PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

When Security Professionals Turn to the Dark Side

By Tom Nawrocki
November 4, 2025
in Analysts Coverage, Fraud & Security
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
malware-as-a-service

Closeup of a keyboard in ultraviolet light

The indictment of three cybersecurity professionals accused of running their own ransomware operation is a frightening reminder that those entrusted with protecting digital systems often possess the same skills required to exploit them.

While few want to imagine their own cybersecurity experts acting with malicious intent, the case reinforces the importance of a zero-trust approach—one that assumes every users and system could be compromised. Effective zero trust relies as much on a company’s culture and vigilance as it does on its technology.

According to an indictment filed in Florida last month, rogue employees of a Chicago company that specializes in negotiating ransomware settlements allegedly launched their own malware attacks against at least five U.S. organizations between May and November 2023. While there’s no evidence the accused targeted their own client, they are charged with using their insider knowledge of ransomware response tactics to prey on vulnerable entities.

Can You Trust the Experts?

Organizations must be constantly alert to breaches. Cybersecurity professionals must earn and re-earn their clients’ trust—and the principle of zero trust is an important starting point.

“‘Trust but verify’ is a phrase commonly used in cybersecurity to explain the need to continuously authenticate, verify, and scrutinize every device, user, and endpoint,” said Tracy Goldberg, Directory of Fraud and Security at Javelin Strategy & Research. “Even if a system or user is trusted, their authenticity and actions must constantly be verified to prevent unauthorized network access and malicious activity.”

Healthcare Has Unique Vulnerabilities

According to an affidavit, the first attack occurred in May 2023, when a medical company in Florida was targeted with a $10 million ransom demand. The group allegedly went on to attack a Maryland pharmaceutical manufacturer and a California doctor’s office, according to CSO Online.

Healthcare organizations are frequent targets of such attacks because of the vast amounts of personal data they hold. Last year, the personal information of 100 million individuals was stolen during a ransomware attack on Change Healthcare, which resulted in a $22 million ransom payment.

“Healthcare must invest more in cybersecurity, perhaps second only to education,” said Goldberg. “Healthcare is widely known for its cybersecurity vulnerabilities, and exposure of employee and patient Personal Identifiable Information.”

That attack was attributed to the AlphV/BlackCat ransomware group, the same group named in the recent Chicago indictments, though it remains unclear whether the individuals charged were involved in that particular incident. According to Trustwave SpiderLabs, Russia-based AlphV was responsible for roughly a quarter of all ransomware attacks in 2024.

0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: Change HealthcareCybersecurityMalwareRansomwareZero Trust

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    payment cards as customer experience

    From Hygiene Factor to Hero Product: Why the Card Deserves a Second Look

    May 5, 2026
    cobrand credit card

    Co-Branded Credit Cards Still Hold Promise for Smaller Issuers

    May 4, 2026
    Dual-rail recurring billing for agentic commerce

    Fueling Agentic Commerce with Dual-Rail Recurring Billing

    May 1, 2026
    credit union p2p

    How Should Legacy Banks Compete with Chime?

    April 30, 2026
    Prepaid cards for payroll and tipping

    Tips on a Prepaid Card: A Practical Solution with Broad Industry Impacts

    April 29, 2026
    credit-push fraud

    Inside the Battle Against Credit-Push Fraud: What’s Changing

    April 28, 2026
    real-time payments fraud

    Stopping Fraud in Real-Time Payments Before It Starts

    April 27, 2026
    Navigating Global Fintech Regulations Through Strategic Regulatory Arbitrage

    PACE Act Could Open Fed Payment Rails Beyond Banks

    April 24, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2026 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result