PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

When Security Professionals Turn to the Dark Side

By Tom Nawrocki
November 4, 2025
in Analysts Coverage, Fraud & Security
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
malware-as-a-service

Closeup of a keyboard in ultraviolet light

The indictment of three cybersecurity professionals accused of running their own ransomware operation is a frightening reminder that those entrusted with protecting digital systems often possess the same skills required to exploit them.

While few want to imagine their own cybersecurity experts acting with malicious intent, the case reinforces the importance of a zero-trust approach—one that assumes every users and system could be compromised. Effective zero trust relies as much on a company’s culture and vigilance as it does on its technology.

According to an indictment filed in Florida last month, rogue employees of a Chicago company that specializes in negotiating ransomware settlements allegedly launched their own malware attacks against at least five U.S. organizations between May and November 2023. While there’s no evidence the accused targeted their own client, they are charged with using their insider knowledge of ransomware response tactics to prey on vulnerable entities.

Can You Trust the Experts?

Organizations must be constantly alert to breaches. Cybersecurity professionals must earn and re-earn their clients’ trust—and the principle of zero trust is an important starting point.

“‘Trust but verify’ is a phrase commonly used in cybersecurity to explain the need to continuously authenticate, verify, and scrutinize every device, user, and endpoint,” said Tracy Goldberg, Directory of Fraud and Security at Javelin Strategy & Research. “Even if a system or user is trusted, their authenticity and actions must constantly be verified to prevent unauthorized network access and malicious activity.”

Healthcare Has Unique Vulnerabilities

According to an affidavit, the first attack occurred in May 2023, when a medical company in Florida was targeted with a $10 million ransom demand. The group allegedly went on to attack a Maryland pharmaceutical manufacturer and a California doctor’s office, according to CSO Online.

Healthcare organizations are frequent targets of such attacks because of the vast amounts of personal data they hold. Last year, the personal information of 100 million individuals was stolen during a ransomware attack on Change Healthcare, which resulted in a $22 million ransom payment.

“Healthcare must invest more in cybersecurity, perhaps second only to education,” said Goldberg. “Healthcare is widely known for its cybersecurity vulnerabilities, and exposure of employee and patient Personal Identifiable Information.”

That attack was attributed to the AlphV/BlackCat ransomware group, the same group named in the recent Chicago indictments, though it remains unclear whether the individuals charged were involved in that particular incident. According to Trustwave SpiderLabs, Russia-based AlphV was responsible for roughly a quarter of all ransomware attacks in 2024.

0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: Change HealthcareCybersecurityMalwareRansomwareZero Trust

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    credit card

    For Top Issuers, Credit Cards Are Just the Starting Point

    June 18, 2026

    Preparing for Quantum Day and the Risks to Modern Cryptography

    June 17, 2026
    passkeys authentication

    The Post-Password Era: Rethinking Authentication in Financial Services

    June 16, 2026
    scams

    The Future of Same Day ACH, RTP, and Virtual Cards  

    June 15, 2026
    payment api

    Open Banking Has Made Payment APIs a Burgeoning Revenue Stream

    June 12, 2026
    payment card innovation

    Serving a Segment of One: The Race to Stay Top of Wallet

    June 11, 2026
    healthcare payments

    The Healthcare Payments Industry Has a Perception Problem

    June 10, 2026
    continuous KYC

    The Future of KYC Is Layered—and Data-Driven

    June 9, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2026 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result