[ad_1]
A notorious cybercrime syndicate known for its ransomware attacks has been crippled by a coordinated effort from the National Crime Agency (NCA), the FBI, and international partners.
Lockbit’s official ransom note website broadcasted on Monday: “This site is now under the control of the National Crime Agency of the UK, working in close cooperation with the FBI and the international law enforcement task force, ‘Operation Cronos’.”
The collaborative takedown also involved Europol and law enforcement agencies from several countries including France, Japan, Switzerland, Canada, Australia, Sweden, the Netherlands, Finland, and Germany.
An NCA spokesperson acknowledged the disruption of Lockbit’s operations and informed that the initiative is “ongoing and developing”.
A Lockbit member asserted via an encrypted messaging platform that the gang had unaffected backup servers that evade law enforcement’s reach.
Renowned in the nefarious ransomware sphere, Lockbit has a reputation for infiltrating major global institutions, stealing sensitive data, and demanding hefty ransoms to prevent public data leaks.
Lockbit’s network extends to criminal affiliates who deploy its sophisticated digital extortion tools to conduct cyber attacks.
Since its emergence in 2020, security experts who discovered Lockbit’s malware on Russian cybercrime forums posit that the gang may be Russia-based, although it has not publicly shown allegiance to any state.
Despite this, no official attribution to a nation-state has been pronounced by any government.
The group has openly stated their sole motive is monetary, without political affiliations, and previously claimed a base in the Netherlands.
Lockbit is recognized by US officials as a formidable ransomware entity, having compromised over 1,700 organizations across the United States. Their victims span myriad sectors, from education and transportation to government services and finance.
Read more:
FBI disrupts hacking network ‘linked to Russian intelligence’
Parents of US gun violence victims use AI to recreate their voices
Chinese hackers preparing to ‘wreak havoc’ on US, warns FBI chief
Royal Mail’s services faced significant disruptions due to a Lockbit cyberattack early in 2023.
Prior to its seizure, Lockbit hosted a frequently updated catalogue of their targets, along with countdown timers dictating deadlines for ransom payments. However, following the intervention, authorities have now replaced the tombstone with a message indicating further updates at a set time.
[ad_2]
FAQs About the Disruption of the Lockbit Cybercrime Gang
- Who led the operation to disrupt Lockbit?
- The operation was led by the UK’s National Crime Agency (NCA) in collaboration with the FBI and several international law enforcement agencies.
- What countries were involved in the operation against Lockbit?
- Law enforcement agencies from France, Japan, Switzerland, Canada, Australia, Sweden, the Netherlands, Finland, and Germany were involved in the operation.
- Has Lockbit been completely disabled by this operation?
- While the main website was taken over by law enforcement, Lockbit claimed to have backup servers that were not affected by the intervention.
- What is Lockbit known for?
- Lockbit is known for executing ransomware attacks against large organizations, encrypting sensitive data, and demanding ransoms to prevent leaks.
- When was Lockbit first discovered?
- Lockbit’s activities were first spotted on Russian-language cybercrime forums in 2020.
- How has Lockbit claimed to operate?
- The group claims to be apolitical, solely motivated by money, and previously declared they were based in the Netherlands.
Conclusion
The collaborative and concerted efforts of the NCA, FBI, and a host of international policing agencies have cast a significant blow to the operations of the Lockbit cybercrime gang. This disruption showcases the potential of global cooperation in combating cyber threats. However, with Lockbit’s claim of possessing unaffected backup servers, the saga of Lockbit demonstrates the ongoing struggle against persistent and advanced cybercriminal enterprises that require vigilance and continuous international collaboration.











































