Wednesday, April 2, 2025
HomeCyber Security NewsLockBit Ransomware Gang Disrupted by Global Law Enforcement Operation

LockBit Ransomware Gang Disrupted by Global Law Enforcement Operation

Published on

SIEM as a Service

Follow Us on Google News

Earlier this week, Europol and the UK’s National Crime Agency announced they had successfully taken down the dark web platform associated with LockBit, a notorious ransomware group.

LockBit has been one of the most active and prolific ransomware groups, and this operation is a significant win for law enforcement and the fight against ransomware.

LockBit, a notorious ransomware group, operates a leak site where they threaten to leak and publish stolen data from their victims. This site has now been taken down and replaced by a featured image that indicates law enforcement has taken control of the site.

LockBit Ransomware Gang
LockBit Ransomware Gang

The image shows a takedown notice that a group of global intelligence agencies issued to a dark web site called Lockbit.

The image includes flags of the countries involved in the operation and logos of the police forces. It appears that the authorities have successfully taken down the infrastructure of this criminal group.

Document
Live Account Takeover Attack Simulation

How do Hackers Bypass 2FA?

Live attack simulation Webinar demonstrates various ways in which account takeover can happen and practices to protect your websites and APIs against ATO attacks.

Current Analysis:

The dark web leak site that LockBit used to name their victims who hadn’t paid the ransom is now under the control of the UK’s National Crime Agency.

The message on the site indicates that the operation was part of “Operation Cronos,” which involved the FBI, Europol, and several other European and Asian law enforcement agencies.

About Lockbit Ransomware:

LockBit ransomware will still be a popular choice for cybercriminals in 2023. Since January 2020, LockBit affiliates have targeted organizations of varying sizes in critical infrastructure sectors, including banking, education, energy, healthcare, transportation, government and emergency services, food, and agriculture.

The LockBit ransomware group operates on a ransomware-as-a-service model and has been one of the most active threat actors globally.

Managed Care of North America Inc. was one of the previous victims of LockBit in May 2023. In June 2022, authorities in Arizona arrested a person believed to be affiliated with the gang and linked to other LockBit ransomware attacks that affected victims across the Americas, Europe, and Africa.

Foxsemicon Integrated Technology Inc., a division of Hon Hai Precision Industry Co. Ltd., was one of the most recent victims of LockBit in January.

Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Brinker Named Among “10 Most Promising Defense Tech Startups of 2025”

Brinker, an innovative narrative intelligence platform dedicated to combating disinformation and influence campaigns, has...

Hackers Use DeepSeek and Remote Desktop Apps to Deploy TookPS Malware

A recent investigation by cybersecurity researchers has uncovered a large-scale malware campaign leveraging the...

SmokeLoader Malware Uses Weaponized 7z Archives to Deliver Infostealers

A recent malware campaign has been observed targeting the First Ukrainian International Bank (PUMB),...

New Malware Targets Magic Enthusiasts to Steal Logins

A newly discovered malware, dubbed Trojan.Arcanum, is targeting enthusiasts of tarot, astrology, and other...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Hackers Use DeepSeek and Remote Desktop Apps to Deploy TookPS Malware

A recent investigation by cybersecurity researchers has uncovered a large-scale malware campaign leveraging the...

SmokeLoader Malware Uses Weaponized 7z Archives to Deliver Infostealers

A recent malware campaign has been observed targeting the First Ukrainian International Bank (PUMB),...

New Malware Targets Magic Enthusiasts to Steal Logins

A newly discovered malware, dubbed Trojan.Arcanum, is targeting enthusiasts of tarot, astrology, and other...