SlideShare a Scribd company logo
1 of 5
Download to read offline
THE BLOGS
Andy Blumenthal
Lessons From Israel In
Stopping Ransomware
(Source Photo: https://pixabay.com/illustrations/ransomware-cyber-crime-malware-2321110/)
ADVERTISEMENT
Israel is a small, but powerful nation that wants to stop attacks before they get
to their door, and indeed, their lives depend on that. We can learn from Israel’s
military doctrine of deterrence through overwhelming strength, unity, and
disincentivizing the attackers to inform other security issues, such as
ransomware attacks. I believe that the answer lies in a public-private security
partnership financially backed by the government.
Ransomware is a malicious cybercrime whereby attackers lock up the target’s
computer systems until they pay a ransom, typically in hard-to-trace cyber
currency, such as Bitcoin.  These attacks are on the rise, resulting in an
estimated $20 billion in damages in 2021, a figure projected to reach $265
billion in ten years.
Just this last year, in May and June 2021, Colonial Pipeline, a major American oil
carrier, and JBS Foods, the world’s largest meat processor were attacked with
ransomware attacks, jeopardizing our food and oil supply. That is, until Colonial
paid $4.4 million and JBS paid $11 million to their cyber attackers. Ransomware
attacks are devastating to companies and nations because they paralyze
business operations and much needed outputs and services to citizens.
From a corporate perspective, I completely understand the pressure to resolve
the cyber-attack that holds their business operations at a costly standstill. I can
only imagine the customers, suppliers, and board of directors all screaming to
resolve the situation as quickly as possible.
From a broader national security and critical infrastructure perspective, these
attacks can be devastating to our nation when they strike our military industrial
base, energy, utilities, banking, transportation, food/water, etc. Imagine, no gas,
no lights, no ATM machines or credit cards, no phones, and so on. Moreover, for
companies that are coming to resolve the situation at the end of the game (i.e.,
once attacked), they are at a distinct disadvantage. At the same time, if they try
to plan all by themselves, they are out-schemed and out-gunned by cyber
attackers that are doing this day-in and day-out. Yet, the more we reward the
criminals or terrorists when they strike, the more incentive they have to keep
doing it.
This is a lesson that Israel learned many decades ago in suffering under an
endless barrage of terror attacks, which were perpetrated not only to inflict
painful injuries and deaths on the Israeli civilian population, but also to try to
force the Israeli government to negotiate and free terrorist leaders and those
with “blood on their hands” that were in Israel’s custody. However, because
rewarded terror begets more terror, Israel instituted a policy of not negotiating
with terrorists. This was a sound and strategic policy that was echoed by former
U.S. Presidents Richard Nixon and Ronald Reagan, as well as British Prime
Minister Margaret Thatcher.
If the terrorists can’t get what their after in terms of releasing their cohorts or
some other ransom perhaps like increasing their leverage in negotiations with
Israel for their own Palestinian State, then that takes away, in part, the
incentive for them to carry out the terror attack to begin with. Of course, in
Israel’s case, the terrorists are also theologically motivated to inflict the
maximum harm on Israelis because they don’t recognize Israel to begin with,
they want to drive the Jews into the sea, and they see their attacks as part of
some sort of warped religious war (or Jihad) whereby Islam and its adherents are
shown to be supreme.
Despite Israel’s policy of not negotiating with terrorists, they have at times
deemed it necessary to negotiate and give in to terrorist demands in order to get
what the public demanded, such in 2008 and 2011, when they gave up terrorists
in Israel’s prisons in order to secure the return of the bodies of two IDF soldiers
kidnapped at the Northern border, and for the return of Gilad Shalit taken
prisoner near Gaza in 2006. Similarly, with ransomware, we are human and we
can’t stand seeing our systems and organizations “locked up,” inoperable, and
our citizens being hurt by it.
With ransomware attacks, however, the crime is generally wholly financially-
driven, and therefore, if you dry up the payments to the attackers, you deplete
their motivation to ransom any systems to begin with. In other words: no
ransom, no ransomware!
How can we stop the payments of ransom by companies that are in a terrorist’s
cyber stranglehold?  I have a notional approach that I think could be a
framework for addressing this vital security issue. The two key elements are a
public-private security partnership and a government financial backstop.
Companies Join Public-Private Partnership
First, companies voluntarily join a public-private security partnership in which
they adhere to higher security standards and oversight as well as pledge not to
pay ransomware. Additionally, these companies are placed on a public list and
given a badge or seal of approval/logo like Brink’s Home Security or ADT to
display that indicates they are “fortified,” and in this case, that they won’t pay
any ransom, and are backed by the government. An example of the voluntary
higher security standards is what happened after 9-11, when companies
shipping goods signed up for the Customs Trade Partnership Against Terrorism
(CTPAT) to facilitate the safe flow of cargo to the U.S. in a time when everyone
feared weapons of mass destruction being smuggled in.
ADVERTISEMENT
ABOUT THE AUTHOR
Andy Blumenthal is a business and technology leader who writes frequently about Jewish life,
culture, and security. All opinions are his own.
Government Backstops Any Costs
Second, the government provides an incentive for companies to participate in
the public-private partnership and not to pay ransomware. The incentive
provided is that the companies are backstopped (insured) by the government in
the event of a ransomware attack to them. This is similar to ransomware
insurance, but the difference is that the cost to companies would be a fraction of
what they would otherwise have to pay. The benefit to the taxpayer is that the
market for ransomware dries up with companies that have pledged not to pay.
As the program become universal, there is no one left for the ransomware
attackers to target.
In short, as long as ransomware is a lucrative endeavor with little to no risk to
the cyber attackers who stealthily get away with their cryptocurrency payments
then the ransomware attacks will not only continue but increase as a threat to
our companies and nations. However, once we say—like Israel and other world
democracies—that “we will not negotiate with terrorists”—and we back this up
by a government financial guarantee then a major and growing security threat
can be finally neutralized.

