Emerging Cybersecurity Threats by Igor Opushnyev & Kostiantyn Nikolaiev

Emerging Cybersecurity Threats by Igor Opushnyev & Kostiantyn Nikolaiev

🎙 Igor Opushnyev & Kostiantyn Nikolaiev 👥 1K 📅 October 31, 2025 ⏱ 28 min 👁 51 📄 expert opinion 🧭 2026-08-16
Available in: English (current) Français

Keywords

nation-state attacksdouble extortionfake ransomLLM malwarehuman farmsresidential proxiesagentic AIautonomous fraud

Summary

This talk, presented at the 22nd Annual International Conference on Privacy, Security & Trust, covers a range of emerging cybersecurity threats. The first speaker, Igor Opushnyev, discusses nation-state cyber attacks, highlighting their strategic nature and the importance of threat intelligence and zero trust architecture. He then moves to double-extortion ransomware, explaining the two-step process of encryption and data exfiltration, and notes trends in 2025 including political influence. He also covers fake ransom attacks, where attackers bluff about having compromised systems, often using AI-generated fake evidence, and advises on detection. Next, he addresses LLM-generated malware, mentioning uncensored models like White Rabbit Neo that can generate ransomware code, and the emergence of LLM-as-a-service for criminals. He then discusses distributed human farms, which are organized groups of low-wage workers used to bypass CAPTCHAs and other security measures, and the rise of residential proxies that route traffic through legitimate user devices. The second speaker, Kostiantyn Nikolaiev, focuses on agentic AI threats. He defines agentic AI as advanced AI systems capable of autonomous action, and explains how they can be used for credential stuffing, autonomous fraud, and creating realistic dormant accounts. He emphasizes the ease of creating such agents using open-source frameworks, and the dual-use nature of the technology. The talk concludes with a call for proactive defense strategies.

214 words

Critical Evaluation

Value of the Information & Strength of the Argument

The talk provides valuable insights into current and emerging cybersecurity threats, drawing on the speakers’ professional experience. The argumentation is coherent, with each threat explained and contextualized. The speakers effectively highlight the evolution of threats, such as the shift from simple ransomware to double extortion and the use of AI. They also offer practical advice for detection and mitigation. However, the talk is largely descriptive and lacks deep technical detail or empirical evidence. The arguments are based on industry knowledge rather than rigorous research, which limits the depth of analysis.

Scientific Rigor, Source Quality, Title Accuracy

The talk demonstrates a good level of scientific rigor in terms of structure and clarity, but the sources are not explicitly cited. The speakers reference real-world examples and trends, but without specific citations. The title accurately reflects the content, and the talk is well-organized with clear sections. The speakers’ credentials add credibility, but the lack of verifiable sources reduces the overall scientific quality. The content is suitable for a professional audience, and the speakers avoid overstating their claims.

183 words

Title / Content Match

The title accurately reflects the content, which covers a range of emerging cybersecurity threats as promised.

Quality & Reliability

7/10

The talk is given by two experienced industry professionals from Mastercard, with relevant expertise in cybersecurity and fraud detection. They present a broad overview of emerging threats, referencing real-world examples and trends, but without providing detailed citations or verifiable data. The content is largely based on professional experience and industry knowledge, which lends credibility but limits scientific rigor.

Chapters

Cited Sources

Concurring Sources

  • CIC Blog — The institute's blog may contain related articles on emerging threats.

External References

Contribution & Novelties

The talk provides a comprehensive overview of emerging threats, synthesizing recent trends and offering practical insights. It highlights the convergence of AI and cybercrime, particularly the use of LLMs for malware generation and the rise of agentic AI. The discussion of human farms and residential proxies is particularly relevant, as these are less commonly discussed. The talk also emphasizes the ease with which these threats can be executed, underscoring the urgency for organizations to adapt.

Pour aller plus loin :

120 words

Radar Profile

The radar profile shows high scores in quantity and quality of information, with moderate technical depth and reliability. This indicates a talk that is informative and credible, but not highly technical or rigorously sourced.

Reliability 7/10