The Dangers of Double and Triple Extortion in Ransomware
ID: 316dc309-c21e-558c-9cb4-ac768760c855
STIX ID: report--316dc309-c21e-558c-9cb4-ac768760c855
Feed Name: Arctic Wolf
In summer 2024 a Russian ransomware group attacked a UK pathology services provider, exfiltrated data from over 300 million patient interactions and released sensitive test results when the victim refused to pay; the report explains double-extortion (encrypting data plus threatening or publishing stolen data) and triple-extortion (adding tactics like DDoS, blackmail of individuals, or targeting connected organizations), highlights impacts such as reputational damage, regulatory exposure, and further attacks, and recommends mitigations including regular backups, phishing-resistant MFA, robust vulnerability management, and 24×7 monitoring and response.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