More Related Content

Similar to Lessons From Israel In Stopping Ransomware

The psychological effects of cyber terrorismMichael L. Gross.docx
The psychological effects of cyber terrorismMichael L. Gross.docxThe psychological effects of cyber terrorismMichael L. Gross.docx
The psychological effects of cyber terrorismMichael L. Gross.docx
oreo10
 
How does white collar crime affect society Who are the victims of w.pdf
How does white collar crime affect society Who are the victims of w.pdfHow does white collar crime affect society Who are the victims of w.pdf
How does white collar crime affect society Who are the victims of w.pdf
lanuszickefoosebr429
 
Terrorism and Criminal SEC400 Terrorism .docx
Terrorism and Criminal     SEC400 Terrorism .docxTerrorism and Criminal     SEC400 Terrorism .docx
Terrorism and Criminal SEC400 Terrorism .docx
mattinsonjanel
 

Similar to Lessons From Israel In Stopping Ransomware (6)

The psychological effects of cyber terrorismMichael L. Gross.docx
The psychological effects of cyber terrorismMichael L. Gross.docxThe psychological effects of cyber terrorismMichael L. Gross.docx
The psychological effects of cyber terrorismMichael L. Gross.docx
 
Traditional Terrorists
Traditional TerroristsTraditional Terrorists
Traditional Terrorists
 
Rand's Brian Michael Jenkins on Cyber Terrorism and Silicon Valley
Rand's Brian Michael Jenkins on Cyber Terrorism and Silicon ValleyRand's Brian Michael Jenkins on Cyber Terrorism and Silicon Valley
Rand's Brian Michael Jenkins on Cyber Terrorism and Silicon Valley
 
A View Of Cyberterrorism Five Years Later
A View Of Cyberterrorism Five Years LaterA View Of Cyberterrorism Five Years Later
A View Of Cyberterrorism Five Years Later
 
How does white collar crime affect society Who are the victims of w.pdf
How does white collar crime affect society Who are the victims of w.pdfHow does white collar crime affect society Who are the victims of w.pdf
How does white collar crime affect society Who are the victims of w.pdf
 
Terrorism and Criminal SEC400 Terrorism .docx
Terrorism and Criminal     SEC400 Terrorism .docxTerrorism and Criminal     SEC400 Terrorism .docx
Terrorism and Criminal SEC400 Terrorism .docx
 

More from Andy (Avraham) Blumenthal

More from Andy (Avraham) Blumenthal (20)

America Is the Target; Israel Is the Front Line _ Andy Blumenthal _ The Blogs...
America Is the Target; Israel Is the Front Line _ Andy Blumenthal _ The Blogs...America Is the Target; Israel Is the Front Line _ Andy Blumenthal _ The Blogs...
America Is the Target; Israel Is the Front Line _ Andy Blumenthal _ The Blogs...
 
Free Free Free...Ukraine! _ Andy Blumenthal _ The Blogs.pdf
Free Free Free...Ukraine! _ Andy Blumenthal _ The Blogs.pdfFree Free Free...Ukraine! _ Andy Blumenthal _ The Blogs.pdf
Free Free Free...Ukraine! _ Andy Blumenthal _ The Blogs.pdf
 
The Rebbe Knew _ Andy Blumenthal _ The Blogs.pdf
The Rebbe Knew _ Andy Blumenthal _ The Blogs.pdfThe Rebbe Knew _ Andy Blumenthal _ The Blogs.pdf
The Rebbe Knew _ Andy Blumenthal _ The Blogs.pdf
 
Jewish Students and Faculty Must Sue _ Andy Blumenthal _ The Blogs (1).pdf
Jewish Students and Faculty Must Sue _ Andy Blumenthal _ The Blogs (1).pdfJewish Students and Faculty Must Sue _ Andy Blumenthal _ The Blogs (1).pdf
Jewish Students and Faculty Must Sue _ Andy Blumenthal _ The Blogs (1).pdf
 
By Any Means Necessary _ Andy Blumenthal _ The Blogs.pdf
By Any Means Necessary _ Andy Blumenthal _ The Blogs.pdfBy Any Means Necessary _ Andy Blumenthal _ The Blogs.pdf
By Any Means Necessary _ Andy Blumenthal _ The Blogs.pdf
 
Reincarnation_ Try, Try Again _ Andy Blumenthal _ The Blogs.pdf
Reincarnation_ Try, Try Again _ Andy Blumenthal _ The Blogs.pdfReincarnation_ Try, Try Again _ Andy Blumenthal _ The Blogs.pdf
Reincarnation_ Try, Try Again _ Andy Blumenthal _ The Blogs.pdf
 
The Canary in the Antisemitic Coal Mine _ Andy Blumenthal _ The Blogs.pdf
The Canary in the Antisemitic Coal Mine _ Andy Blumenthal _ The Blogs.pdfThe Canary in the Antisemitic Coal Mine _ Andy Blumenthal _ The Blogs.pdf
The Canary in the Antisemitic Coal Mine _ Andy Blumenthal _ The Blogs.pdf
 
The Occupation Game _ Andy Blumenthal _ The Blogs.pdf
The Occupation Game _ Andy Blumenthal _ The Blogs.pdfThe Occupation Game _ Andy Blumenthal _ The Blogs.pdf
The Occupation Game _ Andy Blumenthal _ The Blogs.pdf
 
Finding Strength in Difficult Times _ Andy Blumenthal _ The Blogs.pdf
Finding Strength in Difficult Times _ Andy Blumenthal _ The Blogs.pdfFinding Strength in Difficult Times _ Andy Blumenthal _ The Blogs.pdf
Finding Strength in Difficult Times _ Andy Blumenthal _ The Blogs.pdf
 
