Skip to content
theregister·

🔒Google Reveals AI Data Extortion Attacks Targeting High-Value IP

AI Data Extortion: Companies Paying Ransoms to Protect IP

TL;DR

Google's Mandiant team details extortion attacks targeting AI data from tech, healthcare, and pharma companies. Attackers steal IP, drug research, and AI models, demanding ransoms to prevent public exposure.

Google's Mandiant team revealed two extortion attacks targeting high-value AI data from tech, healthcare, and pharma companies. Attackers exfiltrated corporate data, drug research, and proprietary AI models, demanding ransoms to prevent public exposure. If you're handling sensitive AI data, these attacks highlight the need for robust data protection and incident response plans. Google's AI Threat Tracker details the attacks, which affected companies across North America and Europe, with evidence of more than half a dozen methods used to target AI tools and open source software. The attacks are not limited to these sectors or regions, and companies are reportedly willing to pay ransoms to protect their intellectual property.

Google Reveals AI Data Extortion Attacks Targeting High-Value IP — theregister

Key Points

1

Google's Mandiant team investigated two extortion attacks targeting AI data from tech, healthcare, and pharma companies in Q2 2026.

2

Attackers exfiltrated corporate data, drug research, and proprietary AI models, threatening to publish the data unless ransoms were paid.

3

The attacks affected companies across North America and Europe, with evidence of more than half a dozen methods used to target AI tools and open source software.

4

TeamPCP, a group known for open source supply chain attacks, deployed stealers to scoop up cloud and AI system credentials.

5

Attackers compromised an organization's cloud infrastructure in a six-hour autonomous, multi-agent credential-harvesting attack.

Why It Matters

If you're handling sensitive AI data, these attacks highlight the need for robust data protection and incident response plans. Companies across tech, healthcare, and pharma are reportedly willing to pay ransoms to protect their intellectual property. The attacks are not limited to these sectors or regions, and the methods used to target AI tools and open source software are becoming increasingly sophisticated.

AIextortioncybersecuritydata-protectionincident-response

Frequently Asked Questions

Why does this matter?

If you're handling sensitive AI data, these attacks highlight the need for robust data protection and incident response plans. Companies across tech, healthcare, and pharma are reportedly willing to pay ransoms to protect their intellectual property. The attacks are not limited to these sectors or regions, and the methods used to target AI tools and open source software are becoming increasingly sophisticated.

What happened?

Google's Mandiant team details extortion attacks targeting AI data from tech, healthcare, and pharma companies. Attackers steal IP, drug research, and AI models, demanding ransoms to prevent public exposure.

Comments

Subscribe to join the conversation...

Be the first to comment

Enjoyed this article?

Get it daily. 7am. Free. Reads in 5 minutes.

Join 3,467 builders reading daily.

Also get