LockBit Ransomware Breach Reveals Group Operations
LockBit Ransomware Breach Reveals Group Operations

LockBit Ransomware Breach Reveals Group Operations

News summary

Hackers breached the LockBit ransomware gang's dark web affiliate panels, leaving an anti-cybercrime message and leaking a MySQL database with nearly 60,000 Bitcoin wallet addresses, internal chat logs, and affiliate credentials. Cybersecurity experts have confirmed the authenticity of the data, which also contains over 4,400 victim negotiation messages, ransomware build configurations, and a list of 75 admins and affiliates with plaintext passwords. While LockBit’s operator denied the leak of private keys or highly sensitive data, analysts say the breach could aid law enforcement in tracing ransom payments and understanding LockBit's operations. The breach was first reported by a threat actor named Rey and examined by multiple security teams. It offers unprecedented insight into the group's extortion tactics and financial flows, exposing vulnerabilities and internal risks for ransomware gangs. The attack shares similarities with a recent breach of the Everest ransomware group, suggesting a possible connection.

Story Coverage
Bias Distribution
67% Center
Information Sources
bd7f581c-6294-4fb3-adfe-81db52a08452a3544a73-dab3-486d-ae75-bd4d15f01f5568e7fc5e-537b-4887-b796-fbd29c315618
Left 33%
Center 67%
Coverage Details
Total News Sources
3
Left
1
Center
2
Right
0
Unrated
0
Last Updated
22 days ago
Bias Distribution
67% Center
Related News
Daily Index

Negative

22Serious

Neutral

Optimistic

Positive

Ask VT AI
Story Coverage
Subscribe

Stay in the know

Get the latest news, exclusive insights, and curated content delivered straight to your inbox.

Present

Gift Subscriptions

The perfect gift for understanding
news from all angles.

Related News
Recommended News