The No More Ransom Project
nomoreransom.org
nomoreransom.org
The issue is the victims on aggregate would rather not support the viability of that business. If no one has to pay, the business dies out. Perhaps a pipe dream, but less money at least means fewer actors in the space.
In the case of superpowers and terrorists, there are usually few superpowers, and (usually) they believe each other to be smart and to have stability of the status quo in mind. In the case of individual ransomware victims, you have no such expectations.
It seems to me that no government can make a fully plausible promise that they won't yield under pressure and, in any case, terrorism is extremely ill defined.
(My answer would be, the success of their terrorism. If you are mostly unsuccessful, nobody needs to negotiate with you.)
"Affected users are advised to refrain from paying the ransom as that would by no means help them decrypt their data. This advice is particularly true for the NotPetya incident, as the attackers have no means to restore victims’ data." http://www.securityweek.com/notpetya-destructive-wiper-disgu...
My point is, the ransomware is just 'prove' that your computer is insecure. If criminals can encrypt your files, they can also steal it (i.e. upload it somewhere). So in some sense, the ransomware creators expose vulnerabilities that would have otherwise gone unnoticed.
I guess I have no idea who it targets in practice. Are there lots of individual home users who fall victim to ransomware?
Randsomware is pretty common to home users in the past, at least. Back then it was quite easy to convince someone to click on “Warning! Your computer maybe infected! Try our software” pop-up. Then if your computer gets locked up, the screen will say “call tech support!”
There was a claim against Kaspersky [1]. I don’t know if it is really true, but I personally believe that the AV industry does shady things out there, pay some blackhat to spread virus/malware, so consumers can rely on AV.
[1]: https://www.reuters.com/article/us-kaspersky-rivals/exclusiv...
Criminals are criminals.
Ransomware might have a higher bottom line, owing to the greater technical skill involved in operating such a racket, but still, in a world where 419 scams persist, it's hard for me to believe that you can damage ransomware's credibility to the point where it's no longer profitable.
More likely, such an endeavor would end up destroying more people's data than it saves.
https://www.kaspersky.com/blog/expetr-for-b2b/17343/
https://www.theregister.co.uk/2017/06/28/petya_notpetya_rans...
But I have no idea about the cost.
Additionally, ransomware encryption can be stopped at the file-system level: