logo

Cyber Ransomware Attacks Threaten U.S. Government

ID: 46a30113-081a-5a63-9c14-054c4ac3af9f

STIX ID: report--46a30113-081a-5a63-9c14-054c4ac3af9f

Feed Name: Cyble Blog

Threat Score
75/100

Date Published: 2025-05-20

Date Updated: 2026-07-16

...
...

This Cyble Research Lab briefing describes a February 2022 data leak in which a threat actor named 'datarobberman' posted roughly 100 Texas Republican campaign documents (including PII, IDs, tax forms, training certificates and operational/legal records) on a cybercrime forum, and it highlights Everest ransomware group claims of selling access to critical infrastructure (root access to servers/databases in the USA, Argentina, and Peru). The report warns of election-interference risks, the novel ransomware monetization of selling access rather than only leaking/storing data, and provides practical recommendations (strong passwords, audits/VAPT, user awareness, threat intelligence, patching, reducing internet exposure, and zero-trust) to mitigate impact.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.