toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

298
active users

#lockbit

1 post1 participant0 posts today

The hackers got hacked! In an ironic twist, LockBit, the infamous ransomware-as-a-service gang, was breached. Watch the new episode of Cyberside Chats as @sherridavidoff and @MDurrin share the details and explain what it means for cyber defenders.

We explore what was leaked, why it matters, and how this incident compares to past takedowns like Conti. You'll also get the latest insights into the 2025 ransomware landscape, from victim stats to best practices for defending your organization.

Watch or listen now and get practical takeaways to strengthen your ransomware response playbook.

Watch: youtu.be/xr-8GhazgME
Listen: chatcyberside.com/e/lockbits-o

🔥 Latest issue of my curated #cybersecurity and #infosec list of resources for week #19/2025 is out!

It includes the following and much more:

💬 The #Signal clone the Trump admin uses was hacked;

🇺🇸 ✈️ ICE's airline hacked;

🇬🇧 The DragonForce #ransomware group claimed responsibility for recent cyberattacks on UK retailers;

🌐 NATO hosting the Locked Shields 2025 cyber defense exercise in Estonia;

🔓 The #LockBit ransomware gang was hacked!

📨 Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

infosec-mashup.santolaria.net/

The Signal Clone the Trump Admin Uses Was Hacked; ICE's Airline Hacked; The DragonForce ransomware group claimed responsibility for recent cyberattacks on UK retailers; NATO hosting the Locked Shields 2025 cyber defense exercise in Estonia;
X’s InfoSec Newsletter🕵🏻‍♂️ [InfoSec MASHUP] 19/2025The Signal Clone the Trump Admin Uses Was Hacked; ICE's Airline Hacked; The DragonForce ransomware group claimed responsibility for recent cyberattacks on UK retailers; NATO hosting the Locked Shields 2025 cyber defense exercise in Estonia;

#ESETresearch discovered previously unknown links between the #RansomHub, #Medusa, #BianLian, and #Play ransomware gangs, and leveraged #EDRKillShifter to learn more about RansomHub’s affiliates. @SCrow357 welivesecurity.com/en/eset-res
RansomHub emerged in February 2024 and in just three months reached the top of the ransomware ladder, recruiting affiliates from disrupted #LockBit and #BlackCat. Since then, it dominated the ransomware world, showing similar growth as LockBit once did.
Previously linked to North Korea-aligned group #Andariel, Play strictly denies operating as #RaaS. We found its members utilized RansomHub’s EDR killer EDRKillShifter, multiple times during their intrusions, meaning some members likely became RansomHub affiliates.
BianLian focuses on extortion-only attacks and does not publicly recruit new affiliates. Its access to EDRKillShifter suggests a similar approach as Play – having trusted members, who are not limited to working only with them.
Medusa, same as RansomHub, is a typical RaaS gang, actively recruiting new affiliates. Since it is common knowledge that affiliates of such RaaS groups often work for multiple operators, this connection is to be expected.
Our blogpost also emphasizes the growing threat of EDR killers. We observed an increase in the number of such tools, while the set of abused drivers remains quite small. Gangs such as RansomHub and #Embargo offer their killers as part of the affiliate program.
IoCs available on our GitHub: github.com/eset/malware-ioc/tr

Russian cybercrime group sent a message of congratulations to Kash Patel and an offer.

...the Lockbit administrator then offered an “archive of classified information for you personally, Mr. Kash Patel.” This, it was claimed, contained information that could “not only negatively affect the reputation of the FBI, but destroy it as a structure.”
#Lockbit #FBI forbes.com/sites/daveywinder/2

ForbesThis Data Could Destroy The FBI—Russian Crime Gang Warns Kash PatelThis notorious Russian ransomware crime gang says it has sent Kash Patel information it claims could destroy the FBI. Here’s what you need to know.

🆘 Trump administration retreats in fight against Russian cyber threats

The Trump administration has publicly and privately signaled that
🔥 it does not believe Russia represents a cyber threat against US national security or critical infrastructure, 🔥
marking a radical departure from longstanding intelligence assessments.

👉The shift in policy could make the US vulnerable to hacking attacks by Russia, experts warned,
and appeared to reflect the warming of relations between Donald Trump and Russia’s president, Vladimir Putin.
Two recent incidents indicate the US is no longer characterizing Russia as a cybersecurity threat.

#Liesyl #Franz, deputy assistant secretary for international cybersecurity at the state department,
said in a speech last week before a United Nations working group on cybersecurity that
the US was concerned by threats perpetrated by some states but only named China and Iran,
with no mention of Russia in her remarks.

Franz also did not mention the Russia-based #LockBit #ransomware group,
which the US has previously said is the most prolific ransomware group in the world and has been called out in UN forums in the past.

The treasury last year said LockBit operates on a ransomeware-as-service model, in which the group licenses its ransomware software to criminals in exchange for a portion of the paid ransoms.

In contrast to Franz’s statement, representatives for US allies in the European Union and the UