
Threat Hunter Greg Linares on the modern ransomware playbook
About this episode
(Presented by TLPBLACK: High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help defenders detect, hunt, and disrupt threats faster, with seamless integration into SIEM and SOAR workflows.)
Huntress threat intelligence analyst Greg Linares shares insights on the modern ransomware ecosystem, including how crews operate like businesses and why Akira, Medusa, RansomHub, and Qilin cause so much damage. Plus, signs of overlap between ransomware and nation-state activity, what “time to ransom” really means for defenders, and why techniques like ClickFix and credential theft keep working at scale.
The conversation also covers the surge in RMM tool abuse, how “living off the land” attacks can unfold without traditional malware, and the basic defenses smaller organizations can prioritize.
Get every episode summarized
Each time Three Buddy Problem publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Three Buddy Problem

A Thousand Agents Walk Into Hugging Face
Three Buddy Problem

Inside the EncroChat law-enforcement implant, Irregular's AI sandbox failure
Three Buddy Problem

A tiny 12 KB Windows backdoor, one victim, and a dead domain
Three Buddy Problem

Inside OpenAI's Black Hat Confession
Three Buddy Problem