Kurtis Minder, CEO of threat intelligence firm GroupSense, has received a lot of press as a top negotiator in ransomware cases. But he'd rather you not hire him to negotiate. Instead, he says, he'd much rather you stop the ransomware attack before you'd ever need to call him in.
Sol Oriens' work around nuclear weapons raises concerns about the implications of a ransomware attack, though most experts still believe the motivations are financial.
Today’s columnist, Louis Evans of Arctic Wolf, says ransomware gets the headlines, but the Verizon DBIR study points out that security teams still need to lookout for business email compromises. A major BEC by the Russian group RedCurl last summer hit 14 companies in six countries, including construction companies, financial firms, retailers, insurance businesses, law firms, and travel.
The virus escaped with 6 million files that it grabbed from desktop and downloads folders. Screenshots made by the malware revealed that it spread via illegal Adobe PhotoShop software, Windows cracking tools, and pirated games.
The hearing touched on the internal and external debates that face most executives during a crippling cyberattack: How fast should a company act, and what decisions should be made internally versus in consultation with external advisers or the federal government.