Inside Conti: The Ransomware Gang That Ran Like a Company with Geoff White

Inside Conti: The Ransomware Gang That Ran Like a Company with Geoff White

What does the world's most prolific cybercrime operation look like from the inside? And why does it operate suspiciously like a mid-sized tech company, complete with HR headaches, salary negotiations, and a distracted boss nobody respects?

Ron Eddings sits down with investigative journalist and author, Geoff White, who has spent over 20 years covering cybercrime for the BBC, Channel 4 News, and Sky News. Geoff has read 47,000 of Conti’s 300,000 leaked internal chats, the gang that dominated the ransomware world in 2021 and 2022, pulling in hundreds of millions of dollars in ransoms. From the Moscow movie studio the gang's leader used to launder money years previously, to the Ukraine war leak that brought the whole Conti empire down, this one plays like true crime… because it is.

Geoff makes the case that defenders should think the same way: you're not buying security tools to fend off a hoodie in a basement, you're investing to outcompete a rival business. For anyone trying to integrate a better incident response plan, this episode reframes the whole conversation.

Impactful Moments 00:00 - Introduction 01:45 - The Rewind: Colonial Pipeline and the week the East Coast ran dry 03:50 - How Geoff went from tech news to cybercrime reporting 05:10 - The difference between threat groups, APTs, and crime gangs 07:25 - Inside the Conti leaks: 300,000 messages 08:55 - Meet the gang: Stern, Mango, and Target 13:20 - Stern's origin story: Zeus malware, money mules, and the 25th Floor front company 16:50 - Ransomware gangs vs. the mafia: where's the protection? 18:10 - The money: $2.5M single payouts and 400 years of wages 19:30 - The Conti member arrested on a layover in Miami 20:35 - The downfall: the Ukraine war and the leak that ended it all 23:05 - What businesses can learn from Conti: recruitment, retention, reputation 27:45 - Advice for defenders: response waves, segmentation, and negotiating down 31:05 - Ron's takeaway: belonging and the thin line between operator and criminal

Links

Connect with Geoff White on LinkedIn: https://www.linkedin.com/in/geoffwhitetech/

Get your own copy of Geoff's books (Crime Dot Com, The Lazarus Heist, Rinsed): https://geoffwhite.tech/book/

Want more information on Conti? Check out Geoff’s BBC podcast series, Cyber Hack: The Conti Files, available on BBC Sounds, Spotify, and Apple Podcasts

Check out our upcoming events: https://www.hackervalley.com/livestreams

Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com

Become a sponsor of the show: https://hackervalley.com/work-with-us/

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(438)

The AI Already Inside Your Company with Russell Spitler & Richard Penshorn

The AI Already Inside Your Company with Russell Spitler & Richard Penshorn

A year ago, the average employee held about 30 OAuth grants. Today that number has risen to 88, and it isn't slowing down. Ron sits down with Russell Spitler, co-founder and CEO of Nudge Security, and...

25 Aug 35min

Humans First: Adobe's Rule for Building AI Security Tools with John Gillis

Humans First: Adobe's Rule for Building AI Security Tools with John Gillis

Imagine how much investigation time your SOC could get back if the busywork just disappeared. Ron sits down with John Gillis, Staff Security AI Engineer at Adobe, who built an in-house AI investigatio...

19 Aug 34min

Let AI Do More Without Surrendering Your Judgment with Jen Easterly

Let AI Do More Without Surrendering Your Judgment with Jen Easterly

Fresh off the showroom floor at Black Hat 2026, Ron brings back some hot takes from the crowd. Nearly every booth he visited, including the Exaforce booth, was pushing in the same direction. Trust in ...

14 Aug 23min

Post-Quantum Cryptography: What Every Organization Needs to Know with Michael Fasulo

Post-Quantum Cryptography: What Every Organization Needs to Know with Michael Fasulo

What if the encrypted traffic flowing across the internet right now (emails, files, logins) is already being quietly collected and stored by someone waiting for the day they can finally crack it open?...

12 Aug 30min

Stop Defending the Edge: How to Rethink Your Mobile Security with Jared Shepard

Stop Defending the Edge: How to Rethink Your Mobile Security with Jared Shepard

What if the biggest risk to your organization isn't the device that gets lost, but the data that lives on it? Ron Eddings sits down with Jared Shepard, Founder and CEO of Hypori, whose path ran from h...

7 Aug 38min

What AI Agents Should Own in Your SOC, And What Happens If You Wait with Tim Leehealey

What AI Agents Should Own in Your SOC, And What Happens If You Wait with Tim Leehealey

What happens when the adversary moves at machine speed, and your SOC is still responding at human speed? Why does nearly every security team say AI should handle L1 work, while 64% of organizations st...

21 Juli 35min

We Shipped a Tool That Acts Like You. Meet Interceptor.

We Shipped a Tool That Acts Like You. Meet Interceptor.

Think about everything you could accomplish if you don’t have to be the one driving your browser. In this solo episode, Ron Eddings introduces Interceptor, Hacker Valley Media's first piece of softwar...

14 Juli 30min

Populärt inom Utbildning

historiepodden-se
det-skaver
rss-bara-en-till-om-beroende-medberoende
nu-blir-det-historia
not-fanny-anymore
harrisons-dramatiska-historia
rss-viktmedicinpodden
roda-vita-rosen
johannes-hansen-podcast
allt-du-velat-veta
i-vantan-pa-katastrofen
rikatillsammans-om-privatekonomi-rikedom-i-livet
rss-max-tant-med-max-villman
rss-ar-det-rimligt
sektledare
rss-basta-livet
sa-in-i-sjalen
rss-traningsklubben
sex-pa-riktigt-med-marika-smith
rss-foraldramotet-bring-lagercrantz