Ransomware negotiator hired to represent victims was working for the attackers

A former ransomware negotiator at DigitalMint was convicted of colluding with BlackCat ransomware attackers to inflate ransom demands against the victims he was hired to protect, resulting in over $75 million in inflated payments and compromising critical services at healthcare, financial, and retail organizations. This case exposes a critical vulnerability in third-party trust relationships and incident response supply chains, where insider threats can systematically undermine an organization's security posture and negotiations. IT leaders must implement strict access controls, segregation of duties, continuous monitoring of sensitive communications, and rigorous vetting of third-party security vendors to prevent similar breaches of trust.

Jon BrodkinArs Technica2 min read1 views
Read full article
Ransomware negotiator hired to represent victims was working for the attackers

Read the full story at Ars Technica →