Charts
DataOn-chain
VIP
Market Cap
API
Rankings
CoinOSNew
CoinClaw🦞
Language
  • 简体中文
  • 繁体中文
  • English
Leader in global market data applications, committed to providing valuable information more efficiently.

Features

  • Real-time Data
  • Special Features
  • AI Grid

Services

  • News
  • Open Data(API)
  • Institutional Services

Downloads

  • Desktop
  • Android
  • iOS

Contact Us

  • Chat Room
  • Business Email
  • Official Email
  • Official Verification

Join Community

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|Legacy
BTCBTC
💲69357.15
+
2.87%
ETHETH
💲2134.38
+
3.93%
SOLSOL
💲81.21
+
2.18%
USDCUSDC
💲0.9998
-
0.02%
XAUXAU
💲4661.15
+
0.34%
XRPXRP
💲1.33
+
2.31%

TRM Labs: Ransomware organization Embargo transfers $34 million in cryptocurrency since April

PANews
PANews|Aug 10, 2025 23:40
According to Cointelegraph, blockchain intelligence firm TRM Labs stated that a ransomware organization called Embargo has transferred over $34 million in ransom related cryptocurrencies since April. Embargo currently has approximately $18.8 million in cryptocurrency stored in non affiliated wallets, and experts believe that this strategy may be aimed at delaying detection or exploiting better money laundering conditions in the future. Embargo operates under the ransomware as a service (RaaS) model, primarily targeting industries with high downtime costs, including healthcare, business services, and manufacturing, and tends to attack victims within the United States, possibly due to their stronger payment capabilities. TRM's investigation suggests that Embargo may be a renamed version of the notorious BlackCat (ALPHV) organization, which disappeared earlier this year due to suspected withdrawal from a scam. These two organizations overlap technically, both using the Rust programming language, operating similar data breach websites, and demonstrating on chain connectivity through shared wallet infrastructure. Although Embargo is not as aggressive as LockBit or Cl0p, it employs a dual ransomware strategy: encrypting the system and threatening victims to leak sensitive data if they do not make payment. In some cases, the organization may publicly name or leak data on its website to increase pressure.
+5
Mentioned
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

Timeline

Sep 09, 18:55ICX → SODA Token Migration Phase 1
Sep 09, 18:04Money market funds hit a historic high of over 7 trillion.
Sep 09, 18:01150,000,000 USDT transferred to Tether Treasury
Sep 09, 16:48The U.S. Department of Justice files a civil forfeiture lawsuit
Sep 09, 15:27A single entity is suspected of obtaining $170 million in tokens through a Sybil attack
Sep 09, 15:22DuckDB NPM account compromised, malicious version released
Sep 09, 15:201inch users were not affected by the supply chain attack
Sep 09, 14:27The originality and oligopoly level of the leading public chain ecosystem
Sep 09, 13:07Apple will raise iPhone prices
Sep 09, 11:33Confirm Bitcoin wallets unaffected by supply chain attacks

HotFlash

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

APP
Windows
Mac

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads