The imprisonment is rather a defeat than a victory for our industry if we carefully look into the details. According to Wikipedia, a Pyrrhic victory is a victory that inflicts such a devastating toll on the victor that it is tantamount to defeat.Last week, many cybersecurity media outlets announced that Blackhole exploit kit creator (aka “Paunch”) was sent to jail for seven years. His accomplices will also spend between five and eight years in a Russian prison. LinkedIn had a lot of mentions of the news with joyful comments and numerous likes. Back in 2013, Jerome Segura, security researcher at Malwarebytes, said the arrest would be “a major event in the exploit kit business, one that could trigger a chain reaction leading to more arrests and disruption.”So, sounds very promising, doesn’t it? However, if we look into the details of the story, it’s rather a defeat than a victory for our industry. Let’s have a look on five main reasons why:Nothing really changed, moreover things are getting worse Despite Malwarebytes predictions, the number of exploit kits is continuously growing, Malware-as-a-Service (MaaS) industry is currently flourishing. Hospitals regularly become victims of cryptolockers, while US Police continuously pay ransoms to cybercriminals. McAfee says that Ransomware surge 165 percent in the first quarter of 2015, meanwhile the largest banks hide cybercrime losses according to the City of London Police.The victims didn’t and probably won’t get any indemnification Taking into consideration all the complexities of international law and inter-agencies cooperation, quite probably none of the US and EU based victims will ever get a cent of compensation for the damage caused.Cybercriminals become much more careful and sophisticated Since Paunch was halted, almost no more noticeable arrests have taken place (I am speaking about professional Black Hats, not hacktivists or DDoS groups). Cybercriminals have learned the lesson and will never ever expose themselves or leave any technically identifiable traces. The modern Dark Web economy and technical capabilities allow generating cybercrime revenue with almost 100 percent anonymity.We still did not solve the fundamental problem I have already written about the problem of intertwined cybercrime and global economy, but it is worth another mention. While the US cybersecurity market is continuously increasing salaries, creating a perfect breeding ground for a cybersecurity bubble, many young talented engineers from developing countries can barely make ends meet at the end of each month. Obviously and unsurprisingly, some of them join the dark side. Until we remove artificial and bureaucratic barriers that prevent talented individuals from all continents to commit their knowledge and skills to the global cybersecurity industry, we are doomed to see the exponential growth of cybercrime.The future is questionable Taking into consideration the advanced technical skills of the prisoners and the particularities of the ex-USSR penal system, don’t be surprised if their knowledge will be called on by some powerful bodies after or during the prison term. God only knows what they may create afterwards.Therefore, instead of celebrating the imprisonment, we shall rather focus on continuous improvement of our own industry to deliver the highest value to our customers by mitigating the real risks in right priority. Otherwise, we will never slow down the cybercrime. Related content opinion 5 steps to boost your application security testing ROI Even in the era of AI hype, spending more does not necessarily means spending wiser. By Ilia Kolochenko Jan 17, 2018 6 mins Application Security Security opinion How artificial intelligence fits into cybersecurity Ask these questions to help distinguish between a promising machine learning technology and a marketing hype. By Ilia Kolochenko Jul 31, 2017 6 mins Machine Learning Security analysis Newly elected French president raises questions in trying to dupe hackers Emerging trend of cyber deception, revealed by Emmanuel Macron, may be a slippery slope. By Ilia Kolochenko May 11, 2017 4 mins Advanced Persistent Threats Government Technology Industry analysis How CISOs can overcome cybersecurity pollution How to assess a cybersecurity vendor in simple, unbiased and efficient manner? By Ilia Kolochenko Apr 03, 2017 3 mins Technology Industry IT Strategy Analytics Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe