Still cutting a swathe through small-town America A chambers of commerce in Vermont has found itself $5,000 (APS3,000) out of pocket after having to replace computers, servers and backup drives infected by the rampaging Cryptolocker malware.The Area Chambers of Commerce in the town of Bennington reportedly had its entire membership list, newsletter a brochure templates and grant records encrypted during the attack, leaving it with only it basic financial records, according to local press.The attack happened in early February, coincidentally around the time Cryptolocker found its way on to a computer belonging to a North Carolina law firm with equally troublesome consequences.Confronted with a ransom demand for $400 Bitcoins, the organisation attempted to pay but was foiled by a power outage that disrupted its link to the ransom gang (Cryptolocker often sets a time period for payment). The organisation decided to swap out its computers to be certain the malware had been banished before investing in better backup.“It’s like starting a brand new chamber of commerce,” the organisation’s director Joann Erenhouse told the Bennington Banner. “It was like going back to a clay tablet and stylus, it was so frustrating.” So it appears that six months after it appeared, Cryptolocker is still reeling in victims with its double whammy of encrypting every file it can lay its mucky code on before demanding money for the unlock ley. To make matters worse, paying for the key seems to be getting less effective over time.The same story that mentions the Bennington Chamber of Commerce’s ransom disaster notes that a nearby dentistry practice had also been hit by the malware around the same time. It paid $550 in Bitcoins but received no unlock key, part of a now established theme; there is growing evidence that a substantial number of Crptolocker victims never see their data again no matter what they do,It is the surprising willingness of victims to pay up that has defined the Cryptolocker story. This could be a comment on how people have been de-sensitised to the consequences of being infected by malware or just part of a deeper shift that views these events as simply a cost of doing business.Probably the most notorious example of a willing payer was that of a Massachusetts police department that found itself stumping up $750 ransom using what must have been public money to get back important files.A recent UK survey of computer users by the University of Kent found that 9 percent had experienced some form of ransom Trojan, with 3.4 percent encountering Cryptolocker. Forty percent chose to pay up with many reporting that no key was forthcoming. Related content news UK government plans 2,500 new tech recruits by 2025 with focus on cybersecurity New apprenticeships and talent programmes will support recruitment for in-demand roles such as cybersecurity technologists and software developers By Michael Hill Sep 29, 2023 4 mins Education Industry Education Industry Education Industry news UK data regulator orders end to spreadsheet FOI requests after serious data breaches The Information Commissioner’s Office says alternative approaches should be used to publish freedom of information data to mitigate risks to personal information By Michael Hill Sep 29, 2023 3 mins Government Cybercrime Data and Information Security feature Cybersecurity startups to watch for in 2023 These startups are jumping in where most established security vendors have yet to go. By CSO Staff Sep 29, 2023 19 mins CSO and CISO Security news analysis Companies are already feeling the pressure from upcoming US SEC cyber rules New Securities and Exchange Commission cyber incident reporting rules don't kick in until December, but experts say they highlight the need for greater collaboration between CISOs and the C-suite By Cynthia Brumfield Sep 28, 2023 6 mins Regulation Data Breach Financial Services Industry Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe