Send us Fan Mail
In this episode of The Human Code, host Don sits down with former FBI counterintelligence operative and cybersecurity expert Eric O'Neill. They dive deep into the rapidly shifting landscape of modern espionage, explaining how traditional, old-school tradecraft has transitioned into high-stakes digital warfare. Eric reveals how cybercriminals now function exactly like corporate entities and intelligence spies, leveraging cutting-edge AI to orchestrate devastating extortion schemes and bypass sophisticated cloud backups.
From shocking $25 million deepfake Zoom scams to internal corporate AI mishaps, this conversation highlights why the human element remains the biggest vulnerability in security systems today. Tune in to discover the fundamental steps businesses must take to secure their data repositories and learn Eric's signature "PAID" methodology to protect yourself and your organization before an attack strikes.-----
Table of Contents
00:00 – Introduction to Cybercrime and Global Economics
The episode opens with an overview of how AI handles the heavy lifting for modern hackers and how dark web cybercrime has ballooned into a $12 trillion annual industry, making it the third-largest economy on Earth.
00:51 – Meet Eric O'Neill: From Psychology to Catching Spies
Host Don introduces former FBI counterintelligence operative Eric O'Neill, who discusses his background in psychology and how his government training in catching physical spies translates to hunting digital threat actors today.
03:06 – Spies vs. Cybercriminals: The Evolution of Tradecraft
Eric explains how old-school espionage tactics—like cultivating targets at local bars—have evolved into 10-minute spear-phishing campaigns. He details how the only difference between a state spy and a cybercriminal is the ultimate objective: stealing data quietly versus destroying infrastructure for an extortion payout.
08:52 – The Death of Ransomware & the New "Mafia" Shakedown
A discussion on why traditional ransomware encryption is failing due to cloud backups, forcing syndicates to pivot to data-theft extortion and leveraging stolen corporate insurance policies to force multi-million dollar payouts.
12:26 – State-Sponsored Syndicates and AI Defense
Insights into how top-tier hackers operate safely from jurisdictions without US extradition, often moonlighting for foreign intelligence units. Eric outlines the critical need to deploy offensive, environment-monitoring AI to fight back against malicious AI threats.
16:51 – Foundational Steps for Business Cybersecurity
Eric breaks down the immediate actions small and mid-sized businesses must take, detailing the dangers of relying solely on baseline security software, the necessity of data compartmentalization, and the purging of corporate "ghost accounts".
18:51 – Eradicating Passwords for Multi-Factor Authentication
A passionate case for why traditional passwords are completely useless and an exploration of why biometric ID and smartphone authenticator apps provide vastly superior baseline protection.
20:30 – Case Studies: The $25M Deepfake Zoom Scam & Microsoft Copilot Mishaps
An analysis of real-world security breaches, highlighting a beach city vendor intercept scam, a $25 million wire fraud operation executed via a deepfake Zoom conference in Hong Kong, and an unmanaged AI rollout that exposed confidential corporate layoff lists.
28:08 – The P.A.I.D. Methodology
Eric shares his core multi-step framework derived from FBI academy training—Prepare, Assess, Investigate, and Decide—explaining how individuals and executives can apply it to disrupt social engineering and psychological manipulation.
Sponsored by FINdustries
Hosted by Don Finley