The National Rifle Association confirmed it was hit by a ransomware attack after the Grief gang claimed responsibility and said it had stolen data from the organization. Reports said the attackers listed the NRA on their leak site and threatened to publish files, adding the group to a growing list of high-profile organizations facing double-extortion campaigns in which criminals both encrypt systems and exfiltrate sensitive information.
The incident drew attention because the NRA acknowledged the compromise months after it occurred, while details about the scope of affected systems and data remained limited. The case underscored how ransomware operators continue to use public leak portals and reputational pressure to force payment, even when victims do not immediately disclose the full extent of an intrusion.

TTPs, infrastructure, and targeting history in one profile.
3 events from the most recent confirmed update back to the earliest known activity.
The National Rifle Association confirmed in March 2022 that it had suffered a ransomware attack the previous year. The disclosure established the organization as a victim of a previously undisclosed cyber incident.
During the EOS initial coin offering, attackers used a breach to conduct a phishing scam targeting participants. The incident was reported as affecting the cryptocurrency fundraising process and exposing contributors to fraud.
Intel said the newly disclosed processor vulnerability was not unique to Intel chips and that any performance impacts from mitigations would be workload-dependent. The statement came as the industry publicly acknowledged major speculative execution flaws affecting modern processors.
See this adversary's TTPs, infrastructure, and targeting history, correlated against your exposure.
3 references tracked. Mallory keeps watching after this page renders.
theverge.com
Open sourcefortune.com
Open sourcetheverge.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.