Skip to main content

What You Can Do About Ransomware Threat

By Ray Birch

RANCHO CUCAMONGA, Calif.—In the wake of a ransomware attack that shut down 60 credit unions, cyber security experts are warning many CUs are just one compromised key supplier away from being shut down, too. It’s a growing threat they say can have numerous  downstream effects on many organizations.

No institution is immune, and the best line of defense remains educating employees on how to avoid making mistakes that place a credit union, CUSO or vendor right into the hands of criminals.

“Co-op Solutions views ransomware attacks as an industry-wide threat that will continue for the foreseeable future with two main threat areas of concern,” said Christopher Williams, deputy chief information security officer at Co-op.

Feature Ransomware

The two areas of concern, according to Williams, are Ransomware-as-a-Service (RaaS) models and cyber supply chain threats.

A Proliferating Model

“With the RaaS model, an attacker doesn’t need to develop their own ransomware capability to turn a system compromise into a ransomware attack. This model has proliferated the cybercrime world. The model can quickly incorporate new tactics, techniques and procedures (TTPs) to be used by a wide range of threat actors,” he said. “The second threat area is the cyber supply chain. Attacks against key suppliers have a ripple effect across the supplier’s client-base. Many companies are one compromised key supplier away from a business crippling service impact.”

How to Respond

wlliams

Christopher Williams

Given that growing threat, what should credit unions be doing now?

“Credit unions should continue to educate their employees on the risk of ransomware attacks and the methods used to gain initial unauthorized access,” Williams advised. “Phishing remains a top attack vector, and social engineering of the service or help desk to compromise user credentials is on the rise.”

Credit unions also need to have robust backup capability—restoring to a clean and non-infected copy of system data, Williams added.

“That can help with the recovery of a ransomware attack,” he said. “In addition, they should become active members of the local area U.S. Secret Service Electronic Crimes Task Forces (ECTF) or Financial Crimes Task Forces (FCTF), which can provide advice in preventing attacks and support during suspected or actual attacks. In addition, monitor threat intelligence type sources for indications of attacks against their organizations or their vendors and new TTPs being used by attackers.

“Finally, practice the incident response to a ransomware attack. Drilling the panic and unknowns out of the process will help increase the chance of a successful recovery if an actual attack occurs,” he said.

The Good News? CUs Not Alone

Jim Stickley, CEO of Stickley on Security, said credit unions are one of many industries being affected by ransomware.

“I am not certain that ransomware is specific (to any organization), and credit unions and fintechs are just part of the much bigger picture of the state of ransomware in general,” said Stickley, who is also CEO of Troy, Mich.-based Mahalo Technologies. “Most people have this idea that cybercriminals are targeting a specific business type. While it’s true that healthcare and education are targeted directly and we also see banks and credit unions get targeted, when it comes to more general business, such as fintechs, we have not seen that level of direct attacks. Instead, what you see is employees who fall victim to phishing attacks or malicious websites.”

‘Average’ People, Not an Average Website

Stickley said when those incidents are investigated, what’s all-to-often discovered is that it was a phishing email that had been sent to hundreds of thousands of organizations that is the culprit, often in in the guise of te malicious websites that have been promoted though malvertising to “average” people. 

stickleyJim

Jim Stickley

“In these cases it’s just the low-hanging fruit. If an employee clicks the link, opens the attachment or browses to malicious sites, they open the door to the criminals. The criminals really don’t care if that organization is fintech, credit union or other business segment,” said Stickley, adding adding he does not believe the recent attack that hit DP vendor Fedcomp and than affected 60 credit unions had any company or credit union as a specific target.

“For criminals, there is little need to put a direct focus on fintech at this time since just about every business entity has similar value and so they will continue to cast a very wide net and whoever gets caught up will be their next victim,” he said.

Advice Shared

For credit unions looking to take some practical steps to defend themselves from ransomware, TruStage is sharing some strategies.

“Responding to the immediate threat of a ransomware attack or any cyber incident in a timely manner is critical to minimize data loss, contain the threat and restore operations,” Chris Gill, TruStage senior manager, risk and compliance solutions, told CUToday.info. “This is true even when that threat originates with a credit union’s third-party service provider or partner. Security incidents that do not originate at a credit union can still have a large impact on credit unions’ operations and reputation.”

Noting the affects such attacks have on member service, Gill added, “It reminds us all of the importance of having strong controls in place to minimize exposure, and to have a comprehensive business resiliency plan that is regularly tested and updated.”

Comments

Popular posts from this blog

Hurricane Knocked The Power Out? New Orleans Firemen’s FCU Is Ready.

  Hurricane Knocked The Power Out? New Orleans Firemen’s FCU Is Ready. The next big storm in the Gulf isn’t an “if,” it’s a “when,” but the small Gulf-area credit union has a plan to help the community get back on its feet when the time comes. Aaron Passman This article is part of Callahan & Associates’ “ CDFI Grants In Action ,” a limited editorial series that showcases how credit unions leverage CDFI funding to advance their mission and deliver measurable impact for members. To learn how CDFI certification can change lives and unlock opportunities at your credit union, visit  CU Strategic Planning , A Callahan Company. When hurricanes rip through the Gulf, they leave behind disrupted lives and disconnected communities. In those moments, access matters as much as empathy. When disaster strikes,  The New Orleans Firemen’s Federal Credit Union   ($275.0M, Metarie, LA) is ready to roll with a mobile branch that brings back banking to the front line of recovery. The...

Sunday Reading - Lake Manly Returns

  Lake Manly Returns   An ancient lake has  reemerged in California's Death Valley National Park following record rainfall this year.  Between 128,000 and 186,000 years ago, meltwater from ice covering the Sierra Nevada fed rivers that emptied into Badwater Basin, North America’s lowest point at 282 feet below sea level. The steady flow sustained Lake Manly, nearly 100 miles long and roughly 600 feet deep. The lake disappeared as Death Valley evolved into the driest place in North America , with some areas receiving under two inches of rain annually. This year, however, the park received 2.41 inches between September and November, marking its wettest autumn on record and triggering the temporary return of a shorter, shallower Lake Manly.  Above-average rainfall periodically brings Lake Manly back, including in 2023 when Hurricane Hilary dumped 2.2 inches of rain on a single August day, allowing visi...

The US Senate makes major step towards recognizing firefighter cancers as line‑of‑duty deaths

   18 Dec 2025 The US Senate makes major step towards recognizing firefighter cancers as line‑of‑duty deaths en Fire Fighter´s Advocacy   Firefighter Cancer   Firefighter Unions   Firefighter's Health   Line of Duty Deaths The US senate  has passed the   Honoring Our Fallen Heroes Act , recognizing firefighter occupational cancers as line‑of‑duty deaths and extending federal benefits to families. This marks a shift in U.S. policy towards aligning with decades of advocacy by firefighter unions and survivors. According to a statement on IAFF.org,  the passing of the Act in the Senate is a "major step forward for the thousands of survivors who have been denied PSOB benefits after losing their loved one to cancer...  It now moves to the U.S. House of Representatives for consideration." According to IAFF.org, the Honor Act has strong bipartisan support in both chambers of Congress. A companion bill in the House ( H.R. 1269 ) currently has 152...

Sunday Reading - The gold standard, explained

  Gold Standard       The gold standard, explained A gold standard is a system where a country’s currency is pegged to, and can be converted into, a fixed amount of gold. It’s typically meant to create a sense of security in the country’s currency: When a government uses a gold standard , its currency can be exchanged for an equivalent amount of gold—although regulations around redemption vary by country.   After the Civil War, in 1873, America adopted the gold standard for the first time. At the time, if gold was priced at $100 an ounce, each dollar  rep...

Happy Holidays To All Who Serve

  Happy Holidays To All Who Serve 12/22/2025 10:28 am   By Grant Sheehan and Anthony Hernandez Every year, many Americans celebrate the joy of family and relief from work the holidays bring. Apart from the hustle and bustle, the holiday season is a special time to be with loved ones, engaging in family traditions and rituals, and making memories that will last a lifetime. However, not everyone gets to partake in the holiday gatherings.   There are over a hundred thousand military members serving in harm’s way or in 24-hour command center...

