LockBit 3.0, also known as LockBit Black, is a financially motivated cybercriminal group that operates an affiliate-based ransomware-as-a-service (RaaS) model. It emerged in March 2022 as a significant evolution from previous LockBit versions, incorporating features from the BlackMatter ransomware family, which represented an architectural overhaul and enhanced technical capabilities. Assessed with moderate confidence to be of Russian origin, the group is primarily driven by financial gain. LockBit 3.0 distinguishes itself through its exceptionally rapid encryption speed, a unique bug bounty program for its ransomware, and its pioneering adoption of triple extortion tactics, which include data encryption, data exfiltration with leak threats, and distributed denial-of-service (DDoS) attacks. The group is known for its high volume of incidents globally across various sectors.
United Arab EmiratesAfghanistanAlbaniaArmeniaAngolaArgentinaAustriaAustraliaAzerbaijanBosnia and Herzegovina
Sectores atacados
Software (1)
Sectores objetivo (OSINT)
Construction of BuildingsFood ManufacturingOther Information ServicesMonetary Authorities-Central BankRail TransportationSoftware PublishersReal EstateRental and Leasing ServicesHospitalsEnterprises & Holding