This Crowdsourced Ransomware Payment Tracker Shows How Much Cybercriminals Have Heisted

Ransomwhere keeps a publicly available running tally of ransoms paid out to cybercriminals in bitcoin.

Image for article titled This Crowdsourced Ransomware Payment Tracker Shows How Much Cybercriminals Have Heisted
Photo: Rob Engelaar (Getty Images)

Ransomware attacks are on the rise, but quantifying the scope of the problem can be tricky when only the most high-profile cases make headlines. Enter Ransomwhere, the crowdsourced ransomware payment tracker with a punny name that means to shine a light on these cyberattacks that have increasingly rattled governments and businesses around the world. Jack Cable, a security architect at the cybersecurity consulting firm Krebs Stamos Group, launched the site on Thursday.

Advertisement

“Today, there’s no comprehensive public data on the total number of ransomware payments,” Cable wrote on Twitter. “Without such data, we can’t know the full impact of ransomware, and whether taking certain actions changes the picture. Ransomwhere aims to fill that gap...”

Image for article titled This Crowdsourced Ransomware Payment Tracker Shows How Much Cybercriminals Have Heisted
Screenshot: Ransomwhere / Gizmodo

The way it works is Ransomwhere keeps a running tally of ransoms paid out to cybercriminals in the bitcoin cryptocurrency. This is largely made possible because of the transparent nature of bitcoin: All transactions involving the cryptocurrency are recorded on the blockchain, a decentralized database that acts as a public ledger, thus allowing anyone to track any transactions specifically associated with ransomware groups.

Ransomwhere collects this data and makes it available to the public for anyone to view or download. And because the site is crowdsourced, it also incorporates data from self-reported incidents of ransomware attacks, which anyone can submit. To make sure these reports are the real deal, each is required to include a screenshot of the ransomware payment demand, and every case is reviewed manually before being made publicly available, according to its FAQ page. If an approved report’s authenticity is later called into question, moderators can strike it from the record.

Since the U.S. dollar value of bitcoin is constantly fluctuating, Ransomwhere calculates each ransom amount based on the bitcoin exchange rate on the day that the transaction was sent. By extension, the precise amount the cybercriminals walked away with could be different depending on when they decided to sell their spoils.

So far in 2021, the Russia-linked cybercriminal gang that took credit for the Kaseya and JBS attacks, REvil, is leading the pack by a mile with more than $11 million in ransom payments, according to Ransomwhere. Coming in second with 6.2 million is Netwalker, one of the most popular ransomware-as-a-service offerings on the dark web. Though it should be noted that Netwalker has the dubious honor of racking up the most ransom payments of all time, with roughly $28 million to its name based on the site’s data.

Advertisement

REvil could soon surpass that record if its recent demands for $70 million are met. That’s how much the gang asked for on Sunday to publish a universal decryptor that would unlock all computers affected in the Kaseya hack, a supply chain attack that has crippled more than 1,000 companies worldwide and prompted a federal investigation.

They’re not the only ones getting in on the grift. The FBI received nearly 2,500 ransomware complaints last year, a roughly 20% increase compared to 2019, according to its annual Internet Crime Report. All told, the collective cost of these attacks amounted to roughly $29.1 million in damages, up from $8.9 million in 2019. Worse still, both tallies are expected to jump even further in 2021.

Advertisement

DISCUSSION

By
Nauip

Online backups can be had for as little as $6/month.

Assuming you have a business and said business has 50 computers a year’s worth of backups is $3600. This assumes no business account discounts or whatever are to be had.

TechRadar rated Bitdefender as the “Best Antivirus” for 2021 (I think it’s bloaty as hell, but whatever). Back of the napkin math says 50 systems at the online rate is $299 a year.

The average ransomware attack cost to business is doubling year-to-year and random links I clicked via a Ransomware cost 2020" search is saying $84k - $111k ransoms were the average.

The math is simple. The combined cost is way less than a ransom.
FFS people, this isn’t hard.
Get backups and get a good antivirus package. Don’t click random links in email. Get an adblocker.