{"id":5379,"date":"2024-09-19T08:51:36","date_gmt":"2024-09-19T13:51:36","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=81817"},"modified":"2024-09-19T08:51:36","modified_gmt":"2024-09-19T13:51:36","slug":"what-more-can-be-done-to-stop-ransomware-attacks","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/09\/19\/what-more-can-be-done-to-stop-ransomware-attacks\/","title":{"rendered":"What more can be done to stop ransomware attacks?\u00a0"},"content":{"rendered":"<p><head> <meta charset=\"UTF-8\"> <meta name=\"viewport\" content=\"width=device-width, initial-scale=1\"> <meta name=\"robots\" content=\"index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1\"> <!-- This site is optimized with the Yoast SEO Premium plugin v21.7 (Yoast SEO v21.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ --> <title>What more can be done to stop ransomware attacks?&nbsp; | CyberScoop<\/title> <meta name=\"description\" content=\"What more could be done in the wake of police action and tens of millions in ransom payments over the course of 2024?\"> <link rel=\"canonical\" href=\"https:\/\/cyberscoop.com\/ransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow\/\"> <meta property=\"og:locale\" content=\"en_US\"> <meta property=\"og:type\" content=\"article\"> <meta property=\"og:title\" content=\"What more can be done to stop ransomware attacks?&nbsp;\"> <meta property=\"og:description\" content=\"Experts commended the amount of takedowns in 2024 \u2014 14 as of this article\u2019s publication \u2014 calling it a step in the right direction. But they also know cybercriminals adapt to these actions.\"> <meta property=\"og:url\" content=\"https:\/\/cyberscoop.com\/ransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow\/\"> <meta property=\"og:site_name\" content=\"CyberScoop\"> <meta property=\"article:published_time\" content=\"2024-09-19T13:51:36+00:00\"> <meta property=\"article:modified_time\" content=\"2024-09-19T13:51:37+00:00\"> <meta property=\"og:image\" content=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg\"> <meta property=\"og:image:width\" content=\"2308\"> <meta property=\"og:image:height\" content=\"1298\"> <meta property=\"og:image:type\" content=\"image\/jpeg\"> <meta name=\"author\" content=\"Greg Otto\"> <meta name=\"twitter:card\" content=\"summary_large_image\"> <meta name=\"twitter:creator\" content=\"@gregotto\"> <!-- \/ Yoast SEO Premium plugin. --> <link rel=\"dns-prefetch\" href=\"\/\/securepubads.g.doubleclick.net\">\n<link rel=\"dns-prefetch\" href=\"\/\/use.typekit.net\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Feed\" href=\"https:\/\/cyberscoop.com\/feed\/\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Comments Feed\" href=\"https:\/\/cyberscoop.com\/comments\/feed\/\"> <link rel=\"stylesheet\" id=\"all-css-2\" href=\"https:\/\/cyberscoop.com\/wp-includes\/css\/dist\/block-library\/style.min.css?m=1725982252g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-6\" href=\"https:\/\/cyberscoop.com\/wp-content\/mu-plugins\/search\/elasticpress\/dist\/css\/related-posts-block-styles.min.css?m=1725466133g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-8\" href=\"https:\/\/cyberscoop.com\/wp-content\/themes\/scoopnewsgroup\/dist\/css\/frontend.css?m=1724269863g\" type=\"text\/css\" media=\"all\">\n<link rel=\"stylesheet\" id=\"typekit-css\" href=\"https:\/\/use.typekit.net\/itk2qbh.css?ver=ada0ad45b21fc79c6694\" media=\"all\"> <link rel=\"https:\/\/api.w.org\/\" href=\"https:\/\/cyberscoop.com\/wp-json\/\"><link rel=\"alternate\" title=\"JSON\" type=\"application\/json\" href=\"https:\/\/cyberscoop.com\/wp-json\/wp\/v2\/posts\/81817\"><link rel=\"EditURI\" type=\"application\/rsd+xml\" title=\"RSD\" href=\"https:\/\/cyberscoop.com\/xmlrpc.php?rsd\">\n<meta name=\"generator\" content=\"WordPress 6.6.2\">\n<link rel=\"shortlink\" href=\"https:\/\/cyberscoop.com\/?p=81817\">\n<link rel=\"alternate\" title=\"oEmbed (JSON)\" type=\"application\/json+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow%2F\">\n<link rel=\"alternate\" title=\"oEmbed (XML)\" type=\"text\/xml+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow%2F&amp;format=xml\"> <!-- Google Tag Manager --> <!-- End Google Tag Manager --> <link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=32\" sizes=\"32x32\">\n<link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=192\" sizes=\"192x192\">\n<link rel=\"apple-touch-icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=180\">\n<meta name=\"msapplication-TileImage\" content=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=270\"> <\/head><body class=\"post-template-default single single-post postid-81817 single-format-standard\" id=\"readabilityBody\"> <a href=\"https:\/\/cyberscoop.com\/ransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow\/#main\" class=\"skip-to-content-link visually-hidden-focusable\">Skip to main content<\/a> <\/p>\n<div class=\"ad ad--top ad--top-desktop\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p> <main id=\"main\" role=\"main\" tabindex=\"-1\"> <\/p>\n<div class=\"ad ad--top ad--top-mobile\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<section id=\"stickybar\" class=\"stickybar stickybar--event js-stickybar\">\n<div class=\"stickybar__details\" readability=\"4.952380952381\">\n<div class=\"stickybar__info js-sticky-bar-content\" readability=\"32\">\n<p>Voting is open for the 2024 CyberScoop 50 awards!&nbsp;<\/p>\n<\/div>\n<p> <a class=\"stickybar__link button button-tertiary\" href=\"https:\/\/cyberscoop.com\/cyberscoop50\/vote\/\">Click here!<\/a> <\/div>\n<p> <button class=\"stickybar__close js-stickybar-close\" aria-controls=\"stickybar\"> <svg class=\"icon icon--close\" width=\"21\" height=\"22\" viewBox=\"0 0 21 22\" fill=\"none\"><path d=\"m.822.518-.805.805L9.695 11 .017 20.678l.805.805 9.678-9.678 9.677 9.678.806-.805L11.305 11l9.678-9.677-.806-.805-9.677 9.677L.822.518Z\" fill=\"currentColor\" \/><\/svg> <span class=\"visually-hidden\">Close<\/span> <\/button> <\/section>\n<article class=\"single-article content\">\n<div class=\"single-article__container js-single-article-content\">\n<header class=\"single-article__header \" readability=\"24.701785714286\">\n<div class=\"single-article__header-content\" readability=\"30.633962264151\">\n<ul class=\"single-article__eyebrow\">\n<li class=\"single-article__category\"> <a class=\"single-article__category-link\" href=\"https:\/\/cyberscoop.com\/news\/threats\/cybercrime\/\"> <span>Cybercrime<\/span> <\/a> <\/li>\n<\/ul>\n<p> A panel of experts debated at the 2024 mWISE conference what more could be done in the wake of police action and tens of millions in ransom payments over the past year.&nbsp; <\/p>\n<\/p><\/div>\n<div class=\"single-article__cover-wrap\">\n<figure class=\"single-article__cover\"> <img data-recalc-dims=\"1\" fetchpriority=\"high\" width=\"640\" height=\"360\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks.jpg?resize=640%2C360&#038;ssl=1\" class=\"single-article__cover-image wp-post-image\" alt decoding=\"async\" fetchpriority=\"high\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg 2308w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=300,168 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=768,432 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=1024,576 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=1536,864 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=2048,1152 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=600,337 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=1200,675 1200w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-2.jpg?resize=1500,843 1500w\" sizes=\"(max-width: 1200px) 100vw, 1200px\"><figcaption> (Getty Images) <\/figcaption><\/figure>\n<\/p><\/div>\n<\/header>\n<div class=\"single-article__content\">\n<div class=\"single-article__content-inner has-drop-cap\"> <html readability=\"65.220213769255\"><body readability=\"131.36438923395\"><\/p>\n<p><strong>DENVER \u2014<\/strong> \u201cDrone strikes.\u201d&nbsp;<\/p>\n<p>The comment, made somewhat in jest by Allan Liska, an intelligence analyst at Recorded Future, was in response to a question about what could be done to further deter ransomware actors from carrying out their attacks.&nbsp;<\/p>\n<p>\u201cWe only need to hit one ransomware dude with a drone, and then a whole bunch of them will retire very quickly once they know that\u2019s on the table,\u201d Liska said during an expert panel Wednesday at the Mandiant Worldwide Information Security Exchange (mWISE).&nbsp;<\/p>\n<p>While the comment may have been tongue-in-cheek, there was an undercurrent of exasperation when Liska and other experts were asked how to further thwart ransomware attacks, especially as it has been made public <a href=\"https:\/\/cyberscoop.com\/cdk-ransom-blacksuit-25-million\/\">that several companies<\/a> have made <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2024-09-18\/gang-got-75-million-for-cencora-hack-in-largest-known-ransom\">eight-figure ransom payments<\/a> in 2024.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>\u201cThe rewards of ransomware are so great\u201d for attackers, said Brett Callow, a managing director at FTI Consulting. \u201cWe really need a very powerful deterrent or we need very effective mechanisms to reduce the amount of money that\u2019s flowing into the ransomware ecosystem. Until we do one of those two things, or a combination of both, we\u2019re not really going to get to grips with this problem.\u201d<\/p>\n<p>The experts commended the amount of takedowns in 2024 \u2014 14 as of this article\u2019s publication \u2014 calling it a step in the right direction. But they also know cybercriminals adapt to these actions, being able to re-tool and quickly resume operations.&nbsp;<\/p>\n<p>Kimberly Goody, head of Mandiant\u2019s Cyber Crime Analysis team, pointed to <a href=\"https:\/\/cyberscoop.com\/trickbot-takedown-cyber-command-microsoft\/\">the Trickbot takedown<\/a> as an example of how attackers showed some resilience.&nbsp;<\/p>\n<p>\u201cI would say the timing of that Trickbot disruption maybe didn\u2019t have the impact in reducing ransomware in the way we would like, because once [those responsible] had taken action against Trickbot, those actors shifted to these other tools that organizations didn\u2019t actually have adequate defenses against,\u201d she said. \u201cSo we kind of saw a skyrocket of victims there, because we didn\u2019t set those organizations up for success with being able to detect the new tools.\u201d&nbsp;<\/p>\n<p>Liska contrasted that takedown with <a href=\"https:\/\/cyberscoop.com\/global-police-operation-strikes-against-malware-infrastructure\/\">Operation Endgame<\/a>, a multinational effort that disrupted more than 100 servers and 2,000 domains that were used to facilitate a range of cybercrime.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Operation Endgame \u201cwas better timed, better coordinated, and I think it was much more impactful,\u201d he said. \u201cI think not only are we seeing more takedowns, but we\u2019re seeing law enforcement learn lessons from earlier problems to [carry out takedowns] more effectively.\u201d<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-is-banning-ransom-payments-reasonable-nbsp\">Is banning ransom payments reasonable?&nbsp;<\/h2>\n<p>Over the course of the year, both <a href=\"https:\/\/www.channelfutures.com\/security\/emsisoft-ransom-payment-ban-needed-to-stop-ransomware-attacks\">Callow<\/a> and <a href=\"https:\/\/cyberscoop.com\/radio\/allan-liska-sits-down-with-host-elias-groll-to-make-the-case-for-banning-ransomware-payments\/\">Liska<\/a> have called for an outright ban on ransom payments as a way to deter attacks. But both backed off those thoughts Wednesday when they viewed it through the lens of the current attack landscape.&nbsp;<\/p>\n<p>\u201cI used to be a proponent of a ban, but I think the time to do that would have been [when] ransomware was nowhere near as impactful as it is\u201d now, Callow said. \u201cI just don\u2019t see us being able to tell a hospital that it can\u2019t pay a ransom when it has no means of recovering its systems. The impact on patients would be politically untenable.\u201d&nbsp;<\/p>\n<p>Liska called a ban \u201ca bad idea, but the least bad one,\u201d while also endorsing <a href=\"https:\/\/therecord.media\/uk-proposal-mandatory-reporting-ransomware-attacks\">the UK\u2019s plan<\/a> to require ransomware victims to contact the government, then grant them clearance to make extortion payments.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>\u201cIf you have to pay a ransom, at least [the government knows] how much ransom is being paid, and they know what wallets are being paid to, and they can start tracking that information better,\u201d he said.&nbsp;<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-insurers-role-in-deterrence\">Insurers\u2019 role in deterrence<\/h2>\n<p>In the past few years, cyber insurers have strengthened organizations\u2019 defenses by limiting or avoiding ransom payments and advising on best practices, particularly regarding backups. Goody noted that these efforts reduce attackers\u2019 financial gains from incidents.<\/p>\n<p>\u201cWe are seeing those [insurance] companies push organizations to try to restore as many systems as they can as quickly as possible, while the negotiator is kind of stalling,\u201d she said. \u201cThat\u2019s important from the perspective of if an organization was hit with ransomware, and the attacker demanded $2 million for the restoration of all their systems, if that [victim] organization is able to actively discover that actually only 10% can\u2019t be restored from backups, they can use that to give them an upper hand in the negotiation, which ultimately helps the cyber insurer, because they might not have to pay out as much.\u201d<\/p>\n<p>Liska noted that insurers are increasingly stringent about companies\u2019 security practices before issuing policies.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>\u201cI know that a lot of organizations now before they get their [policy] renewal, they have to go through a much more intensive testing process, not just fill out a checkbox,\u201d he said. \u201cThey actually have people coming in and doing pentesting. That allows some of these insurance companies to pick better customers, or have better customers that are not going to be hit as often.\u201d&nbsp;<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-visibility-above-all-nbsp\">Visibility above all&nbsp;<\/h2>\n<p>Even with the enhanced efforts from both government and the private sector, Callow said there are still way too many attacks that happen out of the public eye to further deter ransomware attacks.