2 ms·
Except that is a terrible analogy and has everything to do with a poor security culture on the firm's part because IT is treated as a liability rather than an a
by fibers 5y ago
Except that is a terrible analogy and has everything to do with a poor security culture on the firm's part because IT is treated as a liability rather than an asset.
- prepend 5y agoI think the analogy is apt since both paying terrorists and ransomers is counterproductive. If you pay the terrorists they just do it again. If you pay the ransomers they just do it again. And the payment increases their capabilities. I think, except for rare conditions where a temporary need exists, it’s a net negative to pay. But I think the security flaws that allow random ware typically are a sign of institutional incompetence so it makes sense they would also be incompetent to pay, and pay again, and pay again. Rather than to prevent the attack or to correct the flaw that allowed the attack.