Report: Ransomware groups show preference for Monero, charge more for Bitcoin ransom


Ransomware attackers prefer to receive their ransom payment in a popular privacy token, Monero (XMR), due to its ability to obfuscate sending and receiving wallets, according to a report by blockchain analytics firm, CipherTrace.

In the report titled Current Trends in Ransomware, the analytics firm highlighted the observable trends in ransomware attacks between 2020 and 2021. According to the firm, there was notable growth in “double extortion attacks” within the said time frame.

A double extortion attack occurs in a situation where the hacker not only steals his victims’ sensitive data but also encrypts it. This forces the victim to pay a ransom to access the data even as the malicious actor may still have a copy.

Premium on Bitcoin for Ransomware 

The report said most ransomware attackers receive their payment in Monero, while those who accept other digital assets like Bitcoin usually add 10% to 20% premiums.

“Higher prices for BTC are most likely seen by the ransomware actors as a premium for dealing with the increased risk in using an easily traceable cryptocurrency like BTC.”

The report added that at least 22 of the more than 50 ransomware groups accept only Monero. An example is the Everest Group, a Russian-speaking ransomware group that claimed it hacked the US government last year and is “currently trying to sell the data for $500,000 worth of XMR.”

Another Russia-based REvil ransomware group that was dismantled earlier this year also switched from receiving payments in BTC to XMR in 2020.

However, some groups still accept payments in both Monero and BTC. The DarkSide group, which hacked Colonial Pipeline in May 2021, requested ransom in BTC or XMR.

Monero is planning a hard fork.

The Monero community believes the coin’s privacy feature provides its users with utopian financial freedom; several crypto exchanges have been forced to delist these privacy coins because of their widespread use by malicious actors.

However, the de-listing is not a deterrent to the project developers who are planning a hard fork in July, which would increase its chain ring size from 11 to 16. 

This move would help increase anonymity by making it harder to reverse engineer transactions. The hard fork also intends to add view tags to output, implement fee changes, and introduce bulletproof.

Symbiosis



Source link

Related articles

Bitcoin Prepared To Bounce Once more? The Main Accumulation Development You Ought to Be Conscious Of

Bitcoin (BTC) could also be positioning for one more important upward transfer as on-chain information suggests sturdy accumulation exercise amongst long-term holders. A CryptoQuant creator, Darkfost on X, highlighted a big rise in...

investingLive Americas market information wrap: Gold/oil tumble after Iran alerts deal progress

Markets:Gold down $113 to $4878US 10-year yields up 0.6 bps to 4.06%WTI crude up down 64-cents to $62.28S&P 500 up 0.1%NZD leads, GBP lagsThe volatility did not disappear on Tuesday regardless of a...

Labcorp Holdings Inc. (LH) This fall 2025 Earnings Name Transcript

ObserveThis fall: 2026-02-17 Earnings AbstractEPS of $4.07 beats by $0.13  | Income of $3.52B (5.60% Y/Y) misses by $42.36M Labcorp Holdings Inc. (LH) This fall 2025 Earnings Name February 17, 2026 9:00 AM EST...

Pred Secures $2.5M From Accel and Coinbase Ventures to Construct Alternate-Grade Sports activities Prediction Platform

Pred, a sports activities prediction change, has raised $2.5 million in seed funding led by Accel, with participation from Coinbase Ventures (by way of BEF) and Reverie. The capital shall be used to...

3 methods to change Linux distros with out dropping all of your knowledge

Comply with ZDNET: Add us as a most popular supply on Google.ZDNET key takeawaysHopping to a special distro does not imply you need to lose knowledge.There are three choices you'll be able...
spot_img

Latest articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

WP2Social Auto Publish Powered By : XYZScripts.com