DataBreaches.net

DataBreaches.net

The Office of Inadequate Security

Menu
  • Breach Laws
  • About
  • Donate
  • Contact
  • Privacy
  • Transparency Reports
Menu

Haggling With Hackers: Surprising Lessons From 50 Negotiations With Ransomware Gangs

Posted on August 19, 2023 by Dissent

Christopher Janaro writes:

The prevailing wisdom from cybersecurity experts is that trying to negotiate with ransomware hackers is a bad idea, but on December 30, 2020, one victim broke the rules and gave it a shot.

“Help?” they typed into one of the compromised computers.

“Hello,” one of the hackers replied. “Are you ready to negotiate? Your network and all of your data were encrypted by [the] CONTI team. Besides the encryption process, we’ve downloaded a large pack of your internal documents and files that will be published in case our negotiations fail. The recovery price is $8,500,000.”

The haggling commences.

Read more at PCMagazine.

This piece may encourage some victims to do what law enforcement recommends against doing — paying attackers.  If the victim feels they have no option but to pay, however, being aware of what  Valéry Marchive found and shared about ransom negotiations can be helpful. If a company has pre-considered whether they would ever pay ransom in the event of a ransomware attack and have not ruled out paying ransom, then maybe as part of being proactive, read up more on negotiating with threat actors.

Related:

Marchive: RansomChats

Zscaler: ThreatLabz/RansomwareNotes

Tracing Ransomware Threat Actors Through Stylometric Analysis and Chat Log Examination

Related Posts:

  • Broward County Public Schools Cyberattack was…
  • How to Negotiate with Ransomware Hackers
  • Ransomware negotiations are taking longer (and…
  • Cybercrime loves company: Conti cooperated with…
  • Romanian hospital victim of ransomware attack

Post navigation

← Health Data and Investigations: Between a Rock and a Hard Place
Real estate markets scramble following cyberattack on listings provider →

Sponsored or Paid Posts

This site doesn’t accept sponsored posts and doesn’t respond to requests about them.

Have a News Tip?

Email:

Breaches[at]Protonmail.ch
Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Telegram: @DissentDoe

Browse by News Section

Latest Posts

  • Why we need legislation requiring more transparency in breach notices, Saturday edition (Bluefield University)
  • The EU’s Cyber Resilience Act Has Now Been Agreed
  • 60 credit unions facing outages due to ransomware attack on popular tech provider
  • Paris Criminal Court Dismissed Charges Against Platypus Hackers
  • NYS Comptroller Audit: North Tonawanda City School District – Information Technology (2023M-102)
  • NYS Comptroller Audit: Brentwood Union Free School District – Information Technology (2023M-83)
  • If you’re in Rock County, Wisconsin, do NOT read this post. Absolutely do not read this post.
  • PA: Great Valley School District Falls Victim to Ransomware Attack

Please Donate

If you can, please donate XMR to our Monero wallet because the entities whose breaches we expose are definitely not supporting our work and are generally trying to chill our speech!

Donate- Scan QR Code   Donate!

Social Media

Find me on Infosec.Exchange.

I am also on Telegram @DissentDoe.

RSS

Grab the RSS Feed

Copyright

© 2009 – 2023, DataBreaches.net and DataBreaches LLC. All rights reserved.

HIGH PRAISE, INDEED!

“You translate “Nerd” into understandable “English” — Victor Gevers of GDI Foundation, talking about DataBreaches.net

©2023 DataBreaches.net