Ferhat Dikbiyik, chief research and intelligence officer at the cybersecurity firm Black Kite, joins the podcast to discuss cybersecurity and the evolving structure and threat of ransomware gangs.
Music Credits:
Ready for Repeat by Rolla Coasta - stock.adobe.com
Relaxing Lounge by Classy Call me Man - stock.adobe.com
COCKTAIL by Mythical Audio - stock.adobe.com
Editor's note: Episode timestamps and transcript produced using AI tools.
Introduction to the episode (00:00:15)
Host Keith Reynolds introduces the podcast and the discussion on cybersecurity and ransomware gangs.
Surge in ransomware attacks (00:00:49)
Ferhat discusses the 32% increase in ransomware attacks in healthcare from 2023 to 2024.
Dynamics of ransomware ecosystem (00:01:11)
Ferhat explains shifts in the ransomware ecosystem, emphasizing the rise of affiliate-driven models.
Affiliates in ransomware (00:03:39)
Discussion on how affiliates operate within the ransomware ecosystem and their motivations.
Targeting smaller medical practices (00:06:01)
Ferhat highlights the increased risk smaller medical practices face from ransomware attacks.
Banning ransom payments (00:08:33)
Discussion on the implications of banning ransom payments for victims under pressure.
Changing negotiation tactics (00:10:01)
Ferhat notes the shift towards urgent ransom demands with little room for negotiation.
Challenges for law enforcement (00:11:53)
Ferhat explains the difficulties law enforcement faces in combating organized ransomware groups.
Geographic distribution of ransomware groups (00:12:49)
Ferhat discusses the locations of ransomware groups, primarily in Eastern Europe and Russia.
Finding targets for attacks (00:14:35)
Ferhat describes how cybercriminals identify and select small medical practices to target.
Health care as a prime target (00:15:29)
Ferhat predicts that healthcare will continue to be a significant target for cybercriminals.
Protecting small medical practices (00:16:29)
Advice on proactive measures small practices can take to safeguard against ransomware.
Phishing and vulnerabilities (00:17:56)
Ferhat discusses the prevalence of phishing as an attack method for ransomware groups.
Training employees on phishing (00:18:30)
Emphasis on the importance of training staff to recognize phishing attempts.
Final thoughts on ransomware risks (00:18:37)
Ferhat stresses the need for vigilance and proactive measures against increasing ransomware risks.