CCIRC continues to receive reports of ransomware affecting organizations across Canadian critical infrastructure sectors. As the sophistication of the encryption increases, the extortion attempts become more successful, and thus more popular with malicious actors. Thus far in 2016, CCIRC has observed activity related to new variants of malware affecting Canadian critical infrastructure organizations. CCIRC would like to take this opportunity to reinforce the importance of following best practice guidelines. CCIRC will also share results from analysis completed on their ransomware data, what it means and how it can potentially be leveraged to proactively help protect Canadians and Canadian critical infrastructure in the future.