Live data from Hacker News

Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

ciphercue.com

41–50 of 101 posts

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#41

Earlier quoted context omitted.

> damning indictment of the mindset of the vast ineffectual mess that is the cybersecurity industry Cybersecurity is not about stopping issues but about compliance and liability. Attend RSA once, and you will see it yourself.

It makes sense when you consider the main threat you are protecting yourself from is lawsuits.

The lawsuits come from the issues though.

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#43
post #3

The idea that the spending needs to grow linearly with the growth is a damning indictment of the mindset of the vast ineffectual mess that is the cybersecurity industry.

It’s not a popularly held mindset, either within the security industry or outside of it. This piece seems to be pitched at salespeople whose only job is to extract money from other companies. Basic hygiene security hygiene pretty much removes ransomware as a threat.

OK I agree basic security hygiene removes ransomware as a threat.

Now take limited time/budget and off you go making sure basic security hygiene is applied in a company with 500 employees or 100 employees.

If you can do that let’s see how it goes with 1000 employees.

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#44
post #28

Stopping Ransomware is trivial if governments knew where the money goes. But cryptocurrencies and lax capital control pushed by the uber-rich makes it impossible. The technology is there and it is used to track the average citizens every move. But when it comes to rich people then the money goes and comes without control (and without taxation). Cryptocurrencies are a great solution to enable criminal activity. Their…

Crypto is such a net negative for society.

What cracks me up is how much crypto is emblematic of Libertarianism. Sounds promising if you think about it a superficially, but is obviously bad if you actually think about it in any real world terms.

And not just abstractly - they both fall apart for the exact same reasons. Libertarianism is essentially "But, what if we scaled up the failures of crypto to all of society?"

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#45
post #17

It seems obvious to me that the only real solution is to penalize the payment of ransoms. For the same reasons one doesn't negotiate with terrorists. Is there some reason to believe that this isn't the best approach? And if not, then any theories as to why it hasn't been enacted?

It's one of those ideas that sounds nice in theory, but doesn't survive contact with the real world. In the same way that many people would say that you shouldn't negotiate with terrorists or kidnappers; but if it's their loved one who's being held and tortured they'll very quickly change their mind. Getting to a world where no one pays ransoms and the ransomware groups give up and go away would be the ideal, and we'…

That's fine, those are acceptable casualties. Make paying any sort of ransom a criminal offense.

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#46
post #40
post #3

The idea that the spending needs to grow linearly with the growth is a damning indictment of the mindset of the vast ineffectual mess that is the cybersecurity industry.

This is a similar fact in government. For instance in the UK with the NHS and other services, we often look at total spending and assume that spending has to stay at least constant in real terms or grow, when in reality you want some metric of spending per outcome.

Ideally you want spending to go down as we get more efficient, and up as we find new treatments that work (we often add cost effective treatment as well, but that should make everyone uncomfortable no matter what side you argue)

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#47

It seems obvious to me that the only real solution is to penalize the payment of ransoms. For the same reasons one doesn't negotiate with terrorists. Is there some reason to believe that this isn't the best approach? And if not, then any theories as to why it hasn't been enacted?

I work in the state government space. Many targets/victims of ransomware are small/local government agencies and the ransom demands are greater than their annual budgets. Not every agency is big enough to have someone (bored) come in on Sunday, notice stuff getting encrypted and then run in to the server room and hit the big red button like Virginia's legislature in 2021[0]. Many ransoms are far more than the victim…

Most local governments lack the scale and budget to competently maintain their own IT infrastructure. It's not just security but everything. They should outsource the infrastructure layer to a large contractor, or possibly to the state government.

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#48
post #41

Earlier quoted context omitted.

It makes sense when you consider the main threat you are protecting yourself from is lawsuits.

The lawsuits come from the issues though.

"We did everything we could, like any decent person would"

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#49
post #18

Earlier quoted context omitted.

Sleeper agent malware is a thing especially in high risk situations. If somebody has a dormant RAT installed since year X-1 it’s going to be impossible to solve that in year X by using backups

What about non executable backups? Backup data but not programs? Not applicable everywhere, but I think it's applicable most places.

Executables read data.

Re: Ransomware Is Growing Three Times Faster Than the Spending Meant to Stop It

#50

Earlier quoted context omitted.

I don't think you can enforce such a rule. I think it's a good approach too. Another issue is that not paying up and risking restore from underfunded ops dept. might be more expensive than paying up AND making a selected executive look bad. And we can't have that, can we.

It would make the ransomware statistic go down without actually stopping crime. Any company that considers paying the ransom would have a strong incentive to never report the security incident to avoid being punished for ransom payments

Make employees criminally liable for making ransom payments, along with whistleblower protections. Very few employees will risk going to prison to protect their employer. You can always get another job.
Post reply on HN