Skip to main content
News Directory 3
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
Menu
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
Ransomware Attacks: Two Cybersecurity Employees Plead Guilty - News Directory 3

Ransomware Attacks: Two Cybersecurity Employees Plead Guilty

December 31, 2025 Lisa Park Tech
News Context
At a glance
  • Two former cybersecurity professionals have pleaded ⁤guilty to deploying ransomware attacks, revealing a ⁢troubling conflict of interest within the cybercrime response industry.
  • Ryan Goldberg,40,and Kevin⁢ Martin,36,pleaded⁤ guilty on Tuesday,November ⁢5,2024,to charges related to ransomware attacks carried out in 2023.
  • the indictment, initially filed ⁣in October 2024, revealed ⁢a shocking twist: Martin and a co-conspirator were employed as ransomware negotiators at Digital ⁣Mint, a cybercrime and incident response...
Original source: theverge.com

“`html

Ransomware⁤ Negotiators Indicted for Launching Attacks⁢ They Once Mediated

Table of Contents

  • Ransomware⁤ Negotiators Indicted for Launching Attacks⁢ They Once Mediated
    • What Happened?
    • The ALPHV/BlackCat Connection
    • Conflict of Interest: A Deep Dive

Two former cybersecurity professionals have pleaded ⁤guilty to deploying ransomware attacks, revealing a ⁢troubling conflict of interest within the cybercrime response industry. ⁢ryan Goldberg and Kevin Martin, previously employed to *negotiate* ransomware payments, are ⁤now facing consequences for *launching* their own attacks,‍ extorting over $1.2 million in Bitcoin.

What Happened?

Ryan Goldberg,40,and Kevin⁢ Martin,36,pleaded⁤ guilty on Tuesday,November ⁢5,2024,to charges related to ransomware attacks carried out in 2023. The Department of Justice (DOJ) announced the pair extorted $1.2 million in Bitcoin from a medical device company and targeted ⁣several other ⁢victims using the ALPHV/BlackCat ransomware variant.

the indictment, initially filed ⁣in October 2024, revealed ⁢a shocking twist: Martin and a co-conspirator were employed as ransomware negotiators at Digital ⁣Mint, a cybercrime and incident response firm. Goldberg held a position ⁣as an incident⁣ response manager at Sygnia Cybersecurity Services. This meant they were simultaneously advising companies on ⁤how to respond to ransomware attacks *and* actively perpetrating them.

What: Guilty pleas in a series of ransomware attacks.Who: Ryan Goldberg and Kevin Martin, former cybersecurity professionals.
When: Guilty pleas announced november 5, 2024; attacks occurred in 2023.
⁣
Where: United States (victims targeted nationwide).
Why it Matters: Highlights a risky conflict of interest within the cybersecurity industry and the potential for insider threats.
What’s Next: Sentencing pending; further investigation into the co-conspirator is⁢ ongoing.

The ALPHV/BlackCat Connection

ALPHV/BlackCat is a Ransomware-as-a-Service⁣ (RaaS) operation, meaning the developers of the ransomware lease it out to affiliates who than carry out the attacks. This model allows criminals with limited technical skills to participate in ransomware schemes.BlackCat, known for its use of the Rust programming language, has ⁣been particularly effective due ⁤to its speed and ability⁣ to evade detection. According‍ to the Cybersecurity and Infrastructure Security Agency (CISA), BlackCat has targeted a wide range of sectors, including healthcare,⁤ government, and critical infrastructure.

The use of RaaS like ALPHV/BlackCat considerably lowers the⁢ barrier to entry for cybercriminals. Affiliates typically pay a percentage of the ransom to the developers, creating a lucrative ecosystem for both parties. The DOJ’s case against Goldberg and Martin demonstrates that even those with specialized cybersecurity knowledge can be drawn into this criminal activity.

Conflict of Interest: A Deep Dive

The‍ most concerning aspect of this case is the clear conflict of interest. ⁤ Goldberg and Martin, by virtue of their positions at Digital Mint and Sygnia, had access to sensitive details about ⁢ransomware⁣ tactics, techniques, and procedures (TTPs). ‍ They were privy to the vulnerabilities that companies were struggling to protect against. This insider knowledge gave them a significant advantage when launching their own attacks.

This case raises serious questions about ethical standards and oversight within the cybersecurity industry. ⁤ How can companies ensure that their incident response teams are not compromised by individuals with ulterior motives? ⁤ What measures can be taken to prevent similar conflicts of interest from arising in the future? the National Institute of standards and⁣ Technology (NIST) Cybersecurity Framework emphasizes the importance of risk management and personnel⁣ security, but this case highlights the⁢ need for more robust vetting processes and ongoing monitoring.

this case isn’t just about

Share this:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X

Worth a look

  • Death Notice and Funeral Details for Oliver Plunkett, Girvan
  • Star Ocean Second Story R and Mana Series on Sale for Switch 2

Related

news, security, Tech

Search:

News Directory 3

News Directory 3 catalogs US newspapers, news services, newsstands and digital news outlets across all 50 states. Browse local publishers by city, state, or topic, and follow current headlines linked back to their original sources.

Quick Links

  • Disclaimer
  • Terms and Conditions
  • About Us
  • Advertising Policy
  • Contact Us
  • Cookie Policy
  • Editorial Guidelines
  • Privacy Policy

Browse by State

  • Alabama
  • Alaska
  • Arizona
  • Arkansas
  • California
  • Colorado

© 2026 News Directory 3. All rights reserved.
For contact, advertising, copyright, issues email: office@newsdirectory3.com