Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

‘I will run right over you’: New FEMA head issues warning to Trump critics | Donald Trump News

May 9, 2025

Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack

May 9, 2025

UK FinTech lender Juice raises £25m to back SME founders with non-dilutive capital

May 9, 2025
Facebook X (Twitter) Instagram
Trending
  • ‘I will run right over you’: New FEMA head issues warning to Trump critics | Donald Trump News
  • Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack
  • UK FinTech lender Juice raises £25m to back SME founders with non-dilutive capital
  • Embedded FinTech platform Glide raises $15m to modernise banking infrastructure
  • Autobooks lands $40m to enhance small business banking tech
  • 160,000 Impacted by Valsoft Data Breach
  • Karachi to host 35th National Games in December: Murad Shah – Sport
  • Indigenous fashion week in Santa Fe, New Mexico, explores heritage in silk and hides
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Friday, May 9
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » Valuable Information Leaked in LockBit Ransomware Hack 
Cybersecurity

Valuable Information Leaked in LockBit Ransomware Hack 

adminBy adminMay 9, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 6


Information that can be highly valuable to law enforcement and the cybersecurity community was leaked after someone hacked into an administration panel used by the LockBit ransomware operation.

The hack came to light on May 7, when a domain associated with a LockBit administration panel was defaced to display a message that read “Don’t do crime, crime is bad xoxo from Prague”. The defaced page also included a link to an archive file containing information taken from the compromised server.

The leaked data includes private messages between LockBit affiliates and victims, Bitcoin wallet addresses, affiliate accounts, details about attacks, and information on malware and infrastructure.

Several cybersecurity experts have analyzed the leaked data. Christiaan Beek, senior director of threat analytics at Rapid7, noted that the Bitcoin addresses could be useful to law enforcement.

In addition, Luke Donovan, head of threat intelligence at Searchlight Cyber, explained how the leaked data could be valuable for the cybersecurity community. 

The expert said the user data included in the leak likely pertains to affiliates or administrators of the ransomware operation. Searchlight Cyber has identified 76 records, including usernames and passwords, in the published data. 

“This user data will prove to be valuable for cybersecurity researchers, as it allows us to learn more about the affiliates of LockBit and how they operate. For example, within those 76 users, 22 users have TOX IDs associated with them, which is a messaging service popular in the hacking community,” Donovan said.

He added, “These TOX IDs have allowed us to associate three of the leaked users with aliases on hacking forums, who use the same TOX IDs. By analysing their conversations on hacking forums we’ll be able to learn more about the group, for example the types of access they buy to hack organizations.”

Advertisement. Scroll to continue reading.

Searchlight Cyber has identified 208 conversations between LockBit affiliates and victims. The messages, which range between December 2024 and April 2025, could be “valuable for learning more about how LockBit’s affiliates negotiate with their victims”.

Indeed, Rapid7’s Beek pointed out that the leaked chats show how aggressive LockBit affiliates were during ransom negotiations.

“In some cases, victims were pressured to pay just a few thousand dollars. In others, the group demanded much more: $50,000, $60,000, or even $100,000,” Beek said.

As for who is behind the LockBit hack, Searchlight Cyber’s Donovan pointed out that the defacement message is the same as the message displayed last month on the hacked website of a different ransomware group, Everest. 

“While we cannot be certain at this stage, this does suggest that the same actor or group was behind the hack on both of the sites and implies that this data leak is the result of infighting among the cybercriminal community,” the expert said.

A statement posted on LockBit’s leak website on May 8 confirmed the compromise of an administration panel, but downplayed the impact, saying that decryptors or sensitive data from victims were not impacted. 

LockBitSupp, the mastermind behind the LockBit operation, who authorities say is Russian national Dmitry Yuryevich Khoroshev, said he is willing to pay for information on the identity of the individual who carried out the attack. 

Law enforcement agencies worldwide have been taking action to disrupt LockBit, but despite delivering a major blow last year, the cybercrime operation is still active and continues to pose a threat to organizations.

Related: Black Basta Leak Offers Glimpse Into Group’s Inner Workings

Related: LockBit Ransomware Developer Arrested in Israel at Request of US



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack

May 9, 2025

160,000 Impacted by Valsoft Data Breach

May 9, 2025

Malicious NPM Packages Target Cursor AI’s macOS Users

May 9, 2025

Rising Tides: Kelley Misata on Bringing Cybersecurity to Nonprofits

May 9, 2025

SAP Zero-Day Targeted Since January, Many Sectors Impacted 

May 9, 2025

Company and Personal Data Compromised in Recent Insight Partners Hack 

May 9, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

Skechers’ Greenbergs Set To Pocket Up To $1.1 Billion From Sale To 3G

May 6, 2025

Skechers founders Robert Greenberg (left) and Michael Greenberg (right) started the brand more than 30…

Trump Organization Admits President Still Controls His Business

May 6, 2025

Forbes Richest Person In Every State 2025

April 30, 2025

These Billionaire Signers Of The Giving Pledge Signers On Why The Philanthropy Group Still Matters

April 29, 2025
Our Picks

‘I will run right over you’: New FEMA head issues warning to Trump critics | Donald Trump News

May 9, 2025

Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack

May 9, 2025

UK FinTech lender Juice raises £25m to back SME founders with non-dilutive capital

May 9, 2025

Embedded FinTech platform Glide raises $15m to modernise banking infrastructure

May 9, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

This is your last chance to exhibit at TechCrunch Sessions: AI — don’t miss out

May 9, 2025

Microsoft employees are banned from using DeepSeek app, president says 

May 8, 2025

ChatGPT’s deep research tool gets a GitHub connector to answer questions about code

May 8, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.