The Ransomware Hunting Team

Last updated

The Ransomware Hunting Team
The Ransomware Hunting Team.jpg
First United States edition
AuthorsRenee Dudley and Daniel Golden
CountryUnited States
LanguageEnglish
Subject Cybercrime,
ransomware
Genres Nonfiction,
computer security
Publisher Farrar, Straus and Giroux
Publication date
October 25, 2022
Media typeprint (hardback)
Pages368
ISBN 978-0-374603-30-4

The Ransomware Hunting Team: A Band of Misfits' Improbable Crusade to Save the World from Cybercrime is a 2022 nonfiction book on computer security by Renee Dudley and Daniel Golden. It was published in the United States in October 2022 by Farrar, Straus and Giroux, and is about a group of volunteer freelance computer experts who crack ransomware and help victims recover their data without them having to yield to extortion. Sections of this book had previously featured in a ProPublica podcast, The Extortion Economy: Exploring the Secret World of Ransomware, in December 2021. [1] [2]

Contents

Dudley is a technology journalist at ProPublica, [3] and Golden is a journalist and senior editor at the same organization. [4] Golden won the 2004 Pulitzer Prize for Beat Reporting, [5] and Dudley was a 2017 Pulitzer Prize for National Reporting finalist. [6]

The Ransomware Hunting Team audiobook published by Macmillan Audio and narrated by BD Wong won the 2023 Audie Award for Nonfiction. [7]

Synopsis

The Ransomware Hunting Team is about a small group of computer experts in the United States and Europe who devote large amounts of their time to cracking ransomware. They include Michael Gillespie, Fabian Wosar and Sarah White, all volunteers who do not ask for payment for helping victims of these cyberattacks. Authors Dudley and Golden explain how cybercriminals break into vulnerable computer systems, infect them with viruses that encrypt their data, and then demand money for decryption keys. The book highlights some of the prominent ransomware attacks, such as the 2021 Colonial Pipeline ransomware attack, and the 2017 infection of Britain's National Health Service systems. But because many ransomware attacks are not made public. there are considerably more occurrences than reported.

If ransomware has been properly written, cracking it is normally "impossible". But from time to time the hackers take shortcuts, or make mistakes, and the elite team is able to reverse-engineer the malware and construct decryption keys for the victims to recover their data without having to pay ransoms. The book discloses that the battle between the ransomware developers and the hunters is an undeclared cyberwar. It also explains why the FBI and the Department of Homeland Security in the United States are unable to fully tackle this problem. Bound by rigid structures, these organizations are reluctant to work with outsiders, and derisively refer to Gillespie and company as the "Geek Squad". But after the Colonial Pipeline incident, they have begun to work more closely with the ransomware hunters.

Reception

Kirkus Reviews called The Ransomware Hunting Team "[a]n accessible, tautly written account of cyberwarfare in real time." [8] Their review said it brings to mind Clifford Stoll's 1989 book, The Cuckoo's Egg when "computer mischief" was still new, but added that Dudley and Golden's book "is an update to that distinguished predecessor, though it also enters into the newer realms of the dark web, cryptocurrency, and high-level code-breaking." [8] A review at Publishers Weekly described the book as "an intriguing profile of volunteer tech experts who work to combat digital extortionists." [9] It stated, "Readers will put down this engrossing underdog story just long enough to back up their own files." [9]

The Economist stated in a review of The Ransomware Hunting Team that, "The ransomware business is complicated, ruthless and growing fast." [10] It said the book explains the mechanics of ransomware and how it is "spread[ing] like knotweed". [10] It added that Dudley and Golden's research has produced some "fascinating anecdotes", and focuses on not only the people involved, but also the computers they use. The reviewer concluded that the authors have produced "a good introduction" to ransomware and recommended the book to those looking for a guide to the topic. [10]

In a review of the book in The New York Times , Josephine Wolff wrote that the book has "lively portraits" of the cybercriminals and the hunters, and does a "brilliant job" of tracking the subtle banter between the two groups via embedded text in program code. [11] She said Dudley and Golden emphasize the devastating effect ransomware has on its victims, and highlights "the indifference and incompetence" of the authorities in tackling this problem. [11] But Wolff felt that a shortcoming of the book is its lack of coverage of the role "cryptocurrency exchanges, botnet operators, hosting providers and internet service providers" could play in making it more difficult for ransomware attacks to happen. [11]

Related Research Articles

<span class="mw-page-title-main">Richard Powers</span> American novelist

Richard Powers is an American novelist whose works explore the effects of modern science and technology. His novel The Echo Maker won the 2006 National Book Award for Fiction. He has also won many other awards over the course of his career, including a MacArthur Fellowship. As of 2023, Powers has published thirteen novels and has taught at the University of Illinois and Stanford University. He won the 2019 Pulitzer Prize for Fiction for The Overstory.

<span class="mw-page-title-main">Cybercrime</span> Type of crime based in computer networks

Cybercrime encompasses a wide range of criminal activities that are carried out using digital devices and/or networks. These crimes involve the use of technology to commit fraud, identity theft, data breaches, computer viruses, scams, and expanded upon in other malicious acts. Cybercriminals exploit vulnerabilities in computer systems and networks to gain unauthorized access, steal sensitive information, disrupt services, and cause financial or reputational harm to individuals, organizations, and governments.

<span class="mw-page-title-main">Henri Cole</span> American poet

Henri Cole is an American poet, who has published many collections of poetry and a memoir. His books have been translated into French, Spanish, Italian, German, and Arabic.

<span class="mw-page-title-main">Farrar, Straus and Giroux</span> American book publishing company

Farrar, Straus and Giroux (FSG) is an American book publishing company, founded in 1946 by Roger Williams Straus Jr. and John C. Farrar. FSG is known for publishing literary books, and its authors have won numerous awards, including Pulitzer Prizes, National Book Awards, and Nobel Prizes. As of 2016 the publisher is a division of Macmillan, whose parent company is the German publishing conglomerate Holtzbrinck Publishing Group.

<span class="mw-page-title-main">Roger Williams Straus Jr.</span> American publisher (1917–2004)

Roger Williams Straus Jr. was co-founder and chairman of Farrar, Straus and Giroux, a New York book publishing company, and member of the Guggenheim family.

Frederick Seidel is an American poet.

<span class="mw-page-title-main">Alice McDermott</span> American writer, novelist, essayist (born 1953)

Alice McDermott is an American writer and university professor. For her 1998 novel Charming Billy she won an American Book Award and the U.S. National Book Award for Fiction. She was shortlisted for the PEN/Faulkner award for fiction.

Ransomware is a type of cryptovirological malware that permanently blocks access to the victim's personal data unless a ransom is paid. While some simple ransomware may lock the system without damaging any files, more advanced malware uses a technique called cryptoviral extortion. It encrypts the victim's files, making them inaccessible, and demands a ransom payment to decrypt them. In a properly implemented cryptoviral extortion attack, recovering the files without the decryption key is an intractable problem, and difficult-to-trace digital currencies such as paysafecard or Bitcoin and other cryptocurrencies are used for the ransoms, making tracing and prosecuting the perpetrators difficult.

<span class="mw-page-title-main">Alex Ross (music critic)</span> American music critic (born 1968)

Alex Ross is an American music critic and author who specializes in classical music. Ross has been a staff member of The New Yorker magazine since 1996. His extensive writings include performance and record reviews, industry updates, cultural commentary, and historical narratives in the realm of classical music. He has written three well-received books: The Rest Is Noise: Listening to the Twentieth Century (2007), Listen to This (2011), and Wagnerism: Art and Politics in the Shadow of Music (2020).

