In order to secure your from the attack, you should keep all writable data on a volume that is mounted with `noexec`. Of course you should also make sure you have your setup up-to-date and check the current security best-practices for nextcloud.

Finally you should also make sure you have very regular backups of your data, don't consider synchronized data as backup.

Sheogorath's Microblog

