PodParley PodParley
Surviving a Ransomware Attack

EPISODE · Jan 14, 2026 · 47 MIN

Surviving a Ransomware Attack

from Easy Prey · host Easy Prey

A ransomware attack doesn't always announce itself with flashing warnings and locked screens. Sometimes it starts with a quiet system outage, a few unavailable servers, and a sinking realization days later that the threat actors were already inside. This conversation pulls back the curtain on what really happens when an organization believes it's dealing with routine failures only to discover it's facing a full-scale cyber extortion event. My guest today is Zachary Lewis, CIO and CISO for a Midwest university, a 40 Under 40 Business Leader, and a former Nonprofit CISO of the Year. Zachary shares the inside story of a LockBit ransomware attack that unfolded while his team was still building foundational security controls, forcing real-time decisions about recovery, disclosure, negotiations, and whether paying a ransom was even an option. We talk about the shame that keeps many cyber incidents hidden, the emotional weight leaders carry during these moments, and the practical realities that don't show up in tabletop exercises from buying bitcoin to restoring systems when password managers are encrypted. It's an honest, grounded discussion about resilience, preparedness, and why sharing these stories openly may be one of the most important defenses organizations have. Show Notes: [04:05] Zachary Lewis explains why the absence of an immediate ransom note delayed suspicion of an attack. [06:00] The first technical indicators suggest something more serious is unfolding. [07:45] Discovering encrypted hypervisors and realizing recovery won't be straightforward. [09:30] Zachary outlines when data exfiltration became a real concern. [11:05] Receiving the LockBit ransomware note confirms the organization has been compromised. [12:55] The 4:30 a.m. phone call pushes leadership into full crisis mode. [14:40] Zachary reflects on managing fear, responsibility, and decision fatigue mid-incident. [16:20] Executive expectations collide with technical realities during the breach. [18:05] Why "doing most things right" still doesn't guarantee protection. [19:55] Cyber insurance begins shaping early response decisions. [21:35] Bringing in incident response teams and legal counsel under tight timelines. [23:20] Zachary describes working with the FBI and understanding jurisdictional limits. [25:10] What law enforcement can and cannot realistically provide during ransomware events. [26:50] Opening communication channels with the threat actors. [28:35] The psychological pressure behind ransomware negotiations. [30:10] Attacker-imposed timelines force rapid, high-stakes decisions. [31:55] Zachary walks through the practical challenges of acquiring cryptocurrency. [33:40] Why encrypted password managers created unexpected recovery barriers. [35:15] Determining which systems could be restored first—and which could not. [37:00] Lessons learned about backup integrity and offline recovery. [38:45] The importance of clear internal communication during uncertainty. [40:25] Balancing transparency with legal and reputational concerns. [42:10] How staff reactions differed from executive responses. [43:55] Zachary discusses the stigma that keeps many ransomware incidents quiet. [45:40] Why sharing breach stories can strengthen collective defenses. [47:20] MFA gaps and configuration issues exposed by the attack. [49:05] Why tabletop exercises fall short of real-world incidents. [50:50] Long-term security changes made after recovery. [52:30] Zachary offers advice for CISOs facing their first major incident. [54:10] What preparedness really means beyond compliance checklists. [56:00] Why resilience and recovery deserve equal priority. [58:30] Final reflections on leadership, accountability, and learning in public. Thanks for joining us on Easy Prey. Be sure to subscribe to our podcast on iTunes and leave a nice review.  Links and Resources: Podcast Web Page Facebook Page whatismyipaddress.com Easy Prey on Instagram Easy Prey on Twitter Easy Prey on LinkedIn Easy Prey on YouTube Easy Prey on Pinterest Zachary Lewis - The Homesteading CISO Zach Lewis - LinkedIn

NOW PLAYING

Surviving a Ransomware Attack

0:00 47:39

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Français avec Pierre Pierre - Français avec Pierre Learn French listening to French podcasts made by French teacher Pierre. You can often have the podcast transcripts in the BLOG http://francaisavecpierre.com . Whenever there is a transcript available, I will put the blog post URL in the podcast episode description, please check it out. You can learn and improve your French listening to the podcasts with lots of interesting topics, French lessons and a lot more. Learn French the fun and easy way!Aprender francés es muy fácil con los podcasts en francés de Pierre. Muchos de ellos vienen con la trasncripción, así que busca la url del post del blog http://francaisavecpierre.com en la descripción del podcast cuando esté disponible. Aprende y mejora tu francés con estas clases de francés de la mano de Pierre, profesor de francés en las Escuelas Oficiales de Idiomas de Madrid.Apprendre le français c’est facile avec Pierre. Ecoute ces podcasts en français et regarde la transcription quand c’est disponible (je m TomCattt Thomas Patton From the beginning music has prowled with accordion lessons at a young age, followed by sax, blues harp and more recently piano, vocals, song writing and recording. Thomas Patton (AKA TomCattt) credits his mother for his stage name "TomCattt” as she was big on nick names for those she held close to her heart. TomCattt's music is best described as easy listening and sometimes retro, yet with a contemporary mix and feel. Accompanied by the creative tracks of a number of gifted musicians, his first album Hiiyaaaaaaaaaaa inspires imagination and finds a way to impress with a unique vocal sound, compelling harmony and gripping melody. The lyrical content is in fact a living reflection of this artists emotional journey that followed leaving love, finding a new love only to lose love once again. Hiiyaaaaaaaaaaa was released on June 1st, 2013 and all are invited to Soundcloud, Bandcamp, ReverbNation and Cdbaby where "A Question" is free download and to enjoy TomCattt's website tomcattt.com. Thriving Mom Tribe | Practical Health Solutions for Moms Lindsay Rattay, Nutritional Therapy Practitioner The Go-To Podcast for all Moms who want to have a Thriving home. Do you struggle to find the balance between holistic health and living in the world?Are you tired of trying every diet yourself and still not feeling good?Do you find yourself researching for hours how to find the best remedy for your child’s sickness but end up feeling defeated?You want to be metabolically healthy but don’t know where to start?Do you wish you could feel confident in how you feed your family during the week knowing that you have to eat out because life is busy?You just enjoy going to a restaurant and don’t want to feel guilty about it?Do you want a cookie and a healthy salad?I am Lindsay Rattay, I am so excited that you are here on the Thriving Mom Tribe Podcast. I remember being the mom who researched everything from nutrition to exercise. To feeling tired and depressed. Trying to find the balance of wanting more holistic options for my family while still raising busy kids. But I discovered easy AI Daily News Podcast Really Easy AI AI Daily News: Your premier source for cutting-edge artificial intelligence updates! Dive into the world of machine learning, deep learning, and data science with our daily tech briefings. From neural networks to natural language processing, we cover groundbreaking AI research, innovative applications, and industry trends. Explore the latest in computer vision, robotics, autonomous systems, and the Internet of Things. Stay informed on AI ethics, machine learning algorithms, and the transformative impact of AI on business, healthcare, and society. https://www.youtube.com/@AINewsFresh
URL copied to clipboard!