The extortion business model has flipped. Encryption is now optional. The leverage attackers actually want is your data, and the threat to leak it.
Attackers don't need to lock your systems anymore. Stealing your data and threatening to leak it works just as well, and it's faster, quieter, and harder to catch. This session covers how that shift happened, who's driving it, and what it changes for your defenses.
YOU WILL LEARN:
- Why encryptionless extortion jumped from nearly nothing to a quarter of tracked attacks in one year
- The attack chain behind it: identity compromise, SaaS data theft through channels your team already trusts, and why it slips past endpoint tools
- Real cases tied to Canva, several U.S. law firms, and a major Apple manufacturing partner, and the groups behind them, including ShinyHunters, Silent Ransom Group, and World Leaks
- Why backups don't solve this problem and what "identity is the new perimeter" actually means for your team
Dan Gittis
Director of TIDE Team
Dan Gittis is the Director of UltraViolet's Threat Intelligence & Detection Engineering (TIDE) team. Before joining UV, he served as the lead for M&T Bank's strategic cyber intelligence team. He has also worked on Accenture MxDR's Global Intelligence Operations team and as a threat intelligence analyst for the Philadelphia Police Department, where he collaborated with the FBI, U.S. Coast Guard, and Department of Homeland Security on maritime cybersecurity efforts.
AI Governance by Design
UltraViolet Cyber Acquires Black Duck’s Application Security Testing Services Business
UltraViolet Cyber Launches Solstice