Live data from Hacker News

Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

reuters.com

171–180 of 200 posts

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#171

Earlier quoted context omitted.

If nobody paid the ransom, ransomware attacks would be reduced to nearly zero. Paying the ransom means that other people will get ransomware attacks. So, effectively speaking, wishing someone paid the ransom means that you're also wishing that other will get hit with attacks because that's a direct consequence of paying.

I follow your logic, I just think your conclusion is vastly oversimplified. Not paying the ransom also means that other people will get ransomware attacks. There is not direct causality here. There is some game theory, sure (a prisoner's dilemma, really). If nobody ever paid ransoms, there would be very little incentive for ransomware (though still not zero, some people just want to create chaos). But I don't think i…

Yes, I completely understand the purely practical side of the issue. And perhaps paying the ransom does achieve a local maxima in terms of least harm, but it also prevents achieving an even greater maxima of least harm.

To be clear, I'm not saying that anyone is obligated to "take one for the team", or that anyone is bad for not being willing to. I'm just saying that if everyone was willing to, far less harm would be done in the longer term.

To me, a ransomware attack is little different than if someone just physically blew up the computers (or, with medical records, the hospital). It's a huge, costly disaster, but the damage is done. If we as a society thought of it like that and perhaps provided support (financial and otherwise) for people who get harmed like we do with any other large disaster, we could be in a better place for everyone except the criminals. Maybe we'd even put systems into place for the greater redundancy of medical records, to mitigate against actual health consequences of such attacks.

We'd also have greater interest in providing support for implementation, education & investigation in terms of hardening against such attacks.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#172

Earlier quoted context omitted.

The Treasury's Office of Foreign Assets Control is the executive branch department tasked with enforcing sanctions.

On domestic organizations, local governments, etc.?

Yes, everyone within the legal arms-length of the US is required to comply with sanctions prohibitions -- if sanctions are applied. The OFAC has a lot of power.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#173
They have vast solutions to all online issues contact them through their mail remotespywise @gmil com ‬Their services includes hacking phone,database,record expungements,spy,and private investigator .Their hacking service is completely anonymous and very easy to use. The most interesting thing about this is, it is very fast and comes with lots of features

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#174
post #50

Earlier quoted context omitted.

You just ban Monero then. If something is a problem, and you want to ensure financial visibility then ban all transaction types that hide visiblity, like banning mixers. This is separate from whether it's a good idea or not.

There is no need to ban, because Monero is already so niche cryptocurrency that it is unusable for paying ransoms. You cannot ask ransoms in a currency the victim cannot access.

It's just as easy to buy Monero on a major exchange as it is to buy Bitcoin. Just as easy to send a ransom.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#176

"She added that the effort will use artificial intelligence to analyze blockchain with a view to identifying illicit funds." Watch out, people still using last year's favourite buzzword, we'll sic this year's favourite on you.

I know those are traditionally buzz words but are they here? Trying to analyze traditionally anonymous payment methods that are virtual the only way randsomware is paid off seems like not a crazy idea.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#177

"She added that the effort will use artificial intelligence to analyze blockchain with a view to identifying illicit funds." Watch out, people still using last year's favourite buzzword, we'll sic this year's favourite on you.

I know those are traditionally buzz words but are they here? Trying to analyze traditionally anonymous payment methods that are virtual the only way randsomware is paid off seems like not a crazy idea.

It's not crazy, but tracing blockchain transactions has been done since blockchains were invented. I'm not sure if new AI techniques are helpful or not.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#179
post #158
post #130

Earlier quoted context omitted.

If they could check the backups for evidence of an intrusion, they would be able to check production for evidence of an intrusion.

I meant check for evidence of corruption not an intrusion itself. How do you hide the fact that the data is unreadable?

Ransomware is often not triggered quickly. They will compromise a box, install a back door, and hang onto it for months. You also have to consider that once they pop it, they can check other vulns that are available and will still be present after the restore.

When I do remediation I usually recommend restoring only business state but installing and configuring all OSes and applications from scratch with latest freshly downloaded versions. You can't trust any executable or dll that has been laying around.

That is not the restore dream that the backup provider sold them but reinfection is common. Once the bad guy has a privileged credential it is trivial for them to investigate for other vulns to use in the reinfection phase and nobody has just one critical vuln. If a business is susceptible to ntlm relay it's also going to have unsigned smb and non encrypted ldap traffic for the same root cause -- it was the default in 2005 and never got modernized.

Re: Alliance of 40 countries to vow not to pay ransom to cybercriminals, US says

#180
post #98

Earlier quoted context omitted.

Inflating what, sorry? Unless you have someone who's been kidnapped you're hardly in the market.

Well who do you think is kidnapping people? Clearly she has hired kidnappers to be able to drum up business for her negotiating services.

Id watch this movie
Post reply on HN