Image showing the main webpage of the LockBit ransomware gang, now under the control of law enforcement.


February 26, 2024

Law enforcement agencies from several countries, including the U.K.’s National Crime Agency (NCA), have dealt a significant blow to the notorious LockBit ransomware gang. The operation involved seizing infrastructure and source code, arresting two individuals in Poland and Ukraine, and freezing 200 cryptocurrency accounts associated with the group.

The NCA, along with international partners, infiltrated LockBit's network, taking control of its services in three countries and compromising 28 servers, effectively crippling the gang's criminal activities. This included disrupting servers in the U.S. that hosted their "StealBit" data exfiltration platform.

The NCA emphasized that LockBit's capabilities and credibility have been severely damaged, and they are determined to continue targeting the group and its affiliates. They have taken control of LockBit's primary administration environment and its public-facing leak site on the dark web, where they will now post information exposing LockBit's operations.

Additionally, the NCA has obtained LockBit's source code and intelligence on their activities and associates. The operation also resulted in the seizure of over 1,000 decryption keys, which will be provided to victims of LockBit ransomware attacks.

The U.K. announcement follows reports of the seizure of the gang's website, which now indicates that it is under the control of the NCA, working with international partners.

LockBit has been a target of law enforcement for some time, leading to previous arrests and charges. The recent takedown involved the unsealing of indictments against Russian nationals Artur Sungatov and Ivan Kondratyev, who are accused of deploying LockBit against numerous victims.

The joint background paper released last June by cybersecurity agencies from seven countries highlighted LockBit's significant activity in 2022, with the gang being the most active global ransomware group that year.

The U.S. estimated that LockBit had targeted over 2,000 victims worldwide and received more than US$120 million in ransom payments. Canada estimated that LockBit was responsible for 22 per cent of attributed ransomware incidents in 2022.

While the takedown will have a substantial short-term impact on LockBit's operations, experts warn that the group may resurface under a different name, with current members joining or establishing other gangs. There is a global effort to hunt down ransomware gangs and their leaders, and technical mistakes by these groups can lead to successful takedowns like this one.

There are also implications for victims of LockBit. Law enforcement agencies may share information about data breaches and ransom payments with other national authorities for further investigation. Paying ransoms may violate U.S. sanctions, and GDPR regulations in Europe require reporting data breaches, potentially leading to investigations against companies that paid ransoms to conceal breaches.

How useful was this post?

Click on a star to rate it!

Average rating 0 / 5. Vote count: 0

No votes so far! Be the first to rate this post.

You may also like

Google Canada Invests $13M to Train Canadians in AI Skills

In a major step toward building Canada’s future-ready workforce, Google Canada has unveiled a $13 million fund designed to equip....

Meta Turns to Nuclear Power to Keep Up with AI Demand

Meta, the parent company of Facebook, has signed a long-term agreement to power its growing artificial intelligence (AI) operations using....

Young AI Coding Startups Surge with Huge Investor Backing

In just a couple of years since ChatGPT made headlines, a new wave of AI-driven coding startups is grabbing the....

Neuralink Secures $650M in Funding as Brain Chip Enters Trials

Elon Musk’s brain-tech company Neuralink has raised a massive $650 million in its latest funding round, marking a major step....

Google to Spend $500M to Fix Compliance After Lawsuit

In a major move to reshape its internal practices, Google has agreed to invest $500 million over the next decade....

Google Pushes Back Against Chrome Breakup Proposal

In a closely watched legal showdown, Google has pushed back against efforts to break up its popular Chrome browser. The....

US Lawyer Warns Canada About AI and Political Threats

An American lawyer known for challenging former U.S. President Donald Trump is urging Canadians to stay alert when it comes....

Google Faces Legal Clash with Bureau Over Ad Market Power

Google is at the center of a legal standoff with Canada’s Competition Bureau. The tech giant is fighting back against....

Claude AI Left Secret Notes That Alarmed Its Own Creators

A new artificial intelligence model, Claude Opus 4, has drawn major attention not just for its power but for its....

Dalhousie University Uses 3D Printing to Fix Navy Ships Fast

Dalhousie University in Halifax is teaming up with Canada’s Department of National Defence to help keep the country’s naval fleet....

Strauss’ ‘Blue Danube’ Waltz Set to Launch Into Space for 200th Birthday

This month, Johann Strauss II’s famous waltz, “Blue Danube,” will embark on a unique journey—into outer space—to celebrate the 200th....

Census Bureau Cuts Raise Worries About Data Future

A group launched by Elon Musk, called the Department of Government Efficiency (DOGE), is now taking aim at the U.S.....