LockBit ransomware returns to attacks with new encryptors, servers
ID: 9b69ccf9-6ac7-5fe6-beb0-1d6491c7890e
STIX ID: report--9b69ccf9-6ac7-5fe6-beb0-1d6491c7890e
Feed Name: Bleeping Computer
Threat Score
The report describes how law enforcement's Operation Cronos briefly disrupted the LockBit ransomware operation—seizing infrastructure and releasing decryptors—but LockBit has returned with updated encryptors, new Tor-based data-leak and negotiation sites, confirmed sample uploads to VirusTotal, and active recruitment of affiliates, indicating renewed and ongoing ransomware activity.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
