Hesse Consumer Advice Center says systems encrypted by ransomware

February 27, 2024 at 12:05PM The Hesse Consumer Advice Center in Germany was hit by a ransomware attack causing disruptions in its IT systems, impacting communication channels. Although the website is now fully operational, reaching the center remains difficult. The organization is working with IT security experts to restore communication channels, while concerns about potential … Read more

Cybercrims: When we hit IT, they sometimes pay, but when we hit OT… jackpot

February 27, 2024 at 04:37AM Cybercriminals increasingly targeted the manufacturing industry with ransomware attacks last year, with 70% of industrial ransomware infections affecting manufacturing companies. Dragos CEO Robert Lee explains that manufacturing’s early adoption of IoT and connected machines, without adequate security, makes it a prime target. Furthermore, a ransomware infection at German control systems … Read more

LockBit’s Leak Site Reemerges, a Week After ‘Complete Compromise’

February 26, 2024 at 05:46PM LockBit ransomware has revived its leak site just a week after a major law enforcement takedown. The Operation Cronos Taskforce seized infrastructure, data, and decryption keys, resulting in arrests and frozen cryptocurrency accounts. Despite the blow, LockBit quickly bounced back due to backup systems. The impact of such law enforcement … Read more

LockBit back from the dead – taunts cops and plans to leak Trump docs

February 26, 2024 at 02:19PM LockBit, a ransomware gang, is reported to have resumed its activities following the takedown of its servers by law enforcement. A new leak site surfaced, listing alleged victims including the FBI and Georgia’s Fulton County. The gang has threatened to reveal confidential data and demanded a ransom from the county. … Read more

LockBit Ransomware Gang Resurfaces With New Site

February 26, 2024 at 08:51AM The LockBit ransomware operators faced law enforcement disruption, seizure of servers, and the arrest of individuals. Authorities obtained decryption keys and offered rewards. LockBitSupp launched a new leak site, attributing the takedown to a PHP flaw and announced improvements. LockBit faced decline and struggles attracting affiliates. The true masterminds behind … Read more

LockBit Ransomware Group Resurfaces After Law Enforcement Takedown

February 26, 2024 at 12:15AM LockBit ransomware group resurfaces on the dark web, moving their data leak portal to a new address and acknowledging PHP flaw exploitation. They claim the FBI hacked their infrastructure and seek to discredit law enforcement agencies. In a separate incident, Russian authorities arrest three individuals tied to the SugarLocker ransomware … Read more

Authorities Claim LockBit Admin “LockBitSupp” Has Engaged with Law Enforcement

February 25, 2024 at 04:27AM LockBit ransomware’s exposure and response to law enforcement have prompted suspicion and distrust among affiliates. Despite attempts to maintain anonymity, it was revealed that LockBit’s leadership engaged with authorities. Their operations have been disrupted, with 14,000 rogue accounts closed. The group’s multi-year illicit profits exceed $120 million, with a significant … Read more

LockBit extorted billions of dollars from victims, fresh leaks suggest

February 23, 2024 at 05:42PM Authorities believe that the ransomware group LockBit could have generated over $1 billion in ransom fees over its four-year lifespan. Analysis revealed around £100 million in cryptocurrency, with most payments coming from affiliates paid by victims. With over 2,000 victims, the actual sum extorted may be in the billions. LockBit’s … Read more

LockBit ransomware gang has over $110 million in unspent bitcoin

February 23, 2024 at 01:16PM The LockBit ransomware gang collected over $125 million in ransom payments through more than 500 active cryptocurrency addresses between July 2022 and February 2024. Approximately 2,200 Bitcoin remain unspent, equating to more than $110 million. The group’s impact is estimated to be in the multi-billions, prompting global law enforcement efforts. … Read more

‘SlashAndGrab’ ScreenConnect Vulnerability Widely Exploited for Malware Delivery

February 23, 2024 at 07:33AM ConnectWise’s ScreenConnect product faced a critical vulnerability, leading to widespread exploitation for ransomware and other malware. The company issued patches for an authentication bypass flaw and path traversal issue, now assigned CVE identifiers. Exploited flaws, dubbed SlashAndGrab, allowed unauthorized account creation and arbitrary code execution. Several malicious activities were reported, … Read more