Why is it even legal?

I should have thought that one of the first things that should be done to discourage this sort of extortion was to make it illegal to pay the ransom ... maybe it already is (IANAL) in which case that gem should be made more widely known.

I wouldn't like it to be MY database that got encrypted, but knowing I couldn't legally pay the ransom might encourage me to take a bit more care of it in the first place.

Telling a survey like this one that you'd be happy to pay must just encourage the scumbags.

