The New Face of Cyber Extortion
Cyber extortion is shifting from “pay us to restore your systems” to “pay us to keep your secrets.”
A few years ago, when people spoke about cyber attacks, the first question was usually: “Did they encrypt the servers?”
Today, that question is becoming less relevant. The new question is: “What data did they take?”
The alleged Nintendo breach is another reminder of how cybercrime is evolving.
According to reports, the attackers are not talking about disrupting operations or locking systems. Instead, they claim to have accessed years of employee-related information, internal surveys, workplace feedback, and performance data, and are demanding a ransom to prevent its release.
That should concern every organization.
Data is no longer just information
It is reputation. It is trust. It is employee confidence. It is business value.
The reality is that many organizations have invested heavily in protecting infrastructure, networks, and applications. Yet sensitive internal information often remains scattered across HR platforms, collaboration tools, surveys, shared drives, and SaaS applications.
And attackers know it.
Increasingly, cyber extortion is shifting from “pay us to restore your systems” to “pay us to keep your secrets.”
The question every board should ask
As security leaders, our challenge is no longer limited to preventing breaches. It is understanding what happens if the data leaves the building.
The organizations that will be most resilient tomorrow are the ones that treat data protection, governance, and cyber resilience as business priorities rather than security projects.
If an attacker gained access to our internal data tomorrow, what would worry us the most?