ctipilot.ch

Ransom-ISAC

ransom-isac · C · candidate

https://ransom-isac.org/blog/

researchbreacheslang: enfailures: 0last fetch: 2026-07-05

Ransomware/data-extortion ISAC publishing retrospective post-incident case studies with negotiation transcripts and actor-model analysis. Surfaced by S4 on 2026-07-05 as the PRIMARY for the Kairos data-theft-only extortion case study (US county ~$1M payout). Candidate — promote to active after 3 contributing runs. FETCH -> webfetch https://ransom-isac.org/blog/ (listing), then WebFetch the article URL. Discovery/analysis source; verify actor/victim claims against corroborating journalism before citing specifics. | 2026-07-05 admiralty audit: C (MEDIUM->C) — original extortion case studies but newer/niche with self-noted unverified attributions; corroborate specifics. Keep candidate. Note: canonical domain is ransom-isac.org (not .com).

Cited in 2 entries

Citation cadence

Citation days per ISO week (1 weeks of coverage span, total 1).