Ransomware targeted 29 federal agencies 321 times between June and early December of 2015. DHS said it had not received any reports from agencies that they had paid a ransom. DHS: “In all cases, the system was removed from the network and replaced with a new, clean system with minimal impact to the user and agency” Former officials contend Einstein’s performance is secondary to responding to the attacks, but it’s not clear if the system is ready to protect other federal IT systems in response to a breach.”]
Source: https://www.govinfosecurity.com/blogs/are-federal-agencies-prepared-to-stop-ransomware-p-2097