Conceal or Communicate? Organizational Notifications to Stakeholders Following Ransomware Attacks

dc.contributor.authorCram, W. Alec
dc.contributor.authorChan, Albert
dc.contributor.authorYuan, Jonathan
dc.contributor.authorJoo, Dennis
dc.date.accessioned2023-12-26T18:43:23Z
dc.date.available2023-12-26T18:43:23Z
dc.date.issued2024-01-03
dc.identifier.doi10.24251/HICSS.2023.507
dc.identifier.isbn978-0-9981331-7-1
dc.identifier.other90f9a197-650c-45c0-bce0-0ee87e4b046a
dc.identifier.urihttps://hdl.handle.net/10125/106891
dc.language.isoeng
dc.relation.ispartofProceedings of the 57th Hawaii International Conference on System Sciences
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International
dc.rights.urihttps://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectCybercrime
dc.subjectcrisis response
dc.subjectcybersecurity
dc.subjectincident notification
dc.subjectransomware
dc.subjectstakeholder theory
dc.titleConceal or Communicate? Organizational Notifications to Stakeholders Following Ransomware Attacks
dc.typeConference Paper
dc.type.dcmiText
dcterms.abstractRansomware attacks have become an unrelenting frustration for organizations of all sizes, industries, and locations. Although past research has examined how ransomware attacks can be more effectively prevented, little attention has been paid to understanding how organizations communicate with stakeholders. In contrast to some cyber incidents that remain hidden for months, ransomware attacks render systems inoperable immediately, which often requires a unique stakeholder response strategy. Drawing on principles from stakeholder theory and crisis response strategies, we examine the organizational communications following 101 ransomware attacks. Our results indicate that stakeholder notifications tend to be either customer-focused or investor-focused, but are rarely both. We also find that most notifications contain at least a basic level of detail, but that about one in ten communications are insufficiently informative. This work extends the field’s understanding of cybersecurity incident notifications within the unique context of ransomware attacks and reveals practical insights for cybersecurity managers.
dcterms.extent10 pages
prism.startingpage4206

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
0415.pdf
Size:
403.11 KB
Format:
Adobe Portable Document Format

Collections