How Do Ransomware Groups Launder Payments?
ID: d7b0d3c5-de05-5709-8d43-19c17bb9ed1e
STIX ID: report--d7b0d3c5-de05-5709-8d43-19c17bb9ed1e
Feed Name: ReliaQuest Blog
Threat Score
This blog reviews the rising ransomware threat and focuses on how ransomware operators convert ransom payments into usable funds, explaining the use of privacy coins (especially Monero), mixers/tumblers, CoinJoin transactions, and cryptocurrency chain-hopping; it cites ENISA findings that a small set of crypto addresses account for a large share of ransom flows and recommends targeting money launderers to disrupt ransomware activity.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
