Close Menu
Chain Tech Daily

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Thumzup targets ETH, DOGE, SOL treasuries after closing $50m public offering

    August 13, 2025

    Cardano has lost $15B since Trump reneged on Strategic Reserve promise

    August 13, 2025

    Qubic crypto surges 25% after the Monero attack

    August 13, 2025
    Facebook X (Twitter) Instagram
    Chain Tech Daily
    • Altcoins
      • Litecoin
      • Coinbase
      • Crypto
      • Blockchain
    • Bitcoin
    • Ethereum
    • Lithosphere News Releases
    Facebook X (Twitter) Instagram YouTube
    Chain Tech Daily
    Home » Embargo ransomware group nets $34.2 million: TRM Labs
    Crypto

    Embargo ransomware group nets $34.2 million: TRM Labs

    James WilsonBy James WilsonAugust 10, 20252 Mins Read
    Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    The Embargo ransomware group has stolen $34.2 million since emerging in April 2024, targeting victims across the healthcare, business services, and manufacturing sectors, according to TRM Labs research.

    Most victims are located in the U.S., with ransom demands reaching up to $1.3 million per attack.

    The cybercrime group has hit major targets, including American Associated Pharmacies, Memorial Hospital and Manor in Georgia, and Weiser Memorial Hospital in Idaho.

    TRM Labs identified approximately $18.8 million in victim funds that remain dormant in unattributed wallets.

    BlackCat connection suspected

    According to TRM Labs, Embargo may be a rebranded version of the defunct BlackCat (ALPHV) ransomware group, based on technical similarities and shared infrastructure.

    Both groups use the Rust programming language and maintain nearly identical data leak site designs and functionality.

    On-chain analysis revealed that historical BlackCat-linked addresses funneled cryptocurrency to wallet clusters associated with Embargo victims.

    The connection suggests that Embargo’s operators may have inherited the BlackCat operation or evolved from it following its apparent exit scam in 2024.

    Embargo operates under a ransomware-as-a-service model, providing tools to affiliates while retaining control over core operations and payment negotiations. This structure enables rapid scaling across multiple sectors and geographic regions.

    Embargo ransomware’s use of sophisticated laundering methods

    The organization uses sanctioned platforms such as Cryptex.net, high-risk exchanges, and intermediary wallets to launder stolen cryptocurrency.

    Between May and August 2024, TRM Labs monitored approximately $13.5 million in deposits made through various virtual asset service providers, including more than $1 million routed through Cryptex.net.

    Embargo avoids heavy reliance on cryptocurrency mixers, instead layering transactions across multiple addresses before depositing funds directly into exchanges.

    The group was observed using the Wasabi mixer in limited instances, with only two identified deposits.

    The ransomware operators deliberately park funds at various stages of the laundering process, likely to disrupt tracing patterns or wait for favorable conditions such as reduced media attention or lower network fees.

    Embargo specifically targets healthcare organizations to maximize leverage through operational disruption.

    Healthcare attacks can directly impact patient care, with potentially life-threatening consequences, and create pressure for quick ransom payments.

    The group employs double extortion tactics—encrypting files while exfiltrating sensitive data. Victims face threats of data leaks or dark web sales if they refuse payment, compounding financial damage with reputational and regulatory consequences.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email
    James Wilson

    Related Posts

    Crypto August 13, 2025

    Thumzup targets ETH, DOGE, SOL treasuries after closing $50m public offering

    Crypto August 13, 2025

    Qubic crypto surges 25% after the Monero attack

    Crypto August 13, 2025

    Memecoin tipped as 2025’s top pick amid XRP, SHIB, ADA rise

    Crypto August 13, 2025

    Stocks extend gains as S&P 500, Nasdaq hit record highs

    Crypto August 13, 2025

    DOGE under $0.50 or Little Pepe under $0.005: Best $500 bet

    Crypto August 13, 2025

    Peter Thiel acquires 7.5% stake in ETHZilla, driving stock up 207%

    Leave A Reply Cancel Reply

    Don't Miss
    Crypto August 13, 2025

    Thumzup targets ETH, DOGE, SOL treasuries after closing $50m public offering

    Thumzup made its biggest crypto bet yet. Fresh off a $50 million public offering, the…

    Cardano has lost $15B since Trump reneged on Strategic Reserve promise

    August 13, 2025

    Qubic crypto surges 25% after the Monero attack

    August 13, 2025

    Garantex co-founder arrested while on holiday in India, report

    August 13, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • YouTube
    • LinkedIn
    Our Picks

    Thumzup targets ETH, DOGE, SOL treasuries after closing $50m public offering

    August 13, 2025

    Cardano has lost $15B since Trump reneged on Strategic Reserve promise

    August 13, 2025

    Qubic crypto surges 25% after the Monero attack

    August 13, 2025

    Garantex co-founder arrested while on holiday in India, report

    August 13, 2025

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Don't Miss
    Crypto August 13, 2025

    Thumzup targets ETH, DOGE, SOL treasuries after closing $50m public offering

    Thumzup made its biggest crypto bet yet. Fresh off a $50 million public offering, the…

    Cardano has lost $15B since Trump reneged on Strategic Reserve promise

    August 13, 2025

    Qubic crypto surges 25% after the Monero attack

    August 13, 2025

    Garantex co-founder arrested while on holiday in India, report

    August 13, 2025

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    About Us
    About Us

    ChainTechDaily.xyz delivers the latest updates and trends in the world of cryptocurrency. Stay informed with daily news, insights, and analysis tailored for crypto enthusiasts.

    Our Picks

    For Many Women, The Pain Of The Pandemic Led To Stronger Friendships

    January 15, 2020

    How A ‘Healthy’ Lifestyle Can Be Making You Tired

    January 15, 2020

    Fashion Influencers To Follow On Instagram In 2021

    January 15, 2020
    Lithosphere News Releases

    Imagen Network (IMAGE) Boosts User Engagement Using XRP for Instant Social Transactions

    August 13, 2025

    Imagen Network (IMAGE) Integrates Grok AI To Elevate Dynamic Community Interactions

    August 12, 2025

    Imagen Network (IMAGE) Enhances Peer Discovery with Grok-Driven Personalization Engines

    August 11, 2025

    Imagen Network Improves Peer-Level Customization Through Grok Inference Engines

    August 8, 2025
    X (Twitter) Instagram YouTube LinkedIn
    © 2025 Copyright

    Type above and press Enter to search. Press Esc to cancel.