U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
Blockchain-traced evidence shows a US government entity paid roughly $1 million to the Kairos extortion group, underscoring how even well-resourced public-sector organisations sometimes capitulate to data-leak threats.
Summary written by editorial AI · Source link below
A U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left.
The odd part: the group that took the money calls itself Kairos, but it may not be a ransomware gang at all. Krishnan found no sign that it ever locked a single
Editorial Analysis
A documented government ransom payment sets a dangerous precedent; European entities face regulatory pressure under NIS2 and DORA to build resilience rather than pay.
Review and stress-test your organisation's extortion-response playbook, ensuring it aligns with EU regulatory expectations against ransom payments.
A verified government ransom payment highlights that even large institutions lack resilience — boards should ensure their incident-response posture prevents similar outcomes.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at THN (Feedburner) in a new tab.
More from the Threat Intel Desk
- Attackers Combo Up Evasion Tactics for BEC Phishing20 Jul
- New HollowGraph malware uses Microsoft Graph for stealthy C2 comms20 Jul
- Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign20 Jul
- Hackers were inside South Korea's diplomat training system for 9 months20 Jul
- Romania races to restore land registry after cyberattack disrupts property market20 Jul