RANSOMWARE · Unknown
Prolific RaaS operation with automated affiliate model, double extortion, and rapid encryption of enterprise networks.
Aliases: LockBit 3.0, LockBit Black
Motivation: Financial extortion via ransomware-as-a-service
Privilege Escalation
Field telemetry from Sydney correlates with German Energy Provider Hit by Akira Ransomware.
Lateral Movement
Field telemetry from Paris correlates with Volt Typhoon Detected in US Energy Grid OT Networks.
Initial Access
Field telemetry from Tel Aviv correlates with Global Education Consortium Suffers Ransomware Outage.
Lateral Movement
Field telemetry from Sydney correlates with German Energy Provider Hit by Akira Ransomware.
Data Exfiltration
Field telemetry from Paris correlates with Volt Typhoon Detected in US Energy Grid OT Networks.
Privilege Escalation
Field telemetry from Tel Aviv correlates with Global Education Consortium Suffers Ransomware Outage.
Ransom Demand
Field telemetry from Paris correlates with Volt Typhoon Detected in US Energy Grid OT Networks.
Lateral Movement
Field telemetry from Tel Aviv correlates with Global Education Consortium Suffers Ransomware Outage.
Data Exfiltration
Field telemetry from Sydney correlates with German Energy Provider Hit by Akira Ransomware.