Saturday 04 July 2026 00:09:19 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItalianoArabic

WIKICROOK

Database extortion

A pressure tactic that targets production databases to force payment through disruption or data damage.

Database extortion is a pressure tactic in which attackers target production databases to force payment by threatening disruption, deletion, corruption, or public release of the data. Unlike simple file encryption, the goal is often to make core business records unavailable or untrustworthy, which can stop applications, damage transactions, and create immediate operational risk.

This matters because databases usually hold the most valuable and sensitive information in an environment, including customer records, credentials, and application state. In real attacks, extortion crews may steal backups, disable access, alter data, or prove they can reach database servers before issuing demands. Defenders reduce this risk with strong segmentation, least-privilege accounts, offline backups, monitoring for unusual queries and bulk exports, and strict control over systems that can reach the database from management or automation planes.

← WIKICROOK index