- Home
- All questions
- Question 459
CISSP study material · question 459 of 500
An organisation keeps nightly backups on a network share reachable from the servers it protects. Which risk does CISA's ransomware guidance identify?
Show the answer
Answer: C. Many ransomware variants seek out reachable backups and delete or encrypt them, leaving payment as the apparent only route back.
CISA asks for offline, encrypted backups precisely because many ransomware variants attempt to find and then delete or encrypt accessible backups so restoration is impossible unless the ransom is paid.
Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide > Preparing for Ransomware and Data Extortion Incidents