Double-Extortion Ransomware: Leverage Simulator
Interactive 3D incident-response simulator: watch a double-extortion ransomware attack spread laterally across a network while stealing data, and see how isolation and backup restore change the attacker's leverage.
A double-extortion ransomware incident runs two attacks at once: encrypting files to deny access, and quietly copying sensitive data to an external leak site to threaten publication regardless of whether the ransom is paid. This simulator renders a live 3D network graph where an initial foothold spreads laterally node by node using an exponential-hazard contagion model, while every compromised node exfiltrates a slice of its data toward a visualised leak site. Tune the attacker's lateral spread rate against the defender's SOC detection/isolation rate and backup restore rate, or trigger an emergency full-network isolation, and watch two independent readouts diverge: the percentage of nodes currently compromised (which containment and restore can drive back down) versus the cumulative data-exfiltration leverage (which, once banked, never goes back down) — the exact asymmetry that makes double extortion harder to fully neutralise than a simple encryption-only attack.
A live 3D network graph shows a double-extortion ransomware attack spreading laterally while exfiltrating data, and lets you tune SOC isolation and backup restore to see why encryption leverage and data-leak leverage behave very differently.
3D · Three.js / WebGL renderer · 60 FPS target · runs fully client-side, no install