This is episode 24 of The Insider Threat podcast, for the week of October 30th, 2017.

Discussion Topic for the Week

This week’s discussion topic is the motivations of malicious insiders

- What are malicious insiders?

 - Insiders who intentionally present risk to the organization

 - Are NOT negligent insiders

 - Are not the most common type of insiders (only 6%)

 - ARE the most widely marketed

- What are the common motivators for malicious insiders?

 - Personal use

  - Getting ahead at work

  - Getting ahead with your next employer

  - Blackmailing coworkers

 - Financial Gain

  - Selling information directly to competitors or foreign governments

  - Trying to sell it on the dark web

 - Sabotage

  - Doing something to get back at either the organization as a whole or someone in particular

  - Could be for missed promotion, wrongful firing, unethical practices

- What are key characteristics of malicious insiders?

 - Working during off hours

 - Trying to get access to information outside their job role

 - Displaying signs of extreme debt

 - Displaying signs of unexplainable wealth

 - Generally talking negatively about the organization or leadership

- How can we fix it?

 - Technology like User and Entity Behavior Analytics, monitoring solutions, access controls

 - Non-technical solutions like proper termination procedures, background checks, and training for recognizing signs of malicious insiders and reporting



- Insider threat news was pretty dry this week

- A ransomware attack took place primarily against Russian and Ukrainian companies, but the command and control infrastructure seems to be offline

- I don't know about you, but I'm definitely starting to get ransomware fatigue

- The Indian government advises against using public WiFi, go figure

- The Reaper botnet has over a million infected devices and researchers have warned that it could take down the internet

- Anonymous launched FreeCalalonia campaign, targeting Spanish government sites


Our thought of the week comes from American music artist, poet, and philosopher Tom Waits. He said, "The large print giveth and the small print taketh away."




