Uploaded August 2025 | Updated September 2026, 45 minutes ago
Eireann Leverett (Killara Cyber, GB)
Eireann Leverett is the CTO of Killara Cyber, and a long time to collaborater to FIRST. He has risen through the roles of penetration tester, incident responder, researcher, and risk analyst to his current role. He has written many articles and one book, and has a deep interest in critical infrastructure, technology and risk, and catastrophe economics. He's like the little kid on this panel of international experts, and excited to be at the table!
--
How much ransomware is out there, and what is the cost to companies?
Economic modelling of cyber crime is not often discussed at FIRST, but perhaps it should be. It impacts everything, from budgets, team numbers, to response strategies, to risk management. If we can accurately model cyber crime costs, we can unify responses across countries, or collaborate more effectively. It also helps with scaling the maturity of teams within FIRST. This presentation is about constructing, using, releasing, and validating an open source ransomware economics model. It is also about the challenges, the data, and the quantification tasks required to do so. Partnering with financial institutions isn't easy, but it does help us get our ideas of how to respond to cyber crime across.
Are you a regulator, or a cyber insurer? Are you an incident responder or data scientist who is model curious, or a willing code contributer? Help us make useful models, and use them to help solve the ransomware crisis.
Eireann Leverett (Killara Cyber, GB)
Eireann Leverett is the CTO of Killara Cyber, and a long time to collaborater to FIRST. He has risen through the roles of penetration tester, incident responder, researcher, and risk analyst to his current role. He has written many articles and one book, and has a deep interest in critical infrastructure, technology and risk, and catastrophe economics. He's like the little kid on this panel of international experts, and excited to be at the table!
--
How much ransomware is out there, and what is the cost to companies?
Economic modelling of cyber crime is not often discussed at FIRST, but perhaps it should be. It impacts everything, from budgets, team numbers, to response strategies, to risk management. If we can accurately model cyber crime costs, we can unify responses across countries, or collaborate more effectively. It also helps with scaling the maturity of teams within FIRST. This presentation is about constructing, using, releasing, and validating an open source ransomware economics model. It is also about the challenges, the data, and the quantification tasks required to do so. Partnering with financial institutions isn't easy, but it does help us get our ideas of how to respond to cyber crime across.
Are you a regulator, or a cyber insurer? Are you an incident responder or data scientist who is model curious, or a willing code contributer? Help us make useful models, and use them to help solve the ransomware crisis.