Buy Now, Pay Later Keeps Gaining Ground: New Study Shows Growth Surge

03/10/2025 06:31 pm Share         TROY, Mich.— A new study reveals the appeal of buy now, pay later is not waning, as the service saw significant growth last year. The J.D. Power 2025 U.S. Buy Now Pay Later Satisfaction Study shows BNPL enjoyed continued, significant growth in the number of consumers using the product year over year, with the highest usage among consumers from Generations Y and Z, and the highest growth period during the holidays. “The BNPL segment has undoubtedly grown in popularity, with more customers using these services than ever before,” said Sean Gelles, senior director of banking and payments at J.D. Power. “That’s been especially true around seasonal periods of higher spending, such as the holidays. Card-based BNPL products continue to lead the charge on satisfaction, as issuers are leveraging their existing brand awareness and equity to retain would-be defectors.” Following are some of the key findings of the 2025 study: Gene...

Sunday reading - What's the story behind Thanksgiving?

What's the story behind Thanksgiving? While European settlers in North America had long observed days of thanks, prayer, and reflection, the “ first Thanksgiving ” most often refers to a 1621 meal between the Pilgrims and the native Wampanoag people.   In 1863, Abraham Lincoln declared a national Thanksgiving Day on the final Thursday of November to be celebrated each year. A large meal shared with loved ones is the centerpiece of most Thanksgiving celebrations, where the average gathering size is seven and most people consume 3,150-4,500 calories .   What began as a neighborly meal to celebrate a successful harvest has transformed into an annual economic and cultural powerhouse: The day before Thanksgiving is one of the busiest days of the year for air travel as Americans prepare to eat upward of 40 million turkeys  and 80 million pounds of cranberries. ... Read what else we  learned about the holiday here . ...

The Market Review

The Market Review Payroll Tax Cuts Extended, U.S. Data Mixed, ECB Steps Up SupportThe past week has seen moderate progress on several fronts. First, the EU markets were bolstered by a massive lending program from the ECB to over 500 banks. The banks borrowed €489 billion in 3-year loans at a rate of 1.00%.

Here’s What Consumers are Saying About Gift Cards, According to New Fiserv Study

BROOKFIELD, Wis.–Eighty percent of consumers say they enjoy receiving a gift card as a gift, and 68% of consumers will spend the full value of that gift card in three months or less, according to the 19th Annual Prepaid Consumer Insights Study from Fiserv. The study further found employers are increasingly using gift cards to reward their employees, and retailers are finding new ways to leverage gift cards in their incentives and rewards programs. According to Fiserv, five of the most interesting findings in the survey of more than 1,000 U.S. consumers include: ‘Satisfaction’ Abounds with Gift Cards 80% of consumers say they feel satisfied when they receive a gift card, so satisfied that consumers aren’t waiting long to spend them. 71% of consumers say that it takes one or two purchases to redeem the full value of a gift card; and 68% say it takes less than three months to fully redeem. Physical Cards Still Reign, But Digital is Growing While digital gift card spending is on the ri...

Trump Administration Declares CFPB Funding Illegal, Bureau’s Cash To Run Out By Early 2026

WASHINGTON—Credit-unions face a potential regulatory vacuum as the Trump Administration formally has determined the CFPB’s current self-funding mechanism unlawful—a move that could put the agency on a path to closure in early 2026 unless Congress steps in. For credit-union leaders, who rely on the Bureau’s oversight of consumer-finance markets and enforcement of unfair practices, the decision signals a major disruption to the regulatory environment CUs navigate daily. In a court filing released late Monday, the Administration declared that the CFPB is now legally barred from seeking additional funds from the Federal Reserve System—the agency’s usual funding source under the Dodd‑Frank Wall Street Reform and Consumer Protection Act, POLITICO reported. That means the Bureau’s remaining resources will likely carry it only through the end of the year, after which it “anticipates exhausting its currently available funds in early 2026.” CUToday.info has tracked this story, noting in  Oct...