Article
Ethical considerations when dealing with ransomware: ‘To pay or not to pay?’
You have been hit by a ransomware attack, your files have been encrypted and a ransom sum is demanded, will you pay or not? On principle, this may seem like an easy choice: ‘I won't pay, because I don't do business with criminals’.[2] And the NCSC, the IBD and the Police also have this as their starting point.[3] After all, by paying you sponsor new criminal activities as well as giving criminals a reason to try again. However, practice is more recalcitrant. Every ransomware situation is different. Depending on which files are encrypted, to what extent backups are available and whether there is enough in-house knowledge to restore files, the decision may be to pay. Often in an attack, files are encrypted or there is a threat of data being put online. What you need to consider in such a ransomware situation is outlined below. Here are six important considerations to make: