A US court sentenced Angelo Martino, a former ransomware negotiator, to 70 months in prison for colluding with the BlackCat ransomware gang to extort $75.3 million from five of his employer's clients.
Martino exploited his insider position to feed confidential information to ransomware co-conspirators, enabling attacks on five US-based victims. His role as a negotiator gave him access to sensitive data about his employer's clients, which he leveraged to facilitate extortion schemes.
The case highlights the risks of insider threats in cybersecurity operations. Ransomware negotiators typically handle negotiations between victims and attackers, making them valuable targets for criminal recruitment.
BlackCat, also known as ALPHV, has been one of the most active ransomware-as-a-service operations, targeting critical infrastructure and enterprises globally. The gang's involvement with Martino demonstrates how criminal networks cultivate internal assets to amplify attack effectiveness.
The sentencing reflects growing law enforcement action against ransomware actors and their collaborators. Federal prosecutors have increasingly pursued insider threat cases as a strategy to disrupt ransomware operations from within.
Pokémon Center notified customers in the UK and Germany of a data breach affecting personal and order information. The breach occurred through third-party logistics provider CEVA Logistics, which was compromised by hackers.
Australia's major supermarket chains Coles and Woolworths have confirmed testing facial recognition technology in their stores, sparking privacy concerns from advocates who warn the systems could normalize mass surveillance.
Breaches at shipping companies handling hardware wallet deliveries have compromised customer personal data, increasing risk of targeted physical theft and attacks against cryptocurrency owners.
General Electric and Philips are investigating claims that the Clop ransomware gang breached their systems and stole data. The incidents mark the latest targets of the notorious cybercriminal group.