bottling equipment was damaged and would need to be replaced, explained Jeffrey Phillips, managing director in PwC’s U.S. forensic advisory practice, the issue was that floodwaters were highly contaminated due to a number of chicken and hog farms in the area. As a result, the company determined that the building could not be used for any type of food processing and would need to be demolished. The insurer, however, argued that the walls could be sealed, containing any contaminants. The company had found a competitor to do some of the bottling, but it wasn’t enough to fill their orders, Phillips said.

Because delivery of the new bottling equipment was slated to take months, there was also a large business interruption period being covered, he said. This is when innovation came into play. The bottling company was able to show the insurer that buying another plant rather than rebuilding would put them back in business sooner, cutting back on their losses. The insurer agreed and sent them a check. As a result, the company purchased a larger facility in a better location.

“They were up and running in six months—the business interruption had stopped,” he said. The better location also meant reduced shipping costs and the company gained market share. Because the company was able to make the case to its insurer, both came out ahead in the long run.

Phillips recommended that companies negotiating after a crisis “communicate, communicate, communicate” with their insurers.

They should also get their insurers to sign off on major contracts such as scope of work, rates and overhead and discuss changes to operations or facilities with the adjustment team and agree on scope of property damage repair or replacement whenever possible.

Insurers will typically push to return the facility to pre-loss condition, “unless you can prove the changes will save them money,” he added. “Insurers will not be creative for you, they don’t know your business or your goals.”

Japan Earthquake Causes Parts Shortage, Closing 4 GM Plants

The earthquake in Japan earlier this month has impacted the supply chain of General Motors, causing four plants in North America to close temporarily because of a shortage of parts from Japan, the company reported.

GM said in a statement that its manufacturing operations are expected to be down for two weeks beginning April 25 in Spring Hill, Tennessee; Lordstown, Ohio; Fairfax, Kansas andGM logo the Oshawa Flex Assembly in Canada.

The temporary adjustment is not expected to have “any material impact on GM’s full-year production plans in North America,” GM said. In addition, the company “does not expect a material impact to its second quarter or full-year financial results for GM North America.”

Japan’s Kyushu Island was rocked by a 7.0 temblor on April 16, killing 58 people and injuring about 900, according to AIR Worldwide. The quake was the strongest to strike Japan since 2011, when a massive 9.0-magnitude offshore earthquake unleashed a tsunami that killed 18,000 people in the country’s northeast and triggered meltdowns at a nuclear power plant in Fukushima, the New York Times reported.

AIR said the earthquake is expected to result in insured losses between $1.7 billion and $2.9 billion. Those losses only reflect insured physical damage to onshore property (residential, commercial/industrial, mutual), both structures and their contents, from ground shaking, fire-following and liquefaction, AIR said.

The Japan Fire and Disaster Management Agency (FDMA) estimates that more than 3,900 residences and 120 non-residential buildings were damaged or destroyed, a number of mudslides resulted, and 14 fires were attributed to the temblors.

On the same day, April 16, a 7.

8 earthquake struck the central coast of Ecuador, killing 570 people and injuring more than 4,700. AIR estimates losses from that quake between $325 million and $850 million. More than 1,100 buildings are reported to have been destroyed and more than 800 damaged.

Even though they happened just hours apart, the two quakes are not related. The Times reported:

Are the two somehow related?

No. The two quakes occurred about 9,000 miles apart. That’s far too distant for there to be any connection between them.

Large earthquakes can, and usually do, lead to more quakes — but only in the same region, along or near the same fault. These are called aftershocks. Sometimes a large quake can be linked to a smaller quake that occurred earlier, called a foreshock. In the case of the Japanese quake, seismologists believe that several magnitude-6 quakes in the same region on the previous day were foreshocks to the Saturday event.

New Climate Change Report Highlights Risk Management Strategies

Global Warming

This week, a new report from the United Nations’ Intergovernmental Panel on Climate Change summarized the ways climate change is already impacting individuals and ecosystems worldwide and strongly cautioned that conditions are getting worse. Focusing on impacts, adaptation and vulnerability, the panel’s latest work offers insight on economic loss and prospective supply chain interruptions that should be of particular note for risk managers—and repeatedly highlights principles of the discipline as critical approaches going forward.

Key risks the report identified with high confidence, span sectors and regions include:

i. Risk of death, injury, ill-health, or disrupted livelihoods in low-lying coastal zones and small island developing states and other small islands, due to storm surges, coastal flooding, and sea-level rise.

ii. Risk of severe ill-health and disrupted livelihoods for large urban populations due to inland flooding in some regions.

iii. Systemic risks due to extreme weather events leading to breakdown of infrastructure networks and critical services such as electricity, water supply, and health and emergency services.

iv. Risk of mortality and morbidity during periods of extreme heat, particularly for vulnerable urban populations and those working outdoors in urban or rural areas.

v. Risk of food insecurity and the breakdown of food systems linked to warming, drought, flooding, and precipitation variability and extremes, particularly for poorer populations in urban and rural settings.

vi. Risk of loss of rural livelihoods and income due to insufficient access to drinking and irrigation water and reduced agricultural productivity, particularly for farmers and pastoralists with minimal capital in semi-arid regions.

vii. Risk of loss of marine and coastal ecosystems, biodiversity, and the ecosystem goods, functions, and services they provide for coastal livelihoods, especially for fishing communities in the tropics and the Arctic.

viii. Risk of loss of terrestrial and inland water ecosystems, biodiversity, and the ecosystem goods, functions, and services they provide for livelihoods.

The report highlights more sector-specific risks, and one table even highlight the panel’s perception of the role of risk management in the future of climate change policy and planning:

IPCC Chart

On the whole, the report lays out many familiar risk management approaches and how they can be best applied to evaluating the risks of climate change and how to mitigate them. Perhaps the environment is warming to risk-informed decision-making as well.