INSIDE CNA's $40M BITCOIN RANSOM | The Hack That Changed Cybersecurity

49:55
 
Share
 

Manage episode 500634762 series 3679519
Content provided by Jeremy Ladner. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Jeremy Ladner or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

The CISO Signal | INSIDE CNA's $40M BITCOIN RANSOM | The Hack That Changed Cybersecurity - EP 4

In this episode of The CISO Signal, we go deep inside the cyberattack that shook the financial world.

Join us as we unravel the haunting details of the 2021 ransomware attack on CNA Financial, which resulted in a record-breaking $40 million ransom payment in Bitcoin.

This wasn't just another breach. This was a black swan event cloaked in silence, executed by a mysterious threat actor known as Phoenix. They slid past defenses, encrypted over 15,000 devices, and vanished with a payday big enough to fund a small nation-state.

How did one of the largest U.S. insurers, an industry built on managing risk become the ultimate risk?

🧠 GUEST CISO CO-HOST: Matan Eli Matalon

We’re joined by Matan Eli Matalon, CISO of OP Innovate. With a battlefield-hardened perspective from years in offensive and defensive cybersecurity, Matan brings a rare blend of red team psychology and blue team pragmatism to decode the dark mechanics behind this quiet catastrophe.

From ransomware tactics and insurance industry blind spots to negotiating with digital extortionists, Matan provides unparalleled insights.

📌 In This Episode:

ATTACK ANATOMY: How the CNA ransomware attackers gained access and detonated their payload.

ROOT CAUSE: The critical role of stolen credentials, Active Directory, and legacy systems.

THE RANSOM DECISION: Why a $40M ransom was paid and what it signals for future attacks.

THE AFTERMATH: The eerie silence that followed and the legal/PR playbook that unfolded.

KEY TAKEAWAYS: What security leaders can learn from CNA’s nightmare to prevent the next one.

🔐 FOR CISOs, BY CISOs.
The CISO Signal is a cinematic, story-driven podcast for security leaders, SOC professionals, and infosec veterans. Each week, we dissect high-stakes breaches with the insight of top CISOs and the pace of a true crime thriller.

SUBSCRIBE NOW! for weekly episodes that go beyond the headlines and deep into the shadows of today’s cyber underworld.

👍 LIKE, COMMENT, and SHARE this episode with your security team.
🌐 Visit thecisosignal.transistor.fm for full episodes, bios, and more.

#CNAFinancial #RansomwareAttack #Cybersecurity #CISOPodcast #TrueCybercrime #Infosec #Ransomware #CyberInsurance #SecurityLeadership #BreachAnalysis #IncidentResponse #SOC #CyberRisk #CIO #CTO #Hacking #DigitalExtortion #Cyberthreats #CybersecurityNews #Datasecurity #MatanMatalon

  continue reading

4 episodes

Artwork
iconShare
 
Manage episode 500634762 series 3679519
Content provided by Jeremy Ladner. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Jeremy Ladner or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

The CISO Signal | INSIDE CNA's $40M BITCOIN RANSOM | The Hack That Changed Cybersecurity - EP 4

In this episode of The CISO Signal, we go deep inside the cyberattack that shook the financial world.

Join us as we unravel the haunting details of the 2021 ransomware attack on CNA Financial, which resulted in a record-breaking $40 million ransom payment in Bitcoin.

This wasn't just another breach. This was a black swan event cloaked in silence, executed by a mysterious threat actor known as Phoenix. They slid past defenses, encrypted over 15,000 devices, and vanished with a payday big enough to fund a small nation-state.

How did one of the largest U.S. insurers, an industry built on managing risk become the ultimate risk?

🧠 GUEST CISO CO-HOST: Matan Eli Matalon

We’re joined by Matan Eli Matalon, CISO of OP Innovate. With a battlefield-hardened perspective from years in offensive and defensive cybersecurity, Matan brings a rare blend of red team psychology and blue team pragmatism to decode the dark mechanics behind this quiet catastrophe.

From ransomware tactics and insurance industry blind spots to negotiating with digital extortionists, Matan provides unparalleled insights.

📌 In This Episode:

ATTACK ANATOMY: How the CNA ransomware attackers gained access and detonated their payload.

ROOT CAUSE: The critical role of stolen credentials, Active Directory, and legacy systems.

THE RANSOM DECISION: Why a $40M ransom was paid and what it signals for future attacks.

THE AFTERMATH: The eerie silence that followed and the legal/PR playbook that unfolded.

KEY TAKEAWAYS: What security leaders can learn from CNA’s nightmare to prevent the next one.

🔐 FOR CISOs, BY CISOs.
The CISO Signal is a cinematic, story-driven podcast for security leaders, SOC professionals, and infosec veterans. Each week, we dissect high-stakes breaches with the insight of top CISOs and the pace of a true crime thriller.

SUBSCRIBE NOW! for weekly episodes that go beyond the headlines and deep into the shadows of today’s cyber underworld.

👍 LIKE, COMMENT, and SHARE this episode with your security team.
🌐 Visit thecisosignal.transistor.fm for full episodes, bios, and more.

#CNAFinancial #RansomwareAttack #Cybersecurity #CISOPodcast #TrueCybercrime #Infosec #Ransomware #CyberInsurance #SecurityLeadership #BreachAnalysis #IncidentResponse #SOC #CyberRisk #CIO #CTO #Hacking #DigitalExtortion #Cyberthreats #CybersecurityNews #Datasecurity #MatanMatalon

  continue reading

4 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play