Home / Business and Politics / Last year, 311 percent more paid ransoms to hackers than in 2019. See who paid the most

Last year, 311 percent more paid ransoms to hackers than in 2019. See who paid the most

napad hakeri hakerski napadi
napad hakeri hakerski napadi / Image by: foto

Although many had never heard of ransomware attacks until a few years ago, they have recently become a topic in mainstream media. A month ago, millions of Americans felt what such an attack can do to society, as media and portals were flooded with video content of 'crazy' Americans pouring gasoline into everything they could get their hands on, including plastic containers typically used for food and even garbage bags.

The reason for such madness was a hacker attack on Colonial Pipeline, which owns the largest oil pipeline in the U.S. More and more companies worldwide are becoming targets of hacker attacks or digital extortion carried out by a type of malicious software generally referred to as ransomware, which locks infected computers and demands money for their release.

More specifically, these are Trojan programs, popularly known as Trojans, whose main and sole purpose is extortion, and the biggest problem with such attacks is that there is no help for them. They most often begin with phishing emails, and once someone opens a malicious file from such an email, the problems begin. 

However, let’s return to Colonial Pipeline, which, as a fuel supplier, was forced to halt operations amid an attack by a hacker group called DarkSide. The attack disabled the tracking of fuel distribution, and the technological network controlling the pipeline was also shut down, leading to fuel shortages at gas stations, which caused chaos with plastic bags and containers.

Although Colonial initially refused to negotiate with the attackers, they eventually relented and paid $4.4 million in bitcoins, as it is the only currency that cannot be traced. However, the FBI was able to recover part of Colonial’s ransom, as they managed to seize about $2.3 million from the hackers a month after the attack, although it has not yet been disclosed how they achieved this.

According to data from Trend Micro, a company specializing in internet security, ransomware attacks in 2020 primarily targeted the government and banking sectors. The government sector of various countries was attacked in 31,906 cases, the banking sector in 22,082 cases, manufacturing recorded 17,071 attacks, healthcare 15,701 cases, the financial sector 4,971 attack cases, education 4,578 cases, technology 4,216 cases, the food and beverage industry 3,702 cases, oil and gas 2,281 cases, and 2,002 recorded cases of attacks on the insurance sector.

The largest ransom ever paid by a company to hackers amounts to a staggering $40 million. This was paid by CNA Financial Corp., which at the end of March this year paid $40 million to regain control over its network after a ransomware virus attack. The Chicago-based company paid the hackers approximately two weeks after a large amount of data was stolen.

Ransomware attacks, especially ransom payments, rarely come to public attention, making it difficult to know what the largest ransoms ever paid are, but this company, CNA, is certainly one of the largest to have come to light. The disclosure of the payment is likely to anger lawmakers and regulators who are already dissatisfied that American companies are paying large sums to criminal hackers who have targeted everything from hospitals, pharmaceutical manufacturers, to police stations and other entities critical to public safety over the past year. In addition to lawmakers, the FBI is also dissatisfied, as it discourages organizations from paying ransoms because it encourages further attacks and does not guarantee data recovery.

According to some data, last year various companies paid more than $350 million in ransoms to hackers, which is 311 percent more than in 2019.

A few cases of ransom payments:

JBS the largest meat processing company in the world ($11 million)

Along with Colonial Pipeline, the largest recent ransomware attack occurred against JBS, which decided to pay the ransom ‘to prevent potential risk to customers’.  

University of California, San Francisco ($1.14 million)

In June 2020, UCSF (University of California, San Francisco) relented after a month-long standoff with criminal hackers, paying a reported $1.14 million in bitcoin to free its systems.

Travelex ($2.3 million)

While most of us spent New Year’s Eve 2019 celebrating, the IT department at Travelex was battling a ransomware virus that was spreading through its systems. Nearly two weeks later, the currency exchange service finally restored its internal systems, but not before paying the attackers a reported ransom of $2.3 million.

Brenntag ($4.4 million)

In May 2021, Brenntag’s North American division was compromised by hacker attacks. During the attack, approximately 150 GB of data was stolen. The group responsible for the attack, DarkSide, initially demanded a ransom of 133.65 bitcoins, which is approximately $7.5 million. At the time of this attack, DarkSide was already holding Colonial Pipeline hostage. After several days of negotiations, Brenntag and Darkside eventually reached a compromise, and the organization paid the hackers $4.4 million in bitcoins.

{embed_digitalno_izdanje}{/embed_digitalno_izdanje}