In this episode of SpyTalk, former US National Counterintelligence and Security Center Director, William Evanina, discusses the recent surge in ransomware attacks and suggests drastic measures for the US government to take, including threatening to pull out of the summit with Putin and showing the ability to shut down Russian infrastructure. The chapter also explores the evolving tactics of ransomware attacks, the need for international unity in addressing cyber threats, and the importance of CEOs prioritizing cybersecurity.
Ransomware attacks have evolved from merely locking computers to stealing valuable data, demanding ransom for its return.
Businesses should shift their perspective on security and view it as an integral part of their mission, investing in robust security measures to protect against ransomware attacks.
Deep dives
Ransomware attacks on the rise
Ransomware attacks have become increasingly prevalent in recent years, particularly with the emergence of new groups in Eastern Europe. Initially, ransomware was used to lock computers and demand payment for unlocking them. However, now attackers are focusing on stealing valuable data and demanding ransom for its return. This shift has led to a significant increase in the amount of money paid to hackers, with businesses admitting payment totaling $350 million in 2020 alone. Many businesses have accepted paying ransoms as just another cost of doing business, but this approach exacerbates the problem.
Businesses need to prioritize data security
To protect against ransomware attacks, businesses should shift their perspective on security. Rather than viewing it as a cost center, security should be seen as an integral part of their mission. This involves investing in robust security measures, such as data backup and redundancy systems. Failure to do so leaves businesses vulnerable to victimization. Currently, many businesses underestimate the risks and believe such attacks won't happen to them. Addressing this gap between those responsible for security and the CEO and board is essential to ensure adequate protection.
Tackling ransomware at the international level
Dealing with ransomware attacks requires action from the US government and the international community. The recent attacks on critical infrastructure originating from Russia highlight the need for decisive measures. President Biden should consider taking drastic action, such as threatening to cancel a summit with Putin, to demonstrate the seriousness of the issue. Retaliatory action could be a viable option, including cyber and military measures, economic sanctions, and intelligence collaboration. However, uniting the international community may be challenging, as different countries have varying levels of concern depending on their own experiences.
On this special edition of SpyTalk, co-host Jeanne Meserve speaks with William Evanina, former Director of the United States National Counterintelligence and Security Center about the recent spate of ransomware attacks. Evanina says President Biden should threaten to pull out of the upcoming summit with Russian President Vladimir Putin, and that the US should demonstrate it is willing and able to shut down Russian infrastructure.