

Threat actors run a successful campaign, generate enough money for their participants to retire comfortably and choose to cease operations.

Perhaps the most common reason is financial fulfillment. The exact motivations for their disappearance are often unclear, but we can make some well-educated guesses. ĭuring this time, we have seen numerous ransomware gangs come and go. Not only have we built decryption tools which have helped more than 6 million victims recover their data without paying a ransom, but we’ve also created a unique service that helps ransomware victims who paid ransoms to recover more efficiently. Over the past decade, Emsisoft has dedicated itself to the global fight against ransomware. For the reasons discussed below, we believe it is now safe to share the story without jeopardizing the operation. The work has been conducted quietly and privately so as not to alert the BlackMatter operators to the flaw. Earlier this year, Emsisoft researchers discovered a critical flaw in the BlackMatter ransomware that allowed them to help victims recover their files without paying a ransom, preventing millions of dollars falling into the hands of cybercriminals.
