Malware
Ransomware
Also known as: Crypto-ransomware, Cryptolocker malware
Definition
Malware that encrypts a victim's data or locks systems and demands payment in exchange for restoring access.
Examples
- WannaCry (2017), which spread via the EternalBlue SMB exploit.
- LockBit and Conti, ransomware-as-a-service operations behind many enterprise breaches.
Related terms
Ransomware-as-a-Service (RaaS)
A criminal business model in which ransomware operators rent their malware and infrastructure to affiliates who carry out attacks and share the proceeds.
Doxware
Malware that threatens to publish stolen sensitive data unless a ransom is paid, combining extortion with data-leak blackmail.
Wiper Malware
Destructive malware whose primary goal is to irreversibly erase or corrupt data, firmware, or boot records — not financial gain.
Encryption
The cryptographic transformation of plaintext into ciphertext using an algorithm and key so that only authorized parties can recover the original data.
Incident Response
The organised process of preparing for, detecting, analysing, containing, eradicating, and recovering from cyber security incidents, then capturing lessons learned.
Malware
Any software intentionally designed to disrupt, damage, or gain unauthorized access to computers, networks, or data.