Hacker News new | ask | show | jobs
by ycmjs 1526 days ago
"...larger companies probably should be paying someone to regularly scrape these criminal bot services, even buying back their own employee credentials to take those vulnerable systems off the market. Because that’s probably the simplest and cheapest incident response money can buy."

Krebs makes a very good point in the last paragraph. Way way way cheaper than paying ransoms.