Zerolockersec was a small ransomware group that had a brief operational period before becoming inactive by the second quarter of 2025. The group is notable for having very limited public documentation and no recorded leak posts, which distinguishes it from many other ransomware operations that typically utilize data leak sites for extortion. Its primary motivation was financial, consistent with ransomware groups. While its exact origin remains undocumented, its operational model suggested a typical, albeit short-lived, ransomware-as-a-service or independent ransomware actor.
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.
United Arab EmiratesGermanyFranceUnited KingdomJapanKorea, Republic ofMoroccoSingaporeTaiwan, Province of ChinaUnited States
Sectores objetivo (SOCRadar)
Energy & Utilities ManufacturingTransportation&WarehousingFinanceProfessional&Technical ServicesEducational ServicesHealthCare & Social AssistanceOtherPublic AdministrationOil & Gas