Keep Ransomware Out of Your School

Updated
|
Keep Ransomware Out of Your School
Small organizations like private schools are just as vulnerable to ransomware attacks as large organizations are. Here's how to deal with ransomware in your school.

IT Director answering her phone: "Hello, Yvonne here. How can I help you?"

Finance Assistant: "Yvonne! My computer's got something wrong with it. Everything's frozen and I can't access QuickBooks. And there's a message on my screen saying it's been hacked. What do I do?"

This scenario is a lot more common than you think. Ransomware attacks strike large organizations and small ones. While you wouldn't think private schools would be vulnerable to such attacks, they are just as exposed as a Fortune 500 company. Although I have earned IT certifications over the years, you and I are going to listen to what the experts in the IT security field have to say about ransomware, and, most importantly, how to protect your school from these unwelcome attacks.

What is ransomware?

The United States Government's Stop Ransomware website defines ransomware as follows: "Ransomware is a form of malware designed to encrypt files on a device, rendering any files and the systems that rely on them unusable. Malicious actors then demand ransom in exchange for decryption."

This video explains ransomware.

"It couldn't happen in my school."

Why should your private school be concerned about ransomware? After all, your school is such a small organization. Why would anybody attack our school? Another security expert tells you why.

cWatch explains why hackers do what they do: "Some common reasons for hacking include basic bragging rights, curiosity, revenge, boredom, challenge, theft for financial gain, sabotage, vandalism, corporate espionage, blackmail, and extortion. Hackers are known to regularly cite these reasons to explain their behavior."

Now, when hackers attack your school computers, you could find yourself unable to access the data you use to run your school. Financial and student records, as well as a host of other critical data, will be unavailable until you pay the ransom that the hackers demand. Unfortunately, typical ransom demands can be very expensive and time-sensitive. You will have as little time as 48 hours to pay or lose your valuable data.

Caitlin Jones writing in Expert Insights states: "Headlines tend to feature high-profile attacks on large enterprises that end up costing the organizations billions to resolve. But we often don’t hear about the 46% of small businesses that are targeted by ransomware (2020 Data Breach Investigations Report, Verizon). SMBs are just as at risk as large corporations with a lot to lose, simply for the fact that they often don’t have the budget or infrastructure to invest in sophisticated security platforms and the latest technology updates. This makes them an easy target for cybercriminals looking for vulnerabilities to exploit, such as unpatched software. The notorious 2017 WannaCry ransomware attack spread in exactly this way: it targeted organizations that didn’t roll out the latest Windows patch."

Signs that you have been attacked

RSI Security offers five signs that your computer has been hacked.

  1. An inexplicable slowdown in workstation or network activities
  2. Any suspicious changes to files, file names, or locations
  3. Unauthorized or previously undetected extraction of data
  4. Unrecognized or otherwise out of place file encryption
  5. Explicit splash screen messaging indicating an attack

If you suspect that your computer has been compromised, notify your IT staff immediately. Don't pretend that there's nothing wrong. Have your IT people evaluate the situation promptly. I won't get technical here, except to say that IT professionals know how to deal with ransomware.

How to fix a ransomware attack

Malwarebytes states: "They say an ounce of prevention is worth a pound of cure. This is certainly true when it comes to ransomware. If an attacker encrypts your device and demands a ransom, there’s no guarantee they will unencrypt it whether or not you pay up."

Malwarebytes continues: "That is why it’s critical to be prepared before you get hit with ransomware. Two key steps to take are:

Install security software before you get hit with ransomware

Back up your important data, files, documents, photos, videos, etc."

To implement these commonsense steps, review the security of your technology systems once a month. Support your IT staff when they schedule training sessions for your teaching and administrative staff. Some members of your team may not understand the urgency of a ransomware threat. It's critical that everybody knows what's involved and the protocols for dealing with a ransomware attack.

How to prevent a ransomware attack

When a staff member tells you that she thinks there's something wrong with her computer, take her warning seriously. Don't put her off. Instead, train all staff, even the IT-savvy ones who think they know it all. Everybody should follow the established protocols for dealing with IT security:

  1. Block the use of personal email on school computers. Instead, your team can use their smartphones to look at their emails. I recommend that small schools use cloud-based email services such as Google.
  2. Configuring and maintaining an email server in-house is a time-consuming endeavor. Have professionals configure your local area network.
  3. Teach your team about phishing and how a link in an email from an unknown sender could be a hacking attempt in disguise.
  4. Disable USB ports wherever possible. People think that inserting their thumb drive in a USB port is harmless. Maybe it is. Maybe it isn't.
  5. Finally, backup your important files. Daily. A robust, scalable backup solution is expensive but cheaper than losing all your important data to a ransomware attack.

This video from Kaspersky explains how ransomware works.

Take security threats seriously.

At one point in my career, I had a wonderful general manager whose mantra was "Constant vigilance!" He taught all of his managers to always be on the alert. Do the same with your senior team members. You will be very grateful for those extra sets of eyes and ears when they are able to head off disaster.

Questions? Contact us on Facebook. @privateschoolreview

Frequently Asked Questions

What percentage of small businesses were targeted by ransomware according to the 2020 Data Breach Investigations Report?
According to the 2020 Data Breach Investigations Report by Verizon, 46% of small businesses were targeted by ransomware.
What are the five signs that RSI Security lists for a computer being hacked?
RSI Security lists these five signs of a ransomware attack: inexplicable slowdown in workstation or network activities, suspicious changes to files or locations, unauthorized extraction of data, unrecognized file encryption, and explicit splash screen messaging indicating an attack.
What are two critical steps Malwarebytes recommends to prepare a school from a ransomware attack?
Malwarebytes recommends installing security software before being hit and backing up important data, files, and documents as critical steps to prepare for ransomware attacks.
Why should personal email use be blocked on school computers to prevent ransomware attacks?
Blocking personal email on school computers prevents exposure to phishing emails which can contain hacking attempts disguised as links from unknown senders.
How much time do schools typically have to pay a ransom before losing data according to the ransomware scenario described?
Schools typically have as little as 48 hours to pay the ransom before losing valuable data in a ransomware attack.

Recent Articles

Navigating Private School Finances 2026
Navigating Private School Finances 2026
Essential 2026 guide for parents on private school costs, financial aid, and planning strategies.
Preparation for Standardized Tests & College Admissions 2026
Preparation for Standardized Tests & College Admissions 2026
A 2026 guide for private school test prep and college admissions strategies, with insights, trends, and best practices for families and educators.
Mental Health & Wellness Support in Private Schools: Key Questions for Parents
Mental Health & Wellness Support in Private Schools: Key Questions for Parents
Discover essential questions about mental health & wellness support in private schools before enrolling, with 2026 updates for informed decisions.

Excellence in School Security

CYBERSECURITY AND DIGITAL SAFETY
This subcategory addresses the growing concerns related to online safety, data protection, and digital threats in educational settings.
More Articles
Read more articles (4)
Physical Security Measures (6) Policies and Procedures (4) Crisis Management and Prevention (4)