list of blackmailing/ransom-attacks, besides all those crypto-stuff


german version

over the last 2/3 years a new businessmodel emerged, mostly driven by opportunity/chance and a growing technical attack-surface:

  1. hack a corp/datacenter that looks like itÄs easy exploitable
  2. exfiltrate data
  3. demand some ransom for NOT publishing the data
  4. ???
  5. Profit!!!!1! or data-release

Thanks to certain amounts of hipstersoftware and shodan, finding a target is as easy as operating a browser

With an ever-increasing attack-surface, more vulns than ever publishedand still enough CIOs/CISOs/CTOs no yet ready to adress the problems of an external attack-surface, easy-going for the criminals.




