Corvus Updates Scan with RDP Detection, Cuts Ransomware Claims by 65%
With version 2.0 of the Corvus Scan, Corvus works with Brokers and Policyholders to reduce Ransomware Claims.
Announcing the Corvus Scan 2.0
BOSTON, MA September 22, 2020 / Corvus Insurance, a leading provider of Smart Commercial Insurance products powered by AI-driven risk data, today announced the results of the first 20 weeks of its Corvus Scan version 2.0, including a dramatic reduction in ransomware claims both among new policies and its existing policy base. The new version includes detection of and alerting on Remote Desktop Protocol (RDP) vulnerabilities, the most common entry point for ransomware attacks, as well as other new features.
Ransomware claims account for 24% of all Cyber Insurance claims and have been growing in frequency and severity. The average ransom demand was $178,254 in the second quarter of 2020, up 60% from the previous quarter according to Coveware, a leading ransomware incident response firm. And more than half of all ransomware-related incidents started with a vulnerable RDP port.
Reducing Ransomware Claims
Since the launch of the Corvus Scan 2.0 in April 2020, Corvus has written or renewed several thousand Cyber Insurance policies. The company’s overall rate of ransomware claims has dropped 65%, from 26% of all claims to a rate among the new policies of 9%. In fact, new policies have had zero RDP-caused ransomware claims during that time. Several Corvus policyholders did experience ransomware caused by other vectors of attack.
The Corvus Scan analyzes numerous IT security assets in order to provide actionable, prioritized IT security recommendations. In addition, Corvus alerts policyholders to new risk exposures that arise out of changes in the external environment or the policyholder’s internal defenses. The Corvus Breach Response team provides consultation with brokers and their policyholders to achieve the desired outcome of fewer claims.
“The results are staggering,” says Bill Siegel, CEO of Coveware, a leading ransomware incident response firm. “This initiative not only helps Corvus policyholders avoid attacks, but decreases the available supply of stolen RDP credentials on the dark market. A decrease in supply directly translates to an increase in cost to the cybercriminals. It’s a perfect example of how insurance can serve its primary purpose of financial risk transfer, while also nudging the entire cyber ecosystem towards a safer place."
“We’re excited to report on the success of this new initiative and are looking forward to continuing on its early momentum to further help the industry with the massive concern ransomware presents,” said Mike Karbassi, Head of Cyber Underwriting at Corvus Insurance. “We’re pleased with the early results and know that this type of vulnerability has historically been a pain point for our clients.”
This initiative comes on the heels of a year of accelerated growth at Corvus.
On January 5th, we hosted a webinar with Lynn Sessions and Paul Karlsgodt of BakerHostetler to discuss pixel tracking technology, the culprit behind the latest ad tech litigation and regulatory trend. Below is an exploration of prior and current website tracking litigation, and how it may impact non-regulated industries.
At its best, insurance helps businesses manage and mitigate the risks they worry about most, and helps make everyone safer along the way. The data insurers have on effective interventions — and the lever of pricing to guide policyholders’ actions — are a powerful combination. Over time, the insurance industry has helped make buildings, work sites, and transportation safer – the key uncertainties people cared about.