Abstract: This study investigates the evolving landscape of ransomware attacks and critically evaluates the effectiveness of current countermeasures. Drawing on a thematic analysis of secondary data from global case studies, cybersecurity reports, and academic literature, the research highlights the commodification of ransomware through Ransomware-as-a-Service (RaaS). It identifies key attack vectors, including phishing, Remote Desktop Protocol (RDP) exploitation, and unpatched vulnerabilities, while examining the increasing sophistication of extortion tactics such as double and triple extortion. Organisational responses are assessed, distinguishing proactive defenders with layered security infrastructures from reactive institutions hampered by limited preparedness, particularly in under-resourced regions. Findings indicate that resilience depends on comprehensive strategies that integrate technological safeguards, user education, and policy-level interventions. This study concludes that ransomware is no longer merely a technical threat but a systemic challenge requiring coordinated action across sectors and jurisdictions. Practical recommendations are offered to support scalable, context-aware defences and foster cybersecurity maturity.
Buabeng et al. (Thu,) studied this question.