How It Works
Victims unknowingly download malicious software — often through email attachments, fake delivery notifications, or pirated software — that encrypts files on their device. A ransom message then demands payment, usually in cryptocurrency, to "unlock" the data, with no guarantee that paying actually restores access.
Real Example
An email pretending to be a delivery notification contains an attachment that, once opened, encrypts all files on the computer and displays a ransom demand in Bitcoin to restore access.
Red Flags 🚩
- Unexpected email attachment from an unfamiliar sender, often disguised as an invoice or delivery notice
- Sudden inability to open files, with a ransom note appearing instead
- Demand for payment in cryptocurrency within a strict deadline
- Software downloaded from unofficial or pirated sources
Protection Steps 🛡️
- Never open email attachments from unknown or unexpected senders.
- Keep your operating system and antivirus software updated regularly.
- Regularly back up important files to an offline or cloud location.
- If infected, disconnect from the internet and consult a cybersecurity professional rather than paying immediately.