After the "WannaCry" ransomware attack caused disruption in about 150 nations around the world, organizations need to be more cautious than ever of security vulnerabilities that can make them susceptible to cyber-attacks. The WannaCry ransomware variant took advantage of a Microsoft Windows exploit that was developed by the U.S. National Security Agency (NSA) and leaked online by hackers. According to news reports, cyber-criminals are poised to leverage another Windows exploit—known as "EsteemAudit"—which was also stolen from the NSA.  Like WannaCry, the exploit targets obsolete versions of Windows that are no longer supported by Microsoft. Given the current cyber-security threat environment, it is extremely important for organizations to do more than simply respond to issues as they come up. Rather, best practices may dictate that organizations proactively take a holistic look at information security including risk assessment, management, and mitigation. 

For more information about the WannaCry attack and tips for protecting against and responding to ransomware incidents, please read Ice Miller's alert: "Worldwide Ransomware Attack Cripples Hospitals, Schools, and Businesses."

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.