'Malwareless' ransomware campaign operators pwned 83k victims' MySQL servers, 250k databases up for sale


Double extortion?

Does this not negate itself? You encrypt the databases, the victim doesn't pay, so the databases are published. If it was me, I'd just not pay and then restore the databases from the published data. It's probably a good thing that it isn't me, TBH.

