logo

Ransomware isn't always about the money: Government spies have objectives, too

ID: e92e3613-2a83-545b-88fa-9f77077d89fc

STIX ID: report--e92e3613-2a83-545b-88fa-9f77077d89fc

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2025-02-12

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

This feature explains how state-backed APTs from China, Russia, Iran, and North Korea are increasingly using ransomware and wiper malware both as tools for espionage and as means of financial gain or disruption, citing cases such as RomCom/Cuba, Sandworm (GRU), ChamelGang, Moonstone Sleet, and Pioneer Kitten, and describing tactics like pre-encryption data exfiltration, ransomware-as-distraction, and monetization to fund state programs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.