BR100 Increased By (0.07%)
BR30 Decreased By (-0.21%)
KSE100 Increased By (0.1%)
KSE30 Increased By (0.05%)
AGHA 7.80 Increased By ▲ 0.05 (0.65%)
BECO 5.22 Increased By ▲ 0.03 (0.58%)
BML 57.84 Decreased By ▼ -0.82 (-1.4%)
BOP 33.98 Increased By ▲ 0.29 (0.86%)
CNERGY 9.90 Decreased By ▼ -0.71 (-6.69%)
CSIL 5.32 Increased By ▲ 0.02 (0.38%)
FCCL 54.70 Increased By ▲ 0.96 (1.79%)
FFL 16.60 Increased By ▲ 0.14 (0.85%)
FNEL 1.23 Increased By ▲ 0.01 (0.82%)
KEL 7.38 Increased By ▲ 0.10 (1.37%)
KOSM 5.79 Increased By ▲ 0.15 (2.66%)
LOTCHEM 29.39 Decreased By ▼ -0.26 (-0.88%)
MLCF 94.34 Decreased By ▼ -2.02 (-2.1%)
NBP 203.20 Decreased By ▼ -0.33 (-0.16%)
NCPL 56.89 Increased By ▲ 0.04 (0.07%)
NPL 67.55 Increased By ▲ 0.24 (0.36%)
OGDC 315.15 Decreased By ▼ -3.07 (-0.96%)
PACE 10.65 Increased By ▲ 0.02 (0.19%)
PAEL 43.20 Increased By ▲ 1.43 (3.42%)
PIBTL 16.72 Decreased By ▼ -0.09 (-0.54%)
PPL 219.95 Decreased By ▼ -0.22 (-0.1%)
PRL 49.40 Increased By ▲ 0.35 (0.71%)
PTC 70.50 Increased By ▲ 0.49 (0.7%)
SSGC 28.29 Decreased By ▼ -0.85 (-2.92%)
TBL 9.85 Increased By ▲ 0.08 (0.82%)
TELE 8.78 Decreased By ▼ -0.04 (-0.45%)
TPL 18.32 Increased By ▲ 1.15 (6.7%)
TPLP 13.21 Increased By ▲ 0.70 (5.6%)
TREET 22.71 Increased By ▲ 0.12 (0.53%)
TRG 60.30 Increased By ▲ 0.08 (0.13%)
By

LONDON: An international operation led by UK and US law enforcement has severely disrupted “the world’s most harmful cyber crime group”, the Russian-linked ransomware specialist LockBit, officials announced Tuesday.

LockBit and its affiliates have targeted governments, major companies, schools and hospitals, causing billions of dollars of damage and extracting tens of millions in ransoms from victims.

Britain’s National Crime Agency (NCA), working with the Federal Bureau of Investigation, Europol and agencies from nine other countries in Operation Cronos, said it had infiltrated LockBit’s network and taken control of its services.

“We have hacked the hackers, we have taken control of their infrastructure, seized their source code, and obtained keys that will help victims decrypt their systems,” NCA director general Graeme Biggar told reporters in London.

LockBit’s website — selling services that allow people to organise cyber attacks and hold data until a ransom is paid appears — was taken over on Monday evening.

A message appeared on the site stating that it was “now under control of law enforcement”.

“As of today LockBit is effectively redundant, LockBit has been locked out,” Biggar said.

The US Justice Department (DOJ) said the agencies had seized control of “numerous public-facing websites used by LockBit to connect to the organization’s infrastructure” and taken control of servers used by LockBit administrators.

The NCA added that it had obtained more than 1,000 decryption keys and will be contacting UK-based victims in the coming days and weeks to offer support and help them recover encrypted data.

Biggar said the network had been behind 25 percent of all cyber attacks in the past year.

Lockbit has targeted over 2,000 victims and received more than $120 million in ransom payments since it formed four years ago, according to the (DOJ).

Those targeted have included Britain’s Royal Mail, US aircraft manufacturer Boeing, and a Canadian children’s hospital.

In January 2023, US law enforcers shut down the Hive ransomware operation which had extorted some $100 million from more than 1,500 victims worldwide.

Following that action, Lockbit had been seen as the biggest current threat.

Hive and Lockbit are part of what cybersecurity experts call a “ransomware as a service” style, or RaaS — a business that leases its software and methods to others to use in extorting money.

Comments

Comments are closed for this article.