Security News

Cybersecurity news aggregator

HIGH Attacks SC Media

Ransomware Moves up the Org Chart: Managers Are Prime Targets - Brett Stone-Gross - BH26 #2

The article details a ransomware campaign that uses phishing, specifically fake IT support lures, to initially compromise employees. Attackers are strategically targeting managers and executives due to their elevated access privileges, which facilitates lateral movement and data exfiltration prior to encryption. The research highlights that traditional security training is falling behind these evolving social engineering tactics.
Read Full Article →

Share Full episode and show notes Threat Intelligence , Ransomware , Phishing Ransomware Moves up the Org Chart: Managers Are Prime Targets – Brett Stone-Gross – BH26 #2 When a ransomware attack makes headlines, attention usually turns to the organization that was breached, the systems encrypted, data stolen, and disruption or ransom demand that followed. Less, if anything, is revealed about the employees compromised at the start of the attack, and what makes those individuals valuable targets. New Zscaler ThreatLabz research examines this early stage of a real-world ransomware attack. ThreatLabz identified victims of a campaign associated with a ransomware group known for gaining initial access, stealing large amounts of corporate data, and selectively encrypting critical systems. The findings show who those victims were and how their roles and authority co... August 6, 2026 This episode is sponsored by Full Segment Notes When a ransomware attack makes headlines, attention usually turns to the organization that was breached, the systems encrypted, data stolen, and disruption or ransom demand that followed. Less, if anything, is revealed about the employees compromised at the start of the attack, and what makes those individuals valuable targets. New Zscaler ThreatLabz research examines this early stage of a real-world ransomware attack. ThreatLabz identified victims of a campaign associated with a ransomware group known for gaining initial access, stealing large amounts of corporate data, and selectively encrypting critical systems. The findings show who those victims were and how their roles and authority could help an attacker move deeper into an organization. This is part of ongoing ransomware research by ThreatLabz. The Zscaler ThreatLabz 2026 Ransomware Report, coming in the next two months, will include additional data on ransomware victims, the latest ransomware trends, targets, and tactics, and the risks enterprises should prepare for next. This segment is sponsored by Zscaler. Visit https://securityweekly.com/zscalerbh to learn more about them! Key Moments 0:00 - Ransomware Still Targets Humans 0:45 - New Research: Who Ransomware Attackers Target 02:27 - Why Executives and Finance Teams Are Prime Targets 04:26 - The Fake IT Support Attack Technique 05:54 - How Organizations Can Detect and Prevent Attacks 07:17 - Why Security Training Is Falling Behind Attackers 09:25 - Business Email Compromise and Human Risk 10:02 - How AI Is Changing Phishing and Ransomware 12:37 - AI Gives Attackers New Capabilities 13:00 - The Departments Hackers Target Most 14:24 - Why Ransomware Remains So Profitable 15:26 - Future Ransomware Research and Trends Guest Brett Stone-Gross Sr. Director, Threat Intelligence at Zscaler Dr. Brett Stone-Gross is the Senior Director of Threat Intelligence at Zscaler. He has over 20 years of experience tracking sophisticated malware threats and leading technical research teams. Brett has authored dozens of publications and presented at top cybersecurity conferences. His work has led to the disruption of numerous large-scale criminal operations in collaboration with international law enforcement agencies. Some of these operations have included GameOver Zeus, Kelihos, Dridex, Qakbot, and SmokeLoader. Host Mike Shema https://dangerouserrors.com Show More Stay in the Know, No Smoke and Mirrors – Join Our Newsletter Get expert insights and technical breakdowns straight to your inbox. Join Now Related Segments Threat Intelligence Outpacing the Adversary with AI Threat Defense – John Hultquist – BH26 #1 Threat Intelligence Threat Intel & Security Awareness: How to Build a Proactive Cybersecurity Culture – WC #1 Threat Intelligence GPS, PCI, ARCH, OH MY! – PSW #931 Related Content Critical Infrastructure Security Salesforce’s Agentforce 360 platform approved for sensitive Defense Department data Threat Management US reportedly drafting ban on Chinese optical transceivers Threat Management Chinese telecom companies retain US network ties despite security concerns You can skip this ad in 5 seconds

Share this article