The Hostage's Cry _ Andy Blumenthal _ The Blogs.pdf
The Hostage's Cry _ Andy Blumenthal _ The Blogs.pdfThe Hostage's Cry _ Andy Blumenthal _ The Blogs.pdf
The Hostage's Cry _ Andy Blumenthal _ The Blogs.pdf
 
The Topsy Turvy World of Baby Killers and Nazis _ Andy Blumenthal _ The Blogs...
The Topsy Turvy World of Baby Killers and Nazis _ Andy Blumenthal _ The Blogs...The Topsy Turvy World of Baby Killers and Nazis _ Andy Blumenthal _ The Blogs...
The Topsy Turvy World of Baby Killers and Nazis _ Andy Blumenthal _ The Blogs...
 
Love Is Not Blind, But Hate Sure Is _ Andy Blumenthal _ The Blogs.pdf
Love Is Not Blind, But Hate Sure Is _ Andy Blumenthal _ The Blogs.pdfLove Is Not Blind, But Hate Sure Is _ Andy Blumenthal _ The Blogs.pdf
Love Is Not Blind, But Hate Sure Is _ Andy Blumenthal _ The Blogs.pdf
 
Imagine Peace _ Andy Blumenthal _ The Blogs.pdf
Imagine Peace _ Andy Blumenthal _ The Blogs.pdfImagine Peace _ Andy Blumenthal _ The Blogs.pdf
Imagine Peace _ Andy Blumenthal _ The Blogs.pdf
 
Nobody Wanted War _ Andy Blumenthal _ The Blogs.pdf
Nobody Wanted War _ Andy Blumenthal _ The Blogs.pdfNobody Wanted War _ Andy Blumenthal _ The Blogs.pdf
Nobody Wanted War _ Andy Blumenthal _ The Blogs.pdf
 
It Comes Down to Leadership _ Andy Blumenthal _ The Blogs.pdf
It Comes Down to Leadership _ Andy Blumenthal _ The Blogs.pdfIt Comes Down to Leadership _ Andy Blumenthal _ The Blogs.pdf
It Comes Down to Leadership _ Andy Blumenthal _ The Blogs.pdf
 
How To Get The Hostages Out Alive _ Andy Blumenthal _ The Blogs.pdf
How To Get The Hostages Out Alive _ Andy Blumenthal _ The Blogs.pdfHow To Get The Hostages Out Alive _ Andy Blumenthal _ The Blogs.pdf
How To Get The Hostages Out Alive _ Andy Blumenthal _ The Blogs.pdf
 
L'Chaim for Body and Soul _ Andy Blumenthal _ The Blogs.pdf
L'Chaim for Body and Soul _ Andy Blumenthal _ The Blogs.pdfL'Chaim for Body and Soul _ Andy Blumenthal _ The Blogs.pdf
L'Chaim for Body and Soul _ Andy Blumenthal _ The Blogs.pdf
 
Victimhood for the cameras _ Andy Blumenthal _ The Blogs.pdf
Victimhood for the cameras _ Andy Blumenthal _ The Blogs.pdfVictimhood for the cameras _ Andy Blumenthal _ The Blogs.pdf
Victimhood for the cameras _ Andy Blumenthal _ The Blogs.pdf
 
My Supernova _ Andy Blumenthal _ The Blogs.pdf
My Supernova _ Andy Blumenthal _ The Blogs.pdfMy Supernova _ Andy Blumenthal _ The Blogs.pdf
My Supernova _ Andy Blumenthal _ The Blogs.pdf
 
Preventing a Future October 7 _ Andy Blumenthal _ The Blogs.pdf
Preventing a Future October 7 _ Andy Blumenthal _ The Blogs.pdfPreventing a Future October 7 _ Andy Blumenthal _ The Blogs.pdf
Preventing a Future October 7 _ Andy Blumenthal _ The Blogs.pdf
 

