AI/ML, Ransomware, Black Hat

Looking back: Thirty years of malware mayhem at Black Hat

Mikko Hypponen has seen it all — from floppy disk viruses like Stoned to global outbreaks like Stuxnet, WannaCry, and LockBit. As Chief Research Officer at WithSecure and one of cybersecurity’s most seasoned threat historians, he brings unmatched perspective to the evolving tactics of cybercriminals.

His Black Hat USA 2025 keynote will explore this history, but with a forward-looking lens — and a clear warning: We may still be at the beginning of the cyber threat story.

Ransomware’s evolution, in particular, reflects how deeply cyberattacks have industrialized. Today’s threat groups behave like corporations, complete with PR arms, HR departments, and affiliate programs. For a closer look at this ecosystem, Hypponen’s keynote pairs well with our recent SC webcast deep dive: Inside Ransomware Inc.

AI: The next security frontier

As threat actors industrialize, they’re also automating — increasingly using AI to scale reconnaissance, social engineering, and even malware generation. Hypponen is expected to spotlight how defenders must match this pace by integrating AI into everything from detection to incident response.

But AI is a double-edged sword. Recent research shows even the AI supply chain is vulnerable. A recent SC piece on LLM plugin vulnerabilities reveals how seemingly benign integrations can open serious threat vectors — a sign that securing the entire AI ecosystem is now a core cybersecurity imperative.

What comes next: Policy, quantum, and preparedness

Hypponen has always emphasized the role of policy in shaping cyber outcomes. Expect commentary on national strategies — including ambitious government initiatives like the U.S. bill investing heavily in AI, quantum computing, and cyber defense. (See: “Trump’s Beautiful Bill”)

As ransomware groups like Chaos and BlackSuit regroup and resurface, Hypponen’s keynote is a reminder that preparedness is not optional. It’s time to combine historical insight with technological foresight — and get ahead of what’s next.

An In-Depth Guide to AI

Get essential knowledge and practical strategies to use AI to better your security program.
Bill Brenner

InfoSec content strategist, researcher, director, tech writer, blogger and community builder. Senior Vice President of Audience Content Strategy at CyberRisk Alliance.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds