ALERT: Bitcoin Extortion

The following alert is available as a PDF for dissemination and distribution to your organisation and also externally as you see fit.

Source: Operation FALCON, London Metropolitan Police
Date: 01/03/2016
Classification: NOT PROTECTIVELY MARKED

Bitcoin Extortion

Within the past 24 hours a number of businesses throughout the UK have received extortion demands from a group calling themselves ‘RepKiller Team’.

Method of Attack:

The group have sent emails demanding payment of between £300 – £500 in Bitcoins by a certain date and time. If their demand is not met, they have threatened to launch a cyber attack against the business and its reputation by automating hundreds of negative reviews online. The demand states that once their actions have started, they cannot be undone.

If you have received such a demand, or receive one in the future, you are advised to:

  • Make a report to Action Fraud on 0300 123 2040 or via the online reporting tool on www.actionfraud.police.uk
  • Do not pay the demand
  • Retain the original emails (with headers)
  • Maintain a timeline of the attack, recording all times, type and content of the contact

All affected businesses, whether the attack is attempted or successful, should report in the first instance to Action Fraud on 0300 123 2040 or via www.actionfraud.police.uk.

Briefing Dissemination

This document has been given the protective marking of NOT PROTECTIVELY MARKED and may be disseminated outside of law enforcement with no restrictions.

Any comments or queries please email the FALCON Cyber Protect team at: CyberProtect@met.police.uk