Recently uploaded

THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
Faga1939
 
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
Diya Sharma
 

Recently uploaded (20)

Verified Love Spells in Little Rock, AR (310) 882-6330 Get My Ex-Lover Back
Verified Love Spells in Little Rock, AR (310) 882-6330 Get My Ex-Lover BackVerified Love Spells in Little Rock, AR (310) 882-6330 Get My Ex-Lover Back
Verified Love Spells in Little Rock, AR (310) 882-6330 Get My Ex-Lover Back
 
Gujarat-SEBCs.pdf pfpkoopapriorjfperjreie
Gujarat-SEBCs.pdf pfpkoopapriorjfperjreieGujarat-SEBCs.pdf pfpkoopapriorjfperjreie
Gujarat-SEBCs.pdf pfpkoopapriorjfperjreie
 
06052024_First India Newspaper Jaipur.pdf
06052024_First India Newspaper Jaipur.pdf06052024_First India Newspaper Jaipur.pdf
06052024_First India Newspaper Jaipur.pdf
 
Enjoy Night⚡Call Girls Rajokri Delhi >༒8448380779 Escort Service
Enjoy Night⚡Call Girls Rajokri Delhi >༒8448380779 Escort ServiceEnjoy Night⚡Call Girls Rajokri Delhi >༒8448380779 Escort Service
Enjoy Night⚡Call Girls Rajokri Delhi >༒8448380779 Escort Service
 
THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
THE OBSTACLES THAT IMPEDE THE DEVELOPMENT OF BRAZIL IN THE CONTEMPORARY ERA A...
 
TDP As the Party of Hope For AP Youth Under N Chandrababu Naidu’s Leadership
TDP As the Party of Hope For AP Youth Under N Chandrababu Naidu’s LeadershipTDP As the Party of Hope For AP Youth Under N Chandrababu Naidu’s Leadership
TDP As the Party of Hope For AP Youth Under N Chandrababu Naidu’s Leadership
 
Lorenzo D'Emidio_Lavoro sullaNorth Korea .pptx
Lorenzo D'Emidio_Lavoro sullaNorth Korea .pptxLorenzo D'Emidio_Lavoro sullaNorth Korea .pptx
Lorenzo D'Emidio_Lavoro sullaNorth Korea .pptx
 
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
₹5.5k {Cash Payment} Independent Greater Noida Call Girls In [Delhi INAYA] 🔝|...
 
Kishan Reddy Report To People (2019-24).pdf
Kishan Reddy Report To People (2019-24).pdfKishan Reddy Report To People (2019-24).pdf
Kishan Reddy Report To People (2019-24).pdf
 
Nurturing Families, Empowering Lives: TDP's Vision for Family Welfare in Andh...
Nurturing Families, Empowering Lives: TDP's Vision for Family Welfare in Andh...Nurturing Families, Empowering Lives: TDP's Vision for Family Welfare in Andh...
Nurturing Families, Empowering Lives: TDP's Vision for Family Welfare in Andh...
 
China's soft power in 21st century .pptx
China's soft power in 21st century   .pptxChina's soft power in 21st century   .pptx
China's soft power in 21st century .pptx
 
2024 04 03 AZ GOP LD4 Gen Meeting Minutes FINAL.docx
2024 04 03 AZ GOP LD4 Gen Meeting Minutes FINAL.docx2024 04 03 AZ GOP LD4 Gen Meeting Minutes FINAL.docx
2024 04 03 AZ GOP LD4 Gen Meeting Minutes FINAL.docx
 
BDSM⚡Call Girls in Sector 135 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 135 Noida Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Sector 135 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 135 Noida Escorts >༒8448380779 Escort Service
 
Embed-2 (1).pdfb[k[k[[k[kkkpkdpokkdpkopko
Embed-2 (1).pdfb[k[k[[k[kkkpkdpokkdpkopkoEmbed-2 (1).pdfb[k[k[[k[kkkpkdpokkdpkopko
Embed-2 (1).pdfb[k[k[[k[kkkpkdpokkdpkopko
 
