216.73.216.233

Unfiltered look into LockBit’s operations

· Published 15/05/2025 22:59 · Modified 21/05/2025 20:42

Export JSON

Essential information

Published
15/05/2025 22:59
Modified
21/05/2025 20:42
Tags
2025-05-15 affiliate panels dark web data breach initial access brokers lockbit negotiation tactics ransomware
Related entities
3 observables, 1 intrusion sets (apt), 14 techniques (mitre), 1 malware

Description

A breach of 's exposed a rare glimpse into their operations. The leaked data included Bitcoin addresses, admin credentials, and a chat log revealing and ransom demands. Ransom amounts varied widely, with some victims confused about the demands. The breach exposed 's research into victims' finances and their willingness to provide additional services for a fee. The incident highlights the complexities of cybercrime negotiations and the human stories behind the headlines. Additionally, Cisco Talos observed a trend of attack kill chains being split into two stages, executed by separate threat actors, leading to refined definitions of .

External references