Ransomware Groups

threat-actor

Last mentioned: Mar 19, 2026

Timeline

  1. Google Intelligence Report

    Google issues a formal warning regarding the transition to exfiltration-only extortion models.

  2. Profit Compression

    Ransomware groups report lower success rates in collecting payments for decryption keys.

  3. Backup Maturity

    Widespread adoption of immutable backups reduces the leverage of file encryption.

Stories mentioning Ransomware Groups 1

threat-intel Bearish

Google Reports Ransomware Pivot to Data Theft as Extortion Profits Wane

Google's latest threat intelligence reveals a strategic shift among ransomware operators, who are increasingly abandoning file encryption in favor of pure data exfiltration. This transition, driven by diminishing returns from traditional ransom demands, forces a critical reassessment of corporate defense strategies focused on data privacy over mere system recovery.

2 sources