Arab Press

بالشعب و للشعب
Wednesday, Mar 25, 2026

A ransomware attack can begin in surprisingly simple ways

A ransomware attack can begin in surprisingly simple ways

Hackers often look for cracks in an organization's human shield
Ransomware can sneak into an organization by simple deception.

Often referred to as social engineering, hackers often look for cracks in the human shield at organizations.

This lets the attackers in the door, allowing them to gain higher "privileges" – or a higher level of security access – in a computer network; the key to carrying out a ransomware attack.

"Social engineering attacks can be executed to escalate privilege and gain more sensitive information and access over a series of attacks," Alethe Denis, social engineering expert and consultant for Critical Insight, told Fox Business.

Most cyberattacks – about 70 percent – are related to email phishing, Denis said. Phishing emails – which appear to come from a trusted source – are a simple but effective form of social engineering.

A more sophisticated approach involves a "well-thought-out and formally planned attack that has one or more social engineering elements," Denis said, adding that this kind of ransomware attack might, for example, target the oil and gas sector.

This approach may employ the gathering of seemingly innocuous information via a phone call, email or text message.

"While some of us think that we would be able to defend against these things, all of us are actually very much susceptible to these types of attacks," Denis explains in a recent video on the topic.

Attackers can essentially turn somebody in an organization into an unwitting insider.

"[Attackers are] going to hedge bets on using helpful employees whose job function is to be helpful, perform customer service or otherwise be receptive to requests and handle requests – those types of roles within your company are going to be targeted," Denis says in the video.

Denis gives one example of a company issuing a press release about their most recent charitable-giving campaign in which they mention a specific charity and a specific dollar amount that the campaign raised.

"The attacker would be able to then learn the name of the charity, the amount of money that was raised through the campaign and incorporate these into their development of a solid phish [email]," she says in the video.

"They could use logos of the charity … to pose as a representative from the charity and then incentivize the company to … engage with the email based on the fact that they promise some kind of recognition. Either an award or some kind of collaborative marketing effort to bring attention to this campaign," Denis says in the video.

Social media is also a favorite target.

"Social media is a bad actor's best friend and houses an immense amount of data that can be leveraged against businesses," Denis told Fox Business.

The larger point is, once the attacker gets a foothold, ransomware unfolds over a series of attacks, "resulting in a series of smaller compromises and finally one larger compromise to a company's data or systems," Denis said.

Though the final attack is the one that makes the news, the first stages of an attack are part of "an onion with many layers and take thoughtful time and planning."
Newsletter

Related Articles

Arab Press
0:00
0:00
Close
Saudi Arabia Expands Regional Trade Links by Opening New Land and Sea Routes to UAE
World Economic Forum Delays Saudi Conference as Regional Conflict Disrupts Global Agenda
Saudi Arabia and UAE Signal Potential Entry into Iran Conflict if Critical Infrastructure Is Targeted
Global Firms Accelerate Expansion into Saudi Arabia as Economic Reforms Gain Momentum
Global Labour Pressure Mounts as ILO Faces Calls to Reject Saudi Bid to Dismiss Migrant Worker Complaint
Gulf Powers Move Closer to Entering Iran Conflict as Regional Pressure Intensifies
Saudi Arabia Breaks Ranks with Regional Allies Over Response to Iran Escalation
Saudi Arabia Moves Closer to Direct Role as Iran Conflict Intensifies
World Economic Forum Postpones Jeddah Meeting Amid Escalating Regional Tensions
Trump to Deliver Keynote Address at Saudi-Backed Investment Summit in Miami Beach
Saudi Arabia and Kuwait Press Ahead With Energy Agreements Despite Regional Conflict
Can Saudi Arabia’s Yanbu Port Replace Hormuz? Capacity Limits Test Critical Oil Lifeline
Saudi Arabia Detects Ballistic Missiles as Regional Tensions Escalate in Gulf
Saudi Aramco Reduces Oil Shipments to Asia for Second Consecutive Month
Saudi Aramco Reduces Oil Shipments to Asia for Second Consecutive Month
Saudi Arabia and UAE Push Ahead With Major Deals Despite Iran-Related Uncertainty
Formula One Cancels Bahrain and Saudi Arabia Grands Prix Amid Escalating Regional Tensions
Pakistan Signals Strategic Realignment Toward Saudi Arabia Amid Regional Tensions
Saudi Arabia Cuts Oil Shipments to Asia as Regional Conflict Disrupts Key Export Routes
Saudi Arabia Moves to Contain Regional Escalation as Houthis Signal Readiness to Join Conflict
Saudi Arabia Signals Independent Nuclear Strategy Unaffected by Iran Tensions
Saudi Arabia Signals Independent Nuclear Strategy Unaffected by Iran Tensions
Egypt Reaffirms Strong Support for Saudi Arabia as Sisi Condemns Iran’s Gulf Attacks
Saudi Stocks Close Higher as Tadawul Index Gains 0.55% on Broad Sector Strength
Iran Fires Ballistic Missiles Toward Riyadh as Gulf Conflict Intensifies
Barcelona Midfielder Marc Casadó Attracts €40 Million Interest from Saudi Clubs
Strait of Hormuz Tensions Rise as Saudi Arabia Opens Key Air Base to US Forces
Saudi Arabia Confronts Strategic Turning Point as Iran Conflict Redefines Regional Alliances
Saudi Arabia Intercepts Missile as Two Others Land in Remote Area Without Casualties
Saudi Expulsion of Iranian Military Attaché Raises Doubts Over Fragile Riyadh–Tehran Rapprochement
Saudi Arabia’s Strategic East–West Pipeline Gains Global Attention as Energy Routes Face Growing Risks
Iran Reportedly Reduces Strikes on Saudi Arabia Amid Concerns Over Strong Retaliation
Saudi Arabia Criticises Israeli Strikes in Southern Syria Amid Rising Regional Tensions
Egypt and Saudi Arabia Warn Iran’s Actions Threaten Stability Across the Gulf
Egypt and Saudi Arabia Warn Iran’s Actions Threaten Stability Across the Gulf
Saudi Arabia Unveils Comprehensive 2026 Roadmap to Streamline Company Formation
Saudi-UAE Tensions Reveal Emerging Rivalry at the Heart of Gulf Power Dynamics
Saudi Arabia Launches Gulf Maritime Support Initiative to Safeguard Shipping
Saudi Arabia Expands US Military Access as UAE Braces for Prolonged Iran Conflict
Saudi Arabia Expels Iranian Diplomats Amid Escalating Regional Tensions
Saudi Arabia’s Edarat Wins Major Data Centre Deal with Regional Bank
Iran Intensifies Gulf Offensive as Saudi Arabia Intercepts Dozens of Drones
Regional Powers Hold Security Talks as Turkey Seeks New Strategic Pact
Asian Refiners Urge Saudi Arabia to Revise Oil Pricing Mechanism Amid War-Driven Volatility
Gulf States Weigh US Base Access and Military Alignment as Iran War Intensifies
IRGC Claims Strikes on Israel, Kuwait and Saudi Arabia as Conflict Widens
Saudi Arabia Intercepts Multiple Drones Amid Continued Iranian-Linked Attacks
Remains of Fallen Soldier Repatriated Following Death in Saudi Arabia
Iran Tensions Challenge Saudi Arabia’s Strategic Shift to Red Sea Oil Exports
Saudi Arabia Turns to Alternative Export Routes as Hormuz Disruption Strains Oil Flows
×