Tag

#extortion

28 stories taggedextortion.

Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Ransomware

Ransomware Group The Gentlemen Claims Attack on German Secure-File Firm FTAPI Software

A criminal gang that has posted dozens of claimed victims in recent months has listed FTAPI Software on its dark-web extortion site. The Munich company serves hospitals, insurers and public agencies across Europe. Nothing has been confirmed.

3 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Ransomware

Ransomware Group The Gentlemen Claims Attack on Leeds Glass Firm Crystal Glass

A family-run glazing company in West Yorkshire has been listed on a dark-web extortion page by The Gentlemen ransomware group. The firm has not confirmed any incident, and the claim is unverified.

3 min read
A government database interface with law enforcement query fields displayed, surrounded by security breach notification alerts and credential verification failu
Breaches

ShinyHunters Claims Theft of 200,000+ Florida Driver Records From State DMV System

The extortion crew says it abused a password-reset flaw in Florida's law-enforcement lookup tool, DAVID, and posted Jeffrey Epstein's record as proof.

4 min read
A creator's smartphone showing a fake copyright strike notification, a dialogue demanding ransom payment, with Meta's lengthy appeals process timeline displayed
Threat Intelligence

Instagram Creators Are Paying Ransoms to Scammers Filing Fake Copyright Claims

Fraudsters are abusing Instagram's copyright reporting system to shake down creators for hundreds of dollars, knowing Meta's slow appeals process gives victims little choice.

4 min read
Berlin's city skyline at dusk with administrative government buildings visible in silhouette, red warning lights or alert indicators digitally suggested across
Breaches

Berlin Refuses Ransom After Hackers Breach City's Administrative Network

Berlin's state government says it will not pay the criminals behind an August intrusion, as forensic work uncovers fresh data theft from the city's transport and environment department.

3 min read
A dark web marketplace interface with leaked data packages displayed, showing file sizes and customer record counts, with a workwear brand's data dump highlight
Breaches

ShinyHunters dumps 12.9 million Carhartt customer records after ransom refusal

The extortion crew says it grabbed 50GB from the workwear brand's Databricks cloud analytics platform. Carhartt walked away from a $3.3 million demand, and the data is now public.

4 min read
A phishing email displayed on a computer screen claiming to offer ransomware file deletion services, with a demand for $60,000 visible, alongside legitimate ran
Ransomware

The Ransomware Scavengers: 'Ransom Busters' Emails Victims Demanding Up to $60,000

A new outfit is contacting companies already hit by ransomware and offering, for a fee, to wipe their stolen files from the attackers' servers.

4 min read
A dimly lit screen showing fake ransomware recovery interface overlaid with banking and money transfer forms, representing the dual scam of posing as a rescuer
Ransomware

Fake 'Ransom Busters' Service Is Actually a Ransomware Insider Running a Side Scam

A criminal pretending to rescue hack victims is really a ransomware affiliate trying to pocket ransom money before his own gang gets it.

4 min read
A dark desktop workspace with multiple monitors displaying fragmented data streams and breach notifications, a phone sitting nearby suggesting communications in
Breaches

ShinyHunters Claims 1.6 Million Records Stolen from RingCentral

The extortion group published 280 gigabytes of alleged RingCentral data after the company refused to pay. Names, addresses, phone numbers and email addresses are now circulating freely.

3 min read
A corporate office hallway with security personnel and law enforcement personnel walking through, file boxes being carried out, representing the aftermath of th
Policy & Regulation

Contractor Jailed Two Years After $2.5M Extortion Attempt Against Brightly Software

Cameron Curry stole payroll data on his way out the door, then threatened to report his ex-employer to the SEC unless it paid up.

4 min read
A telephone headset positioned next to a computer screen displaying cloud account access logs, representing the vishing attacks that preceded data theft from ma
Threat Intelligence

Hedge Fund Vishing Attacks Traced to UNC6671, the Group Behind the BlackFile Brand

Google's threat researchers say one core crew is running help-desk phone scams that have hit Point72, Citadel, Two Sigma and Millennium, then stealing data straight from their cloud accounts.

4 min read
A laptop displaying a Snowflake cloud interface with financial transaction notifications and cryptocurrency wallet addresses visible on adjacent windows, police
Cloud Security

Canadian hacker admits to Snowflake data thefts that hit 165 companies and 100 million people

Connor Moucka pleaded guilty to stealing terabytes from Snowflake customer accounts that had no second login step, extorting $2.5 million in bitcoin from victims including AT&T and Ticketmaster.

4 min read
Corporate servers being secured with evidence markers after a data breach investigation, with forensic analysis equipment visible and breach notification docume
Breaches

Analog Devices Discloses Data Breach After Hackers Stole Files in June Attack

The Massachusetts chip-maker told federal regulators that unauthorised intruders accessed its systems on 23 June and took files. A separate extortion group now claims to hold 570,000 records from the company.

4 min read
A dark web forum page showing a company name listed under a ransomware group's claims section, with alleged stolen files displayed as proof of compromise
Ransomware

Ransomware Group Spacebears Claims Attack on StellarRAD Systems

A criminal group has listed the US telecoms-software firm on its dark-web pressure site, alleging stolen employee data and financial records. The company has not confirmed any incident.

3 min read
Corporate network diagram on monitor showing third-party supplier access point leading to internal systems like Jira, GitHub and Azure, with threat actor latera
Breaches

ShinyHunters claims Ernst & Young breach, points to supply-chain attack

The extortion crew says stolen credentials from a third-party supplier gave them access to EY's Jira, GitHub and Azure. The accounting giant has not confirmed the group's role.

3 min read
© 2026 Threat Vectr