&nbsp;<\/p>\n<p>\u201cIt is really, really hard to measure the effect of these actions, because we don\u2019t know how many ransomware attacks there are,\u201d he said. \u201cWe don\u2019t know the impact of those attacks. We have very, very limited visibility for law enforcement to truly be able to assess the impacts of their actions. And for policymakers, we need to have much better reporting of incidents so that we know how many there are, so that we can see and measure the impact.\u201d<\/p>\n<p> <\/body> <\/p>\n<footer class=\"single-article__footer\" readability=\"4.0619469026549\">\n<div class=\"author-card\" readability=\"14\">\n<div class=\"author-card__avatar\">\n<figure class=\"author-card__image-wrap\"> <img data-recalc-dims=\"1\" decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/09\/what-more-can-be-done-to-stop-ransomware-attacks-1.jpg?w=640&#038;ssl=1\" alt=\"Greg Otto\"> <\/figure>\n<\/p><\/div>\n<p><h4 class=\"author-card__name\">Written by Greg Otto<\/h4>\n<p> Greg Otto is Editor-in-Chief of CyberScoop, overseeing all editorial content for the website. Greg has led cybersecurity coverage that has won various awards, including accolades from the Society of Professional Journalists and the American Society of Business Publication Editors. Prior to joining Scoop News Group, Greg worked for the Washington Business Journal, U.S. News &amp; World Report and WTOP Radio. He has a degree in broadcast journalism from Temple University. <\/p>\n<\/p><\/div>\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <\/html><\/div>\n<\/p><\/div>\n<\/p><\/div>\n<div class=\"single-article__ads js-single-article-sidebar\">\n<div class=\"ad ad--sidebar js-single-article-sidebar-5 ad--rightrail_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-4 ad--rightrail_2 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-3 ad--rightrail_3 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div><\/div>\n<\/article>\n<div class=\"popular-stories popular-stories--single-post\">\n<div class=\"popular-stories__container\">\n<h2 class=\"popular-stories__title\"> More Scoops <\/h2>\n<p> <!-- .popular-stories__stories --> <\/div>\n<p><!-- .popular-stories__inner -->\n<\/div>\n<p><!-- .popular-stories --> <\/p>\n<section class=\"latest-podcasts\">\n<h2 class=\"latest-podcasts__title\"> Latest Podcasts\t<\/h2>\n<\/section>\n<div class=\"top-categories\">\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Government<\/h3>\n<\/p><\/div>\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Technology<\/h3>\n<\/p><\/div>\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Geopolitics<\/h3>\n<\/p><\/div>\n<\/p><\/div>\n<p> <\/main> <\/p>\n<div class=\"ad ad--bottom \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div id=\"interstitial\" class=\"welcome__container\"> <button id=\"close-modal-1\" class=\"welcome__clickable_area\"><\/button> <\/p>\n<div class=\"welcome__ad_wrapper\">\n<p> <button id=\"close-modal-3\" class=\"welcome__continue-button\">Continue to CyberScoop<\/button> <\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p> <!-- Start of HubSpot Embed Code --> <!-- End of HubSpot Embed Code --> <\/body> <a href=\"https:\/\/cyberscoop.com\/ransomware-attack-deterrent-mwise-conference-mandiant-allan-liska-brett-callow\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>What more can be done to stop ransomware attacks?&nbsp; |<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[2327,2719,282,78,2720,646,46,288],"tags":[2331,2721,286,86,2722,650,54,294],"class_list":["post-5379","post","type-post","status-publish","format-standard","hentry","category-allan-liska","category-brett-callow","category-cybercrime","category-cybersecurity","category-kimberly-goody","category-mandiant","category-ransomware","category-threats","tag-allan-liska","tag-brett-callow","tag-cybercrime","tag-cybersecurity","tag-kimberly-goody","tag-mandiant","tag-ransomware","tag-threats"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/allan-liska\/\" rel=\"category tag\">Allan Liska<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/brett-callow\/\" rel=\"category tag\">Brett Callow<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybercrime\/\" rel=\"category tag\">cybercrime<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity\/\" rel=\"category tag\">Cybersecurity<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/kimberly-goody\/\" rel=\"category tag\">Kimberly Goody<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/mandiant\/\" rel=\"category tag\">Mandiant<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/ransomware\/\" rel=\"category tag\">ransomware<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/threats\/\" rel=\"category tag\">Threats<\/a>","tag_info":"Threats","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/5379","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=5379"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/5379\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=5379"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=5379"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=5379"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}