FOGO Solutions’ primary focus is to deliver highly secure and efficient IT solutions to empower our clients in safeguarding their systems against cyberattacks. We are dedicated to providing the necessary tools and expertise to ensure the protection of our client’s valuable data and the smooth operation of their business operations.
Introduction
A local, midsized Insurance Agency fell victim to a devastating Ransomware attack when an unsuspecting end user opened a malicious email attachment. The attachment infiltrated the network via shared folders and encrypted all data on the on-premise server. The on-premise was set to replicate on demand with the cloud server, therefore, also encrypting the cloud server, which was not backed up properly.
Upon discovering that their existing provider lacked a secure and reliable backup plan or disaster recovery strategy for their environment, the agency promptly sought assistance from FOGO Solutions. The customer's IT provider had employed inadequate technology to offer a mere semblance of a "backup" solution.
Challenges
After conducting an initial assessment, we gathered crucial information about revealing alarming gaps in their infrastructure: the absence of a comprehensive Disaster Recovery plan, the lack of a valid and secure backup system, and insufficient security measures that failed to deter such attacks. We discovered several critical components missing from their setup, including a proper firewall equipped with comprehensive threat management services, an effective antivirus/EDR solution, adequate patch management for all systems, and minimal to no monitoring of both on-premise and cloud environments.
FOGO Approach - Incident response
Assess the severity of the attack
Upon receiving the alert about the incident, we immediately dispatched a technician to the customer's location to provide an immediate, in-person response. This rapid on-site deployment allowed our team to promptly commence researching and investigating the situation. The technician diligently assessed the extent of the damage and identified the necessary steps to be taken to restore the customer's operations. This hands-on approach ensured that the customer received timely assistance and allowed us to expedite the recovery process effectively.