back to article Calgary uni pays ransomware criminals $20k for its files back

Administrators at the University of Calgary, Canada, have caved in to criminals and paid a $20,000 ransom to decrypt their computer systems' files after getting hit by a malware infection. Last month, the university fell prey to ransomware, which installed itself on machines, scrambled documents and demanded cash to recover …

  1. elDog

    I hate to say this, but aren't most Uni documents just re-hashes

    Of prior documents?

    Couldn't the poor academics/students just re-plagiarise their theses from google searches?

    1. Anonymous Coward
      Anonymous Coward

      Re: I hate to say this, but aren't most Uni documents just re-hashes

      It was the Uni administration computers that were hit. So even where documents can be recreated the uniquely time-critical nature of the material handled makes attempting this an unwarrantable risk.

      Or do you want to be the one to tell the Vice Chancellor that the reservation for his Xmas party can't be recovered?

      1. Mark 85

        Re: I hate to say this, but aren't most Uni documents just re-hashes

        Or do you want to be the one to tell the Vice Chancellor that the reservation for his Xmas party can't be recovered?

        There will be grave consequences for this.. very grave.

  2. Ole Juul

    police investigation

    "Dalgetty said the police had been called in and were investigating the attack. Under the circumstances, she said, it would not be appropriate to comment further on the details of the infection."

    I doubt the police can do much, but reporting it to them certainly offers a handy excuse for not being questioned further on negligence.

  3. mevets

    Calgary, you say...

    I wonder if they ever heard of openbsd?

    1. herman

      Re: Calgary, you say...

      Theo and Ingo are prolly both rather cracked up by this.

  4. Will 20

    I can't believe people are still paying out these crypto-ransomware extortion deals. Get a good back/DA plan. Put it into place. Test it. If you have a fire in your server farm you won't get to pay a ransom.

    1. Fatman

      RE: can't believe....

      <quote>I can't believe people are still paying out these crypto-ransomware extortion deals. Get a good back/DA plan. Put it into place.</quote>

      Really, I bet that they once had such a plan, only to have it gutted by manglement and the beancounters who felt the money spent on it was wasted.

      1. ecofeco Silver badge

        Re: RE: can't believe....

        I came to say the same thing, Fatman. I'd bet good money that was the case.

  5. DeVino
    Facepalm

    Cannot resist facehand

    "A great deal of work is still required by IT to ensure all affected systems are operational again, and this process will take time"

    At the risk of queuing up to kick someone when they are down.

    Shouldn't IT have been putting a great deal of work into having a backup?

    I mean really !

    Maybe their Information Security dept could help ? (http://icis.cpsc.ucalgary.ca/)

    1. ecofeco Silver badge

      Re: Cannot resist facehand

      See Fatman's post. This was most likely a budget cut decision by upper manglement.

  6. AJames

    Backups?

    The question I always want to ask when I hear about a ransomware hit like this is: where are the backups? Surely a professional IT department of a major institution should have multiple levels of secure backups that would thwart any ransomware attempts? And if not, why hasn't the head of department been fired yet?

  7. Aodhhan

    Wow... well, you know.

    The costs will be a lot higher to go through all their systems and ensure there isn't any malicious files and malware put on them. It's not uncommon for criminals to give you your network back, with some attached malware/backdoors hidden very well throughout the network. Especially on network devices and DNS, where admins don't typically keep a close eye on.

    Hey, but you may have your data back and you managed to encourage and provide motivation for more criminal activities like this. I'm sure those taxpayers are happy with your decision.

  8. Stevie

    Bah!

    Fortunately the criminals didn't demand the ransom in Canadian Tyre dollars.

    Dodged a bullet there.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like