Security Experts Warn of Online Extortion Epidemic

LONDON — Security experts warned today that thousands of organizations are paying cyber extortion bribes to hackers for fear that their servers will be the target of a distributed denial of service attack.

“The epidemic of cybercrime is growing,” said Alan Paller, director of research for the SANS Institute, at the Top 20 Vulnerabilities conference in London earlier today.

According to Paller, up to 7,000 organizations are currently paying online extortion demands.

“Every online gambling site is paying extortion,” Paller said. “Hackers are using DDoS attacks, using botnets to do it. Then they say, ‘Pay us $40,000, or we’ll do it again.’”

Such threats go largely unreported because companies often feel embarrassed to talk about it, Paller said, but the implications of them are huge. According to Paller, the same types of techniques used by cyber extortionists could be targeted against government organizations.

Paller’s concerns may not be unwarranted.

Earlier this year, Britain’s National Hi-Tech Crime United arrested three men allegedly connected with a Russian gang running an online protection scheme.

According to police, the gangs targeted online gambling companies and requested between $18,000 and $55,000 in protection.

Paller laid some of the blame for the recent growth of cybercrime on software developers, saying that software vulnerabilities should be the responsibility of the vendor.

“Applications breaking after patching is the operating system vendor’s fault,” Paller said, recommending that they take the SANS Institute’s top 20 security vulnerabilities to heart.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

German Court: Regulator Can't Block Entire IG Accounts, Only Posts

A German court has ruled that while a regional media regulatory agency may block specific Instagram posts that include material deemed harmful to minors, it cannot ban an entire Instagram account due to such a post.

Brazil Lays Out Preliminary Guidelines for New AV Requirements

President Luiz Inácio Lula da Silva on Wednesday signed a decree establishing guidelines for new regulations requiring adult websites to age-verify users located in Brazil.

Senate Committee Debates Section 230 Reform

The U.S. Senate Committee on Commerce, Science, and Transportation held a hearing Wednesday on potential changes to Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

Pearl Industry Network Offers Free Creator Memberships

Industry trade group Pearl Industry Network (PiN) has launched its free creator membership initiative.

Sam Bird Acquires Fanblast

Sam Bird, former co-director of global talent agency Surge, has acquired creator monetization tool Fanblast and named himself CEO.

'SheHerGirls' Launches Through Paysite.com

The braintrust behind PoleVixens has officially launched a new membership site, SheHerGirls, also through Paysite.com.

FTC Invites Public Comment on 'Click to Cancel' Rulemaking

The Federal Trade Commission (FTC) announced this week that it is seeking public comment on whether it should amend its Negative Option Rule to better address deceptive or unfair practices.

Aylo Rebuts Indiana AV Suit Claims Over VPN Access

Aylo this week asked a Marion Superior Court judge to dismiss Indiana’s lawsuit alleging that the company violated the state’s age verification law by failing to prevent access by users who employ VPNs and similar means to avoid geolocation.

'PSMTickling' Launches Through Paysite.com

PSMTickling.com has officially launched through Paysite.com.

Show More