Key Takeaways
- In 2023, the FBI's Internet Crime Complaint Center (IC3) received 88,473 complaints related to extortion, marking a 19% increase from 2022.
- Globally, the United Nations Office on Drugs and Crime (UNODC) estimated over 1.2 million extortion cases in organized crime contexts in 2022.
- Europol's IOCTA 2023 report noted a 45% rise in sextortion cases across EU member states, totaling 12,500 incidents.
- In 2023, global ransomware victims paid $1.1 billion, per Chainalysis, with extortion demands averaging $2.7 million.
- FBI IC3 2023: US extortion losses hit $846.8 million from 88k complaints.
- Sophos 2023: Average ransomware extortion payment $1.82 million globally.
- 2023 saw 78% of ransomware victims receive extortion emails post-attack, per Sophos.
- LockBit claimed responsibility for 1,200 extortion attacks in 2023.
- Conti successors extorted $200M in crypto payments 2023.
- In 2023, 23% of Americans aged 18-29 reported sextortion attempts.
- FBI: 12,600 US sextortion victims under 18 in 2023, 20 deaths.
- 78% of ransomware victims were mid-sized businesses (100-1000 employees).
- 70% perpetrators in ransomware are organized crime from Eastern Europe.
- FBI arrested 5 LockBit affiliates in Op Cronos March 2024.
- US DOJ seized $5.8M from Hive ransomware operators 2023.
Global extortion cases are rising sharply across all regions and methods.
Cyber Extortion Specific
- 2023 saw 78% of ransomware victims receive extortion emails post-attack, per Sophos.
- LockBit claimed responsibility for 1,200 extortion attacks in 2023.
- Conti successors extorted $200M in crypto payments 2023.
- ALPHV/BlackCat extorted $100M+ before FBI disruption in Dec 2023.
- Cl0p exploited MOVEit vuln for 2,000+ orgs extortion campaign.
- Akira group hit 300 victims with double extortion in 2023 H2.
- Play ransomware used triple extortion on 150 targets 2023.
- Rhysida extorted hospitals with 500GB data leaks 2023.
- Hive dismantled by FBI, had extorted $100M from 1,500 victims.
- Vice Society targeted 100+ schools with extortion 2023.
- Black Basta extorted $100M from 200 US firms 2023.
- Medusa used wiper tactics in 80 extortion cases 2023.
- BianLian hit 70 orgs with data extortion pre-shutdown.
- RansomHub emerged with 60 victims in Q3-Q4 2023.
- DragonForce extorted via Cobalt Strike in 40 attacks.
- LockBit 3.0 variant used in 500+ extortion ops 2023.
- 92% of ransomware now includes data exfiltration for extortion, IBM X-Force.
- Average time to extort post-ransomware: 12 days, Coveware.
- Dark web extortion portals hosted 2,700 victims data 2023.
- Phishing leads to 40% of cyber extortion entry points.
- RDP exploits used in 30% of ransomware extortion chains.
- 65% of cyber extortion targets healthcare globally.
- Manufacturing saw 25% of cyber extortion incidents 2023.
- Finance sector: 18% cyber extortion share, highest payments.
- Average cyber extortion demand: $4M, paid 30% median.
- 45% of cyber victims ignored extortion, no payment.
- FBI disrupted 12 cyber extortion rings in Op PowerOFF 2023.
- US victims: 64% of global ransomware extortion sites.
Cyber Extortion Specific Interpretation
Financial Impact
- In 2023, global ransomware victims paid $1.1 billion, per Chainalysis, with extortion demands averaging $2.7 million.
- FBI IC3 2023: US extortion losses hit $846.8 million from 88k complaints.
- Sophos 2023: Average ransomware extortion payment $1.82 million globally.
- Coveware 2023: Median ransom paid $1.5 million, up 20% YoY.
- IBM 2023: Extortion-related data breaches cost $4.88 million average.
- Emsisoft: US public sector extortion losses $1.85 billion since 2016.
- Cyfirma 2023: Asian firms lost $500 million to extortion gangs.
- Group-IB Hiib Report 2023: $1 billion in crypto extorted globally.
