The Week in Ransomware – March 1st 2024 – Healthcare under siege

March 1, 2024 at 03:36PM Relentless ransomware attacks on US healthcare, affecting patient care and access to prescription drugs. Notably, BlackCat’s attack on Change Healthcare caused significant disruption, forcing some patients to pay full price for medications and impacting hospitals’ financial abilities. Other ransomware operations such as Rhysida and Lockbit continue to target the healthcare … Read more

LockBit ransomware returns to attacks with new encryptors, servers

February 28, 2024 at 01:31PM The LockBit ransomware gang faced a disruption by law enforcement last week but has quickly resumed attacks with updated encryption and a new data leak site. They retaliated against the agencies involved, claiming to strengthen their security measures. LockBit is recruiting experienced pentesters, indicating a potential increase in future attacks. … Read more

LockBit’s Leak Site Reemerges, a Week After ‘Complete Compromise’

February 26, 2024 at 05:46PM LockBit ransomware has revived its leak site just a week after a major law enforcement takedown. The Operation Cronos Taskforce seized infrastructure, data, and decryption keys, resulting in arrests and frozen cryptocurrency accounts. Despite the blow, LockBit quickly bounced back due to backup systems. The impact of such law enforcement … Read more

LockBit back from the dead – taunts cops and plans to leak Trump docs

February 26, 2024 at 02:19PM LockBit, a ransomware gang, is reported to have resumed its activities following the takedown of its servers by law enforcement. A new leak site surfaced, listing alleged victims including the FBI and Georgia’s Fulton County. The gang has threatened to reveal confidential data and demanded a ransom from the county. … Read more

LockBit Ransomware Gang Resurfaces With New Site

February 26, 2024 at 08:51AM The LockBit ransomware operators faced law enforcement disruption, seizure of servers, and the arrest of individuals. Authorities obtained decryption keys and offered rewards. LockBitSupp launched a new leak site, attributing the takedown to a PHP flaw and announced improvements. LockBit faced decline and struggles attracting affiliates. The true masterminds behind … Read more

LockBit Ransomware Group Resurfaces After Law Enforcement Takedown

February 26, 2024 at 12:15AM LockBit ransomware group resurfaces on the dark web, moving their data leak portal to a new address and acknowledging PHP flaw exploitation. They claim the FBI hacked their infrastructure and seek to discredit law enforcement agencies. In a separate incident, Russian authorities arrest three individuals tied to the SugarLocker ransomware … Read more

LockBit extorted billions of dollars from victims, fresh leaks suggest

February 23, 2024 at 05:42PM Authorities believe that the ransomware group LockBit could have generated over $1 billion in ransom fees over its four-year lifespan. Analysis revealed around £100 million in cryptocurrency, with most payments coming from affiliates paid by victims. With over 2,000 victims, the actual sum extorted may be in the billions. LockBit’s … Read more

LockBit ransomware gang has over $110 million in unspent bitcoin

February 23, 2024 at 01:16PM The LockBit ransomware gang collected over $125 million in ransom payments through more than 500 active cryptocurrency addresses between July 2022 and February 2024. Approximately 2,200 Bitcoin remain unspent, equating to more than $110 million. The group’s impact is estimated to be in the multi-billions, prompting global law enforcement efforts. … Read more

New ScreenConnect RCE flaw exploited in ransomware attacks

February 23, 2024 at 07:15AM Sophos reported that recent ransomware attacks used the leaked LockBit ransomware builder, dropped on 30 customer networks and created by a different threat actor. The attacks exploit an authentication bypass vulnerability in unpatched ScreenConnect servers, prompting CISA to issue a security directive. Despite a law enforcement operation, LockBit attacks continue … Read more

Hubris May Have Contributed to Downfall of Ransomware Kingpin LockBit

February 22, 2024 at 06:47PM The LockBit ransomware group faced issues and was shut down by an international law enforcement effort led by the UK’s National Crime Agency due to dissent among members and affiliates. The takedown disrupted its infrastructure and led to several arrests. The group’s viability and reputation have been severely affected, and … Read more