<span class="mw-page-title-main">Carl Phillips</span> American writer and poet (born 1959)

Carl Phillips is an American writer and poet. He is a Professor of English at Washington University in St. Louis. In 2023, he was awarded a Pulitzer Prize for Poetry for his Then the War: And Selected Poems, 2007-2020.

<span class="mw-page-title-main">Daniel Golden</span> American journalist

Daniel L. Golden is an American journalist, working as a senior editor and reporter for ProPublica. He was previously senior editor at Conde Nast's now-defunct Portfolio magazine, and a managing editor for Bloomberg News.

<span class="mw-page-title-main">Robert Giroux</span> American book editor and publisher

Robert Giroux was an American book editor and publisher. Starting his editing career with Harcourt, Brace & Co., he was hired away to work for Roger W. Straus, Jr. at Farrar & Straus in 1955, where he became a partner and, eventually, its chairman. The firm was henceforth known as Farrar, Straus and Giroux, where he was known by his nickname, "Bob".

<span class="mw-page-title-main">Bitdefender</span> Romanian cybersecurity technology company

Bitdefender is a Romanian cybersecurity technology company headquartered in Bucharest, Romania, with offices in the United States, Europe, Australia and the Middle East.

<span class="mw-page-title-main">Eliza Griswold</span> American writer

Eliza Griswold is a Pulitzer Prize–winning American journalist and poet. Griswold is currently a contributing writer to The New Yorker and a Distinguished Writer in Residence at New York University. She is the author of Amity and Prosperity: One Family and the Fracturing of America, a 2018 New York Times Notable Book and a Times Critics’ Pick, for which she won the Pulitzer Prize for general nonfiction and the Ridenhour Book Prize in 2019. Griswold was a fellow at the New America Foundation from 2008 to 2010 and won a 2010 Rome Prize from the American Academy of Arts and Letters. She is a former Nieman Fellow and a current Berggruen Fellow at Harvard Divinity School, and has been published in The New Yorker, Harper's Magazine, and the New York Times Magazine.

Hill & Wang is an American book publishing company focused on American history, world history, and politics. It is a division of Farrar, Straus and Giroux.

<i>The Lost Books of the Odyssey</i> 2007 novel by Zachary Mason

The Lost Books of the Odyssey is a 2007 novel by Zachary Mason, republished in 2010. It is a reimagination of Homer's Odyssey.

<span class="mw-page-title-main">Gameover ZeuS</span> Peer-to-peer botnet

GameOver ZeuS (GOZ), also known as peer-to-peer (P2P) ZeuS, ZeuS3, and GoZeus, is a Trojan horse developed by Russian cybercriminal Evgeniy Bogachev. Created in 2011 as a successor to Jabber Zeus, another project of Bogachev's, the malware is notorious for its usage in bank fraud resulting in damages of approximately $100 million and being the main vehicle through which the CryptoLocker ransomware attack was conducted, resulting in millions of dollars of losses. At the peak of its activity in 2012 and 2013, between 500,000 and 1 million computers were infected with GameOver ZeuS.

<i>Half-light: Collected Poems 1965–2016</i> 2017 poetry collection by Frank Bidart

Half-light: Collected Poems 1965–2016 is a 2017 poetry collection by Frank Bidart. It was published by Farrar, Straus and Giroux on August 15, 2017. Half-light is a comprehensive book of Bidart's poetry, collecting all of his previous collections as well as a new volume, Thirst (2016).

Clop is a cybercriminal organization known for its multilevel extortion techniques and global malware distribution. It has extorted more than $500 million in ransom payments, targeting major organizations worldwide. Clop gained notoriety in 2019 and has since conducted high-profile attacks, using large-scale phishing campaigns and sophisticated malware to infiltrate networks and demand ransom, threatening to expose data if demands are not met.

BlackCat, also known as ALPHV and Noberus, is a ransomware family written in Rust. It made its first appearance in November 2021. By extension, it is also the name of the threat actor(s) who exploit it.

References

Works cited