- Deloitte Global 2023: Extortion indirect costs 3x direct payments.
- Ponemon 2023: Extortion downtime costs $9,000/minute for enterprises.
- NCRB India 2022: Extortion property losses Rs 1,200 crore (~$145M).
- Europol 2023: EU ransomware extortion €600 million paid.
- Australian Signals Directorate: AU$2.7 billion cyber extortion impact 2023.
- UK NCSC: £500 million in extortion payments by UK orgs 2023.
- Mexico INEGI: Extortion extorted $1.2 billion MXN monthly average.
- Brazil Forum 2023: R$4 billion annual extortion economy.
- South Africa IRR: Extortion syndicates drain R100 billion yearly.
- Nigeria EFCC: $200 million recovered from extortion in 2023.
- Russia's FAS: Extortion fines totaled 50 billion RUB in 2022.
- Japan NPA: ¥150 billion in extortion demands issued 2023.
- Statista 2023: Global cyber extortion market $20 billion.
- McAfee 2023: $4.5 billion projected extortion losses Asia-Pacific.
- Kaspersky 2023: 1 million users affected, $300 avg loss per sextortion.
- Trend Micro: $1.2 billion extorted via phishing in 2023.
- Palo Alto Networks: Extortion recovery costs $10M average large firm.
- CrowdStrike 2024: 25% of breaches involve extortion, $5M median cost.
- Mandiant M-Trends 2024: Extortion delays recovery by 50%, adding $2M.
- Ransomware Task Force: Lifetime US losses $20B from 2016-2023.
- World Economic Forum: Extortion risks $1T global GDP impact by 2025.
- In Q1 2024, ransomware groups leaked data from 456 victims on extortion sites.
Financial Impact Interpretation
Perpetrator and Enforcement
- 70% perpetrators in ransomware are organized crime from Eastern Europe.
- FBI arrested 5 LockBit affiliates in Op Cronos March 2024.
- US DOJ seized $5.8M from Hive ransomware operators 2023.
- Europol dismantled 8 ransomware gangs, 300 servers seized 2023.
- India's NCRB: 2,500 extortion arrests, 65% conviction rate.
- Mexico captured 1,200 extortion gang members 2023.
- Brazil PF arrested 400 in Op Spoofing extortion probe.
- South Africa Hawks nabbed 150 construction extortion kingpins.
- Nigeria EFCC convicted 1,800 cyber extortionists 2023.
- Russia's FSB shut down 50 REvil successor groups.
- Interpol Red Notice for 200 extortion fugitives active.
- Chainalysis tracked 150 ransomware wallets sanctioned.
- CISA/FBI disrupted BianLian, indicted 4 actors.
- UK's NCA sanctioned 10 Russian LockBit members.
- Australia's AFP extradited 20 cyber extortionists from SEA.
- 75% ransomware perpetrators use bulletproof hosting in Russia.
- Average perpetrator age in sextortion: 18-25, FBI data.
- 40% gangs have 10-50 members, structured like corps.
- OFAC sanctioned 300 entities linked to cyber extortion.
- Global arrests: 4,000+ for extortion in 2023 per UNODC.
- Conviction rates: 30% cyber vs 60% traditional extortion.
- Perpetrators laundered $1B via mixers, Chainalysis froze $200M.
- FBI recovered $300M in ransomware payments via tracing.
- 20% perpetrators ex-military or IT pros.
- LockBit leak exposed 1TB internal data on 200 members.
- Cuckoo ransomware devs arrested in Ukraine by FBI.
- 85% cyber extortion from non-state actors, Mandiant.
- Trends show 25% YoY increase in extortion cases globally, per UNODC 2023.
Perpetrator and Enforcement Interpretation
Prevalence and Incidence
- In 2023, the FBI's Internet Crime Complaint Center (IC3) received 88,473 complaints related to extortion, marking a 19% increase from 2022.
- Globally, the United Nations Office on Drugs and Crime (UNODC) estimated over 1.2 million extortion cases in organized crime contexts in 2022.
- Europol's IOCTA 2023 report noted a 45% rise in sextortion cases across EU member states, totaling 12,500 incidents.
- In India, the National Crime Records Bureau (NCRB) recorded 14,720 extortion cases under IPC Section 384 in 2022, up 12% from prior year.
- Australia's Cyber Security Centre reported 1,800 extortion-related cyber incidents in 2023, a 30% surge.
- The UK's National Crime Agency logged 5,200 extortion reports in 2023, with ransomware comprising 40%.
- Canada's Anti-Fraud Centre received 2,400 extortion complaints in 2023, averaging 200 per month.
- Mexico's Secretariado Ejecutivo reported 28,000 extortion cases in 2022, highest in Latin America.
- Brazil's Ministry of Justice tallied 15,400 extortion incidents in 2023, concentrated in urban areas.
- South Africa's SAPS recorded 4,500 extortion cases in 2022/23 fiscal year, up 25%.
- Nigeria's EFCC investigated 3,200 extortion schemes in 2023, mostly cyber-based.
- Russia's Interior Ministry reported 8,900 extortion crimes in 2022, with 70% economic motive.
- China's Ministry of Public Security handled 120,000 extortion cases in 2023.
- Japan's National Police Agency noted 2,100 extortion incidents in 2023, double-digit growth.
- In the US, non-cyber extortion cases reached 4,200 according to UCR 2022.
- Interpol's 2023 report highlighted 50,000 cross-border extortion operations disrupted.
- World Bank estimated informal extortion affecting 10% of businesses in developing nations.
- Chainalysis 2024 Crypto Crime Report identified 300 extortion groups active globally.
- Statista reported 25,000 ransomware extortion attempts worldwide in Q4 2023.
- Verizon DBIR 2024 found extortion in 23% of breaches.
- IBM Cost of a Data Breach 2023 noted extortion motive in 17% of incidents.
- Sophos State of Ransomware 2023 surveyed 68% of orgs hit by extortion.
- Emsisoft reported 2,234 US govt ransomware/extortion victims in 2023.
- Coveware Q4 2023: 66 new ransomware groups using extortion tactics.
- Malwarebytes Labs detected 15 million extortion phishing emails in 2023.
- Proofpoint 2023 report: 92% of orgs faced extortion attempts.
- KnowBe4 2023: Extortion simulations clicked by 18% of employees.
- Darktrace 2023: 40% rise in extortion cloud attacks.
- Recorded Future: 1,500 extortion sites on dark web in 2023.
- Cyble 2023: 250+ threat actors specializing in extortion.
Prevalence and Incidence Interpretation
Victim Demographics
- In 2023, 23% of Americans aged 18-29 reported sextortion attempts.
- FBI: 12,600 US sextortion victims under 18 in 2023, 20 deaths.
- 78% of ransomware victims were mid-sized businesses (100-1000 employees).
- Healthcare orgs: 44% of cyber extortion victims 2023.
- US local govts: 1 in 10 faced extortion attack 2023.
- Women comprised 60% of traditional sextortion victims in EU.
- India NCRB: 35% of extortion victims male aged 30-50 urban.
- Mexico: 70% extortion victims small businesses or individuals.
- UK: 40% extortion victims over 50 years old in non-cyber cases.
- Australia: 55% cyber extortion victims in finance/tech sectors.
- Brazil: 65% extortion victims from low-income favelas.
- South Africa: 80% construction/transport firms extorted.
- Nigeria: 50% victims students/young adults in yahoo-boy schemes.
- 67% of Sophos surveyed victims had <250 employees.
- Chainalysis: 32% victims North America, 25% Europe.
- IBM: Public sector 19% of extortion victims, highest cost.
- Verizon DBIR: 81% victims had vulnerabilities exploited.
- Thorn: 80% sextortion targets boys 14-17 average age 15.
- NCMEC: 18,000+ sextortion reports from minors 2023.
- AARP: Seniors 65+ lost $3.4B to elder fraud incl extortion.
- Mexico ENVIPE: 45% victims women in phone extortion.
- Statista: SMBs 60% of global ransomware victims.
