PandaBuy pays ransom to hacker only to get extorted again

umami_wasabi@lemmy.ml to Technology@lemmy.world – 229 points –
PandaBuy pays ransom to hacker only to get extorted again
bleepingcomputer.com

LOL

23

You are viewing a single comment

Never pay ransomware. Just write the data off. Learn how to take decent backups

It's bad business to not be honest and trustworthy. If a hacker group is known to always give back the data and not strike twice, they are obviously much more likely to get paid. No one's paying someone known for ripping off. We see this in company ransomwware all the time. They are friendly, helpful in explaining the breech, and professional. If they were the opposite, they'd be broke.

It's an interesting dynamic where the ransomware groups have to be reliable and professional for their business model to work.

It was the same with Pirates, if you get a bad Rep with your extortion business you're just making your own life harder down the line

The article says that they weren't paying to recover their only copy of data, but to prevent it from being leaked:

to prevent stolen data from being leaked

Backups (or more backups) wouldn't have helped.

Not ransomware but just ransom to data exfil by a vulnerable API. But paying is still a dumb idea.

5 more...

I mean news like this is the best way to stop people paying, I hope every business that doesn't pay sends the hackers this article and says this is why

9 more...