lockbit3 logo

lockbit3

1 incidentes 1 paises 0 sectores ransomware RU Ultimo: 2026-06-25
Aliases: LockBit Black, lockbit3, ABCD ransomware, lockbit
Ver en IntelTracker → APTTrail →
LockBit 3.0, also known as LockBit Black, is a financially motivated cybercriminal group that operates an affiliate-based ransomware-as-a-service (RaaS) model. It emerged in March 2022 as a significant evolution from previous LockBit versions, incorporating features from the BlackMatter ransomware family, which represented an architectural overhaul and enhanced technical capabilities. Assessed with moderate confidence to be of Russian origin, the group is primarily driven by financial gain. LockBit 3.0 distinguishes itself through its exceptionally rapid encryption speed, a unique bug bounty program for its ransomware, and its pioneering adoption of triple extortion tactics, which include data encryption, data exfiltration with leak threats, and distributed denial-of-service (DDoS) attacks. The group is known for its high volume of incidents globally across various sectors.
Malware asociado
Lumma Stealer, RedLine Stealer, apk.alien, win.agent_tesla, Backdoor.Oldrea, SpyAgent
Tecnicas MITRE
T1567 - Exfiltration Over Web Service, T1031 - Modify Existing Service, T1547 - Boot or Logon Autostart Execution, T1530 - Data from Cloud Storage Object, T1113 - Screen Capture, T1110 - Brute Force

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (SOCRadar)

United Arab EmiratesAfghanistanAlbaniaArmeniaAngolaArgentinaAustriaAustraliaAzerbaijanBosnia and Herzegovina

Sectores objetivo (SOCRadar)

Construction of BuildingsFood ManufacturingOther Information ServicesMonetary Authorities-Central BankRail TransportationSoftware PublishersReal EstateRental and Leasing ServicesHospitalsEnterprises & Holding

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com