A small construction company that refused to pay for security help was hit by ransomware and went out of business months later, according to cybersecurity consultant Dave Hatter of Intrust IT. The owner had vetoed a proposal from Hatter's firm, saying his one-person IT setup was all he could afford and that his business was too small to interest hackers. Three weeks later, the same company was hit with ransomware that encrypted an old unpatched Windows server holding all its important data. The only backup was an external drive connected to the same server, so it was encrypted too. The company could not pay employees or determine who owed money, and it closed within months. Hatter noted the importance of off-site or cloud backups and patching, and that ransomware gangs target small businesses as readily as large ones. The article also recounts a second incident where attackers used a man-in-the-middle attack to steal a Microsoft 365 login and 2FA code, but the victim's security software detected the anomalous login and revoked the session. That story shows the value of defense-in-depth, but the two cases are separate and not directly compared in```json {
Ransomware victim refused security help, went bust months later
A small construction firm that rejected security consulting was crippled by ransomware after an unpatched server and a single backup were encrypted.
More in Compute & Hardware
Gartner: Most quantum startups will be dead by 2030
Analyst predicts a shakeout as the crowded quantum-computing market struggles to turn a profit, despite early enterprise adoption.
Nvidia DCGM Exporter flaw exposes GPU clusters to remote crashes
A high-severity Nvidia bug in DCGM Exporter could let unauthenticated attackers crash GPU monitoring on internet-exposed servers, disrupting AI workloads.
Software Optimizations Could Ease AI Data Center Power Crunch
Researchers argue that software-level efficiency gains, not just new hardware, can meaningfully cut AI energy use.
UK, Germany Sign Cyber Pact to Counter Russian Attacks
The bilateral agreement promises information-sharing and coordinated disruption, though operational details remain thin.