How often do threat actors default on promises to delete data?
ID: 4b184e50-8925-5cb4-8968-f661a4f145b4
STIX ID: report--4b184e50-8925-5cb4-8968-f661a4f145b4
Feed Name: DataBreaches.Net
Threat Score
DataBreaches surveyed industry, legal, and law enforcement sources about how often ransomware actors actually delete stolen data after payment. Responses ranged from assertions that established ransomware groups often remove data to preserve their reputation, to warnings that deletion cannot be trusted because copies may remain on intermediary or public storage, leaving victims to weigh the risk of re-extortion and exposure when deciding whether to pay.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
