I'm sorry, but if a firm doesn't compartimentalise access and a single infected workstation can bring down everything, then they deserve what they get.
Hadn't been ransomware it could have very well been a disgruntled employee, to the same effect.
While you're technically right - we are responsible for our security, and we should lock down our networks just like we lock our front doors - this is basically blaming the victim.
It's not truth, it hits residential users all the same. As much as we nerds might wish it, you don't deserve to be extorted because you don't understand computers.
What sort of IT infrastructure do they usually have?
-
My gut reaction was that they wouldn't have a need for a server in the first place, but I guess that depends on how small it is.
A simple file-share though, would be rather vulnerable to this.
Have you fully secured your home and office against arson attacks? No? Don't even know how to do so? Didn't think so. Does that mean you deserve what you get if you end up bankrupt in the event of such an attack?
Hadn't been ransomware it could have very well been a disgruntled employee, to the same effect.