Colonial Pipeline reportedly paid millions for slow-ass decryption software

The company reportedly forked over nearly $5 million worth of bitcoin.
 By 
Jack Morse
 on 
Colonial Pipeline reportedly paid millions for slow-ass decryption software
Well shoot. Credit: JIM WATSON / getty

When it comes to ransomware, you don't always get what you pay for.

Colonial Pipeline, which operates more than 5,500 miles of fuel pipelines in the United States, found that out the hard way this week. It reportedly forked over almost $5 million worth of bitcoin to the hacking group that forced the company to proactively shut down its systems. But the company ended up using its own backups to restore operations anyway, according to Bloomberg.

The decryption software provided by the hacking group DarkSide, notes Bloomberg, was reportedly "so slow" that Colonial Pipeline "continued using its own backups to help restore the system."


You May Also Like

Ransomware is malware that encrypts victims' computers and demands payment in exchange for the decryption key. Bloomberg reports that Colonial Pipeline paid the almost $5 million ransom on Friday (the price of bitcoin has dropped since late last week) — in other words, almost immediately after it says it detected the infection.

Nicole Perlroth, a noted cybersecurity reporter for the New York Times, confirmed that the payment was 75 bitcoin — although she reports that the payment was made Monday, not Friday.

On Monday, with gasoline panic buying in the news and the White House getting involved, DarkSide released a statement insisting that it never meant to make such a mess of things.

SEE ALSO: How to blur your house on Google Street View (and why you should)

"Our goal is to make money," read the statement in part, "and not creating problems for society."

DarkSide, according to its website, makes that money various ways. In addition to ransomware, it also threatens to leak companies' data to third parties (including short sellers) unless additional payment is made.

On Thursday, Colonial Pipeline announced that its systems were back up and running — with very little thanks, it would seem, to that payment of 75 bitcoin.

Mashable Image
Jack Morse

Professionally paranoid. Covering privacy, security, and all things cryptocurrency and blockchain from San Francisco.

Mashable Potato

Recommended For You
3 AdultFriendFinder features exclusive to paid users
By Jack Dawes
Plus signs coming out of treasure chest

Anna’s Archive reportedly releasing Spotify files despite $13 trillion legal challenge
spotify logo on phone in front of spotify user interface

How hackers are stealing millions from ATMs, FBI warns
a card being inserted into an atm


'Never After Dark' review: Satisfying scares fuel this slow-burn ghost story
Moeka Hoshi plays a medium in "Never After Dark."

Trending on Mashable
NYT Connections hints today: Clues, answers for April 3, 2026
Connections game on a smartphone

Wordle today: Answer, hints for April 3, 2026
Wordle game on a smartphone


What's new to streaming this week? (April 3, 2026)
A composite of images from film and TV streaming this week.

You can track Artemis II in real time as Orion flies to the moon
Victor Glover and Reid Wiseman piloting the Orion spacecraft
The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!