Hackers behind ransomware attacks have raked in about $33 million worth of Bitcoin since the start of the year, data by Ransomwhere shows. This amount can rise dramatically should Russian-speaking cybercrime syndicate REvil receive the $70 million it demanded from some 200 US companies hit by a massive ransomware attack earlier this month.
A relatively new threat, which was first identified in April 2019, the REvil (Sodinokibi) ransomware is responsible for a third of all ransomware payments this year, as its victims paid the hackers $11.3 million in Bitcoin.
This also makes REvil the second largest all-time ransomware tracked by Ramsomwhere in terms of the money collected from the victims. The Mailto/Netwalker group topped the list with $27.9 million.
Mailto/Netwalker is also the second-largest this year, having netted $5.7 million, with RagnarLocker, DarkSide, and Egregor among other notable threats.
Total tracked ransomware payments in 2021. Source: Ransomwhere.
Crowdsourcing ransomware data
Ramsomwhere is an open, crowdsourced ransomware payment tracker launched last week by Jack Cable, a security researcher who helped the U.S. Cybersecurity and Infrastructure Security Agency to secure election systems ahead of the 2020 presidential elections.
In a Twitter thread announcing the launch of the tool, Cable said that it’s impossible to know the full impact of these attacks without comprehensive public data on the total number of ransomware payments. According to him, possessing such data could also help understand “whether taking certain actions changes the picture.”
Today, I'm excited to launch Ransomwhere, the open, crowdsourced ransomware payment tracker. Check out the site and contribute data at https://t.co/4LAIU9TpdN and follow @ransomwhere_ for updates.
As the all-time amount of ransomware payments recorded by Ramsomwhere has already surpassed $60 million, this indeed may be useful information for researchers.
However, as Cable stresses, the picture won’t be full without the help from the community, including the victims of ransomware attacks. He thus urges anyone in possession of data on ransomware payment addresses to submit it to the site.
"Ransomwhere aims to fill that gap by tracking Bitcoin transactions associated with ransomware groups,” wrote Cable.
The researcher added that all submitted reports are approved manually to prevent abuse and that all data is made public, helping to identify false positives and make necessary corrections.
The volume of Bitcoin-related cyberattacks has surged almost 200% over the past eight months, since the advent of the recent crypto bull run.
According to a report by security firm Barracuda Networks, the volume of Bitcoin-related phishing impersonations and business email compromise attacks surged by as much as 192% between October 2020 and May 2021.
The analysts say that the surge in cyberattacks closely correlates with the price of Bitcoin, which increased by almost 400% during the same time...
According to a recent research by security firm Barracuda, the volume of Bitcoin-related cyber-attacks, including ransomware, have surged by almost 200% since the start of the bull run last autumn. And with so many hackers turning to cryptocurrencies for payouts, many have used this as a reason for tougher crypto regulations.
Still, as Ransomwhere explains, “due to the transparent nature of Bitcoin, it's trivial to track payments with knowledge of receipt addresses,” and-ultimately-to identify the criminals.
Daily Debrief Newsletter
Start every day with the top news stories right now, plus original features, a podcast, videos and more.
Formula 1 has renewed its partnership with exchange platform Crypto.com, extending the agreement through 2030 as both entities seek to capitalize on their shared momentum.
The renewed partnership will see Crypto.com continue to feature prominently at key Formula 1 events, including the Miami Grand Prix, where it has been the title sponsor since the race’s inception in 2022.
The deal, first inked in 2021, marked Formula 1’s foray into the crypto world at a time when digital assets were experienc...
Mo Shaikh, a co-creator of the Aptos blockchain and co-founder and CEO of the Aptos Labs firm that helps support it, announced Thursday that he's leaving the company to focus on a "new chapter."
"Today, I am stepping away from Aptos Labs to start a new chapter," Shaikh wrote on X. "One of my true passions lies in building companies from the ground up, and we have done that at Aptos Labs by building a world-class team."
"I leave Aptos Labs with the utmost confidence in the team," he continued, "a...
Building on the momentum of anticipated changes to U.S. crypto policy, Binance.US said it aims to restore its USD services in early 2025, according to a statement shared with Decrypt.
It marks the exchange's first major operational shift as regulatory pressure forced the exchange to suspend fiat trading last year.
The platform has operated under restricted banking access since June 2023, when SEC civil claims triggered a suspension of dollar deposits and withdrawals.
"While I can't provide a de...