The corporate ransomware situation is playing out depressingly exactly as I predicted years ago.

You’ve got orgs secretly paying millions, attackers getting much better with huge budgets etc. For most orgs, organised ransomware is a bigger threat than APT groups.
It hasn't reached the 'endgame' near by the way. The Rangarok one with Sophos is interesting as they had a zero day exploit completely unknown to vendor, and ransomware deployment using lateral movement and XP virtual machines (first time I've ever seen that).
Basically those many (many) millions of dollars going to attackers really is creating a situation where ransomware groups are becoming the apex predator in cybersecurity - it's going to be a Big Problem.
You can follow @GossiTheDog.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled: