Cybercriminals are not ready to let go of the profitable ransomware business. This year, the model has evolved to include data extortion through information exfiltration. Record ransom payments have been observed. And expect to see new extortion paradigms emerge in 2022. Companies will soon see more personalized ransomware circulating involving different types of assets, such as those in the IoT, as well as insiders in the within companies. We may see attempts to targeted disclosure of exfiltrated information to specific buyers. Payment terms will become more flexible: instead of single installments, payment schedules can be agreed upon and cybercriminals decipher assets as settlements dictate.

