Malware, Ransomware, Threat Management

Ransomware admin is refunding victims their ransom payments

BleepingComputer reports that on March 19, the administrator of the Ziggy ransomware announced their plans to return the ransom paid by victims after shutting down their operation on Feb. 6. The administrator published all of the 922 decryption keys the day after the shutdown, which the victims could use to regain access to their files, along with a decryption tool and the source code for an offline decryptor. Victims are advised to contact the administrator at [email protected] and to send their computer ID and proof of bitcoin payment. They will then receive their money through their bitcoin wallet in about two weeks. According to the Ziggy ransomware administrator, they decided to end their operation and refund the victims because they fear of being caught by law enforcement officers. They also claimed to selling their house in order to return the victims' money and planning to become a ransomware hunter after they have refunded the victims.
Jill Aitoro

Jill Aitoro is senior vice president of content strategy for CyberRisk Alliance. She has more than 20 years of experience editing and reporting on technology, business and policy. Prior to joining CRA, she worked at Sightline Media as editor of Defense News and executive editor of the Business-to-Government Group. She previously worked at Washington Business Journal and Nextgov, covering federal technology, contracting and policy, as well as CMP Media’s VARBusiness and CRN and Penton Media’s iSeries News.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms and Conditions and Privacy Policy.