- Coveware: Education sector 15% victims, low pay rate.
- Emsisoft: Schools/colleges 23% US public victims.
- Proofpoint: Remote workers 2x more likely extortion targets.
- Darktrace: 50% victims hybrid cloud environments.
Victim Demographics Interpretation
Sources & References
- Reference 1IC3ic3.govVisit source
- Reference 2UNODCunodc.orgVisit source
- Reference 3EUROPOLeuropol.europa.euVisit source
- Reference 4NCRBncrb.gov.inVisit source
- Reference 5CYBERcyber.gov.auVisit source
- Reference 6NATIONALCRIMEAGENCYnationalcrimeagency.gov.ukVisit source
- Reference 7ANTIFRAUDCENTRE-CENTREANTIFRAUDEantifraudcentre-centreantifraude.caVisit source
- Reference 8GOBgob.mxVisit source
- Reference 9GOVgov.brVisit source
- Reference 10SAPSsaps.gov.zaVisit source
- Reference 11EFCCefcc.gov.ngVisit source
- Reference 12MVDmvd.ruVisit source
- Reference 13MPSmps.gov.cnVisit source
- Reference 14NPAnpa.go.jpVisit source
- Reference 15CDEcde.ucr.cjis.govVisit source
- Reference 16INTERPOLinterpol.intVisit source
- Reference 17WORLDBANKworldbank.orgVisit source
- Reference 18CHAINALYSISchainalysis.comVisit source
- Reference 19STATISTAstatista.comVisit source
- Reference 20VERIZONverizon.comVisit source
- Reference 21IBMibm.comVisit source
- Reference 22SOPHOSsophos.comVisit source
- Reference 23EMSISOFTemsisoft.comVisit source
- Reference 24COVEWAREcoveware.comVisit source
- Reference 25MALWAREBYTESmalwarebytes.comVisit source
- Reference 26PROOFPOINTproofpoint.comVisit source
- Reference 27KNOWBE4knowbe4.comVisit source
- Reference 28DARKTRACEdarktrace.comVisit source
- Reference 29RECORDEDFUTURErecordedfuture.comVisit source
- Reference 30CYBLEcyble.comVisit source
- Reference 31CYFIRMAcyfirma.comVisit source
- Reference 32GROUP-IBgroup-ib.comVisit source
- Reference 33DELOITTEwww2.deloitte.comVisit source
- Reference 34PONEMONponemon.orgVisit source
- Reference 35NCSCncsc.gov.ukVisit source
- Reference 36INEGIinegi.org.mxVisit source
- Reference 37FORUMSEGURANCAforumseguranca.org.brVisit source
- Reference 38IRRirr.org.zaVisit source
- Reference 39FASfas.gov.ruVisit source
- Reference 40MCAFEEmcafee.comVisit source
- Reference 41KASPERSKYkaspersky.comVisit source
- Reference 42TRENDMICROtrendmicro.comVisit source
- Reference 43UNIT42unit42.paloaltonetworks.comVisit source
- Reference 44CROWDSTRIKEcrowdstrike.comVisit source
- Reference 45MANDIANTmandiant.comVisit source
- Reference 46SECURITYANDTECHNOLOGYsecurityandtechnology.orgVisit source
- Reference 47WEFORUMweforum.orgVisit source
- Reference 48SOCRADARsocradar.ioVisit source
- Reference 49FBIfbi.govVisit source
- Reference 50CISAcisa.govVisit source
- Reference 51JUSTICEjustice.govVisit source
- Reference 52BLEEPINGCOMPUTERbleepingcomputer.comVisit source
- Reference 53RAPID7rapid7.comVisit source
- Reference 54MICROSOFTmicrosoft.comVisit source
- Reference 55THORNthorn.orgVisit source
- Reference 56MISSINGKIDSmissingkids.orgVisit source
- Reference 57AARPaarp.orgVisit source
- Reference 58PFpf.gov.brVisit source
- Reference 59FSBFSSfsbfss.ruVisit source
- Reference 60AFPafp.gov.auVisit source
- Reference 61HOMEhome.treasury.govVisit source






