I've grudgingly come around to the notion that there is only one way out of the ransomware problem: Make paying a ransom illegal. This is not very different from laws that make it illegal for US companies to pay bribes to foreign officials.

I really don't see any other way out of this mess. Yes, some victims will unfortunately ignore any laws that say they can't pay, but enforcement probably will not be hard.

What will be difficult are the situations where peoples' lives are at stake in ransomware incidents This sounds callous, but we can't afford to take the short view here anymore, and our other alternatives aren't great either.

I'm quite certain this is an unpopular view, but we have already seen the cost of doing nothing. At least in the interests of congruity for our financial sanctions vs Russia, we should probably make this change sooner rather than later.

@briankrebs I think outlawing cryptocurrency would have a better chance of being effective.

There are other ways to pass on currency but seemingly none as popular for cybercrime.

@beeoproblem Haha! I wish I shared your optimism. But of the two options, passing a law is way easier, IMHO.
@briankrebs I suppose. The window for that kinda closed ??? years ago now at this point.