FBI Arrests Founder of Ransomware Negotiation Firm
Curated from Krebs on Security
This arrest signals a critical shift in the threat landscape, moving beyond digital exfiltration to physical jurisdictional enforcement against the ransomware ecosystem’s enablers. For SREs and security teams, the implication is stark: the negotiation economy is now a primary target for law enforcement, not just the attackers themselves. Your incident response plans must account for the legal and operational risks of engaging with third-party negotiators. If your organization retains data on sensitive personnel or infrastructure, the breach is no longer just a technical failure; it is a potential criminal liability vector for your vendors. Audit your third-party security service providers immediately. Verify their compliance with data sovereignty laws and ensure your contracts explicitly prohibit the handling of compromised law enforcement or critical infrastructure data.
Agents with the Federal Bureau of Investigation (FBI) on Thursday arrested the co-founder of a Canadian cybersecurity firm in connection with an investigation into the ShinyHunters hacking group that recently relieved the FBI of sensitive data on thousands of agents, multiple sources tell KrebsOnSecurity.
— Krebs on Security