<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Ransomware gang apologizes, gives SickKids hospital free decryptor in Industry News</title>
    <link>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56424#M6072</link>
    <description>&lt;P&gt;I tend to be very forgiving of people who come clean after a mistake or mature out of naïve behavior, but this is neither. At best, I view it as a public relations stunt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;No amount of tweaking will change the fact that their business model is illegal and unethical.&amp;nbsp;&amp;nbsp;The very first step to making amends would be to do as&amp;nbsp;the&amp;nbsp;&lt;A href="https://www.bleepingcomputer.com/news/security/ransomware-dev-releases-egregor-maze-master-decryption-keys/" target="_blank" rel="noopener"&gt;Maze ransomware authors did&lt;/A&gt;. Release all decryption keys, nuke the code repositories and promise to forever leave the business.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I keep trying to come up with the middle ground (e.g., free unlock keys for all of emergency/health services) but in the end I cannot get past the fact that this action neither moves LockBit towards "higher ground" nor makes the impacted hospital whole.&amp;nbsp; The hospital still has a ~2 week outage to recover from, they still have remediation work to complete, and the reputational damage remains.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 02 Jan 2023 21:46:44 GMT</pubDate>
    <dc:creator>denbesten</dc:creator>
    <dc:date>2023-01-02T21:46:44Z</dc:date>
    <item>
      <title>Ransomware gang apologizes, gives SickKids hospital free decryptor</title>
      <link>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56412#M6068</link>
      <description>&lt;P&gt;Sick Kids in Toronto is the leading hospital for Children and Research in Canada.&amp;nbsp; It was recently attacked by hackers and the victim of Ransomware.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This was nice to see that the LockBit gang has taken this step.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.bleepingcomputer.com/news/security/ransomware-gang-apologizes-gives-sickkids-hospital-free-decryptor/amp/" target="_blank"&gt;https://www.bleepingcomputer.com/news/security/ransomware-gang-apologizes-gives-sickkids-hospital-free-decryptor/amp/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;d&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Jan 2023 13:06:13 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56412#M6068</guid>
      <dc:creator>dcontesti</dc:creator>
      <dc:date>2023-01-02T13:06:13Z</dc:date>
    </item>
    <item>
      <title>Re: Ransomware gang apologizes, gives SickKids hospital free decryptor</title>
      <link>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56418#M6070</link>
      <description>&lt;P&gt;This really is good news.&amp;nbsp; It's not the kind of story I want to hear, but at least they did the right thing this time.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Jan 2023 16:43:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56418#M6070</guid>
      <dc:creator>ericgeater</dc:creator>
      <dc:date>2023-01-02T16:43:25Z</dc:date>
    </item>
    <item>
      <title>Re: Ransomware gang apologizes, gives SickKids hospital free decryptor</title>
      <link>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56419#M6071</link>
      <description>&lt;P&gt;The news doesn't raise my low opinion of LockBit (or Conti or other RaaS scum). At best, this is the same response you would expect from a spoiled 12-year-old who realizes their vandalism can cause real harm. I more suspect their response is the rationalization of a sociopath who can't stand to look in the mirror. "Wait, wait, we're not that bad." Yes, you are that bad. Behind every cyberattack, there is real harm that eventually trickles down to the most vulnerable. While LockBit may lack the intellect and morals to perceive that fact, what makes this crew (and others like it) especially despicable is their parasitic business model of taking a cut from "affiliates." They are the pimps of ransomware.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the grand scheme, this incident helps illustrate the increasing coordination and organization of cybercrime. Although ... arguably, it also illustrates the flawed risk assessments of using technology to save a little money here but ending up with a remarkably vulnerable infrastructure.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Jan 2023 18:13:18 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56419#M6071</guid>
      <dc:creator>JoePete</dc:creator>
      <dc:date>2023-01-02T18:13:18Z</dc:date>
    </item>
    <item>
      <title>Re: Ransomware gang apologizes, gives SickKids hospital free decryptor</title>
      <link>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56424#M6072</link>
      <description>&lt;P&gt;I tend to be very forgiving of people who come clean after a mistake or mature out of naïve behavior, but this is neither. At best, I view it as a public relations stunt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;No amount of tweaking will change the fact that their business model is illegal and unethical.&amp;nbsp;&amp;nbsp;The very first step to making amends would be to do as&amp;nbsp;the&amp;nbsp;&lt;A href="https://www.bleepingcomputer.com/news/security/ransomware-dev-releases-egregor-maze-master-decryption-keys/" target="_blank" rel="noopener"&gt;Maze ransomware authors did&lt;/A&gt;. Release all decryption keys, nuke the code repositories and promise to forever leave the business.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I keep trying to come up with the middle ground (e.g., free unlock keys for all of emergency/health services) but in the end I cannot get past the fact that this action neither moves LockBit towards "higher ground" nor makes the impacted hospital whole.&amp;nbsp; The hospital still has a ~2 week outage to recover from, they still have remediation work to complete, and the reputational damage remains.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Jan 2023 21:46:44 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Ransomware-gang-apologizes-gives-SickKids-hospital-free/m-p/56424#M6072</guid>
      <dc:creator>denbesten</dc:creator>
      <dc:date>2023-01-02T21:46:44Z</dc:date>
    </item>
  </channel>
</rss>

