Ferhat Dikbiyik, chief research and intelligence officer at the cybersecurity firm Black Kite, joins the podcast to discuss cybersecurity and the evolving structure and threat of ransomware gangs.
Music Credits:
Ready for Repeat by Rolla Coasta -
stock.adobe.comRelaxing Lounge by Classy Call me Man -
stock.adobe.comCOCKTAIL by Mythical Audio -
stock.adobe.comEditor's note: Episode timestamps and transcript produced using AI tools.
Introduction to the episode (00:00:15)Host Keith Reynolds introduces the podcast and the discussion on cybersecurity and ransomware gangs.
Surge in ransomware attacks (00:00:49)Ferhat discusses the 32% increase in ransomware attacks in healthcare from 2023 to 2024.
Dynamics of ransomware ecosystem (00:01:11)Ferhat explains shifts in the ransomware ecosystem, emphasizing the rise of affiliate-driven models.
Affiliates in ransomware (00:03:39)Discussion on how affiliates operate within the ransomware ecosystem and their motivations.
Targeting smaller medical practices (00:06:01)Ferhat highlights the increased risk smaller medical practices face from ransomware attacks.
Banning ransom payments (00:08:33)Discussion on the implications of banning ransom payments for victims under pressure.
Changing negotiation tactics (00:10:01)Ferhat notes the shift towards urgent ransom demands with little room for negotiation.
Challenges for law enforcement (00:11:53)Ferhat explains the difficulties law enforcement faces in combating organized ransomware groups.
Geographic distribution of ransomware groups (00:12:49)Ferhat discusses the locations of ransomware groups, primarily in Eastern Europe and Russia.
Finding targets for attacks (00:14:35)Ferhat describes how cybercriminals identify and select small medical practices to target.
Health care as a prime target (00:15:29)Ferhat predicts that healthcare will continue to be a significant target for cybercriminals.
Protecting small medical practices (00:16:29)Advice on proactive measures small practices can take to safeguard against ransomware.
Phishing and vulnerabilities (00:17:56)Ferhat discusses the prevalence of phishing as an attack method for ransomware groups.
Training employees on phishing (00:18:30)Emphasis on the importance of training staff to recognize phishing attempts.
Final thoughts on ransomware risks (00:18:37)Ferhat stresses the need for vigilance and proactive measures against increasing ransomware risks.