Companies may be punished for paying ransoms to sanctioned hackers – U.S. Treasury


FILE PHOTO: People wearing balaclavas are silhouetted as they pose with a laptops in front of a screen projected with the word ‘cyber’ and binary code, in this picture illustration taken in Zenica October 29, 2014. REUTERS/Dado Ruvic

WASHINGTON (Reuters) – Facilitating ransomware payments to sanctioned hackers may be illegal, the U.S. Treasury said on Thursday, signaling a crackdown on the fast-growing market for consultants who help organizations pay off cybercriminals.

In a pair of advisories, the Treasury’s Office of Foreign Assets Control and its Financial Crimes Enforcement Network warned that facilitators could be prosecuted even if they or the victims did not know that the hackers demanding the ransom were subject to U.S. sanctions.

Ransomware works by encrypting computers, holding a company’s data hostage until a payment is made. Organizations have often ponied up ransoms to liberate their data.

“It is a game changer,” said Alon Gal, chief technology officer of Hudson Rock, which works to head off ransomware attacks before they happen.

Before, companies could decide whether or not to pay cybercriminals off, he said. Now that those decisions are being brought under government oversight “we are going to see a much tougher handling of these incidents.”

The Enforcement Network’s advisory also warned that cybersecurity firms may need to register as money services businesses if they help make ransomware payments. That would impose a new reporting requirement on a previously little-regulated corner of the cybersecurity industry.

Ransomware has become an increasingly visible threat in the United States and abroad. Cybercriminals have long used the software to loot their victims. Some countries, notably North Korea, are also accused of deploying ransomware to earn cash.

Reporting by Raphael Satter; Editing by Chizu Nomiyama and Richard Chang



Source link

Recent articles

SARS: Lagos under lockdown after protesters ‘shot’ | Nigeria

Heavy security presence in Nigeria’s biggest city; dozens taken to hospital after soldiers reportedly shot at protesters.Lagos was under lockdown on Wednesday as...

FIFA World Cup 2022™ – News – FIFA World Cup 2022™ First Sustainability Progress Report published

The FIFA World Cup 2022™ First Sustainability Progress Report provides an update on the progress made by FIFA, the...

Google Antitrust Fight Thrusts Low-Key C.E.O. Into the Line of Fire

OAKLAND, Calif. — When Sundar Pichai succeeded Larry Page as the head of Google’s parent company in December, he was handed a bag...

How do I know if grad school is worth it?

College enrollment is down overall compared with last year due to the coronavirus. But the economic effects of the pandemic may actually be...

Nike Moto

Source link

Iranian Fokker 100 engine parts penetrate cabin after uncontained failure | News

Iranian investigators are probing the serious uncontained failure of a Fokker 100 engine which forced the crew to abort take-off from Tehran’s Mehrabad...

Leave a reply

Please enter your comment!
Please enter your name here