BDSM⚡Call Girls in Indirapuram Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Indirapuram Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Indirapuram Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Indirapuram Escorts >༒8448380779 Escort Service
 
Enjoy Night⚡Call Girls Iffco Chowk Gurgaon >༒8448380779 Escort Service
Enjoy Night⚡Call Girls Iffco Chowk Gurgaon >༒8448380779 Escort ServiceEnjoy Night⚡Call Girls Iffco Chowk Gurgaon >༒8448380779 Escort Service
Enjoy Night⚡Call Girls Iffco Chowk Gurgaon >༒8448380779 Escort Service
 
Enjoy Night ≽ 8448380779 ≼ Call Girls In Gurgaon Sector 46 (Gurgaon)
Enjoy Night ≽ 8448380779 ≼ Call Girls In Gurgaon Sector 46 (Gurgaon)Enjoy Night ≽ 8448380779 ≼ Call Girls In Gurgaon Sector 46 (Gurgaon)
Enjoy Night ≽ 8448380779 ≼ Call Girls In Gurgaon Sector 46 (Gurgaon)
 
Embed-4.pdf lkdiinlajeklhndklheduhuekjdh
Embed-4.pdf lkdiinlajeklhndklheduhuekjdhEmbed-4.pdf lkdiinlajeklhndklheduhuekjdh
Embed-4.pdf lkdiinlajeklhndklheduhuekjdh
 
Julius Randle's Injury Status: Surgery Not Off the Table
Julius Randle's Injury Status: Surgery Not Off the TableJulius Randle's Injury Status: Surgery Not Off the Table
Julius Randle's Injury Status: Surgery Not Off the Table
 
1971 war india pakistan bangladesh liberation.ppt
1971 war india pakistan bangladesh liberation.ppt1971 war india pakistan bangladesh liberation.ppt
1971 war india pakistan bangladesh liberation.ppt
 

Lessons From Israel In Stopping Ransomware

  • 1. THE BLOGS Andy Blumenthal Lessons From Israel In Stopping Ransomware (Source Photo: https://pixabay.com/illustrations/ransomware-cyber-crime-malware-2321110/) ADVERTISEMENT
  • 2. Israel is a small, but powerful nation that wants to stop attacks before they get to their door, and indeed, their lives depend on that. We can learn from Israel’s military doctrine of deterrence through overwhelming strength, unity, and disincentivizing the attackers to inform other security issues, such as ransomware attacks. I believe that the answer lies in a public-private security partnership financially backed by the government. Ransomware is a malicious cybercrime whereby attackers lock up the target’s computer systems until they pay a ransom, typically in hard-to-trace cyber currency, such as Bitcoin.  These attacks are on the rise, resulting in an estimated $20 billion in damages in 2021, a figure projected to reach $265 billion in ten years. Just this last year, in May and June 2021, Colonial Pipeline, a major American oil carrier, and JBS Foods, the world’s largest meat processor were attacked with ransomware attacks, jeopardizing our food and oil supply. That is, until Colonial paid $4.4 million and JBS paid $11 million to their cyber attackers. Ransomware attacks are devastating to companies and nations because they paralyze business operations and much needed outputs and services to citizens. From a corporate perspective, I completely understand the pressure to resolve the cyber-attack that holds their business operations at a costly standstill. I can only imagine the customers, suppliers, and board of directors all screaming to resolve the situation as quickly as possible. From a broader national security and critical infrastructure perspective, these attacks can be devastating to our nation when they strike our military industrial base, energy, utilities, banking, transportation, food/water, etc. Imagine, no gas, no lights, no ATM machines or credit cards, no phones, and so on. Moreover, for companies that are coming to resolve the situation at the end of the game (i.e., once attacked), they are at a distinct disadvantage. At the same time, if they try to plan all by themselves, they are out-schemed and out-gunned by cyber
  • 3. attackers that are doing this day-in and day-out. Yet, the more we reward the criminals or terrorists when they strike, the more incentive they have to keep doing it. This is a lesson that Israel learned many decades ago in suffering under an endless barrage of terror attacks, which were perpetrated not only to inflict painful injuries and deaths on the Israeli civilian population, but also to try to force the Israeli government to negotiate and free terrorist leaders and those with “blood on their hands” that were in Israel’s custody. However, because rewarded terror begets more terror, Israel instituted a policy of not negotiating with terrorists. This was a sound and strategic policy that was echoed by former U.S. Presidents Richard Nixon and Ronald Reagan, as well as British Prime Minister Margaret Thatcher. If the terrorists can’t get what their after in terms of releasing their cohorts or some other ransom perhaps like increasing their leverage in negotiations with Israel for their own Palestinian State, then that takes away, in part, the incentive for them to carry out the terror attack to begin with. Of course, in Israel’s case, the terrorists are also theologically motivated to inflict the maximum harm on Israelis because they don’t recognize Israel to begin with, they want to drive the Jews into the sea, and they see their attacks as part of some sort of warped religious war (or Jihad) whereby Islam and its adherents are shown to be supreme. Despite Israel’s policy of not negotiating with terrorists, they have at times deemed it necessary to negotiate and give in to terrorist demands in order to get what the public demanded, such in 2008 and 2011, when they gave up terrorists in Israel’s prisons in order to secure the return of the bodies of two IDF soldiers kidnapped at the Northern border, and for the return of Gilad Shalit taken prisoner near Gaza in 2006. Similarly, with ransomware, we are human and we can’t stand seeing our systems and organizations “locked up,” inoperable, and our citizens being hurt by it.
  • 4. With ransomware attacks, however, the crime is generally wholly financially- driven, and therefore, if you dry up the payments to the attackers, you deplete their motivation to ransom any systems to begin with. In other words: no ransom, no ransomware! How can we stop the payments of ransom by companies that are in a terrorist’s cyber stranglehold?  I have a notional approach that I think could be a framework for addressing this vital security issue. The two key elements are a public-private security partnership and a government financial backstop. Companies Join Public-Private Partnership First, companies voluntarily join a public-private security partnership in which they adhere to higher security standards and oversight as well as pledge not to pay ransomware. Additionally, these companies are placed on a public list and given a badge or seal of approval/logo like Brink’s Home Security or ADT to display that indicates they are “fortified,” and in this case, that they won’t pay any ransom, and are backed by the government. An example of the voluntary higher security standards is what happened after 9-11, when companies shipping goods signed up for the Customs Trade Partnership Against Terrorism (CTPAT) to facilitate the safe flow of cargo to the U.S. in a time when everyone feared weapons of mass destruction being smuggled in. ADVERTISEMENT
  • 5. ABOUT THE AUTHOR Andy Blumenthal is a business and technology leader who writes frequently about Jewish life, culture, and security. All opinions are his own. Government Backstops Any Costs Second, the government provides an incentive for companies to participate in the public-private partnership and not to pay ransomware. The incentive provided is that the companies are backstopped (insured) by the government in the event of a ransomware attack to them. This is similar to ransomware insurance, but the difference is that the cost to companies would be a fraction of what they would otherwise have to pay. The benefit to the taxpayer is that the market for ransomware dries up with companies that have pledged not to pay. As the program become universal, there is no one left for the ransomware attackers to target. In short, as long as ransomware is a lucrative endeavor with little to no risk to the cyber attackers who stealthily get away with their cryptocurrency payments then the ransomware attacks will not only continue but increase as a threat to our companies and nations. However, once we say—like Israel and other world democracies—that “we will not negotiate with terrorists”—and we back this up by a government financial guarantee then a major and growing security threat can be finally neutralized.