Study. uk . com
  1. Home
  2. All questions
  3. Question 459

CISSP study material · question 459 of 500

An organisation keeps nightly backups on a network share reachable from the servers it protects. Which risk does CISA's ransomware guidance identify?

  1. Network shares introduce latency that breaks the backup window.
  2. Network shares cannot hold enough versions to meet a recovery point objective.
  3. Many ransomware variants seek out reachable backups and delete or encrypt them, leaving payment as the apparent only route back.
  4. Backups on network shares cannot be encrypted at rest.
Show the answer

Answer: C. Many ransomware variants seek out reachable backups and delete or encrypt them, leaving payment as the apparent only route back.

CISA asks for offline, encrypted backups precisely because many ransomware variants attempt to find and then delete or encrypt accessible backups so restoration is impossible unless the ransom is paid.

Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide > Preparing for Ransomware and Data Extortion Incidents

Challenge yourself on this topic → Study as cards