This document is a guide on the Extortion Monitoring Service provided by Flashpoint, which addresses the evolving methods of threat actor collectives that engage in extortion through various attacks such as ransomware and DDoS. It outlines the importance of having insight into illicit communities and websites to identify potential exposure for victims, incident response teams, and digital forensics teams. The service offers real-time automated alerts regarding leaked assets resulting from extortion incidents, enabling teams to assess the extent of exposure and damage. The document details the continuous monitoring capabilities, including keyword tracking and access to original collections for further analysis. It also emphasizes the significance of immediate notifications for incident response teams to mitigate risks associated with stolen data, particularly concerning third-party vendors. The guide concludes with a description of Flashpoint's extensive intelligence resources and the support provided to ensure organizations can effectively respond to extortion threats.