💰💣
LockBit Security Incident
December 2024 - April 29, 2025
464 days ago
Resolved
Incident Overview
Situation Description
A hacker leaked a database stolen from the LockBit ransomware operation, exposing victim details and cryptocurrency addresses.
Event Types
Ransomware
Malware / Destructive Attack
Industry Sector
OtherGeographic Scope
nanResponse Actions
Managed Public Narrative & Crisis Communications
Impact Analysis
Event Types (2 identified)
Ransomware
Malware / Destructive Attack
Financial Impact
$0 USDRecords Affected
0Data Types Compromised
Credentials
Operational / System Data
Primary Impacts
Reputational Damage
Key Decisions Made
LockBit claimed that only the light panel with auto registration was hacked, not decryptors or stolen company data.; LockBit stated they are investigating the intrusion method and rebuilding the system.; LockBit offered a reward for the identity of the hacker responsible for the breach.
Technical Analysis
Attack Method
Unpatched Vulnerability
Threat Actor Attribution
LockBit
Vulnerability / Tool
PHP 0-day or 1-day vulnerability
Additional Information
Quick Facts
- Company:
- LockBit
- Date:
- December 2024 - April 29, 2025
- Status:
- Resolved
- Decision Maker:
- nan
- Position:
- nan
- Published:
- 8/05/2025
Source Information
Original Query
Coveware ransomware negotiation report REvil vs ALPHV tacticsTimeline
Information Published
8/05/2025
Incident Occurred
December 2024 - April 29, 2025 (464 days ago)
Status: Resolved
Estimated resolution based on age