U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
Blockchain-traced evidence shows a US government entity paid roughly $1 million to the Kairos extortion group, underscoring how even well-resourced public-sector organisations sometimes capitulate to data-leak threats.
Summary written by editorial AI · Source link below
A U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left.
The odd part: the group that took the money calls itself Kairos, but it may not be a ransomware gang at all. Krishnan found no sign that it ever locked a single
Editorial Analysis
A documented government ransom payment sets a dangerous precedent; European entities face regulatory pressure under NIS2 and DORA to build resilience rather than pay.
Review and stress-test your organisation's extortion-response playbook, ensuring it aligns with EU regulatory expectations against ransom payments.
A verified government ransom payment highlights that even large institutions lack resilience — boards should ensure their incident-response posture prevents similar outcomes.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at THN (Feedburner) in a new tab.
More from the Threat Intel Desk
- Attackers conceal phishing lures using invisible Unicode characters1d
- Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication1d
- Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner2d
- Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials2d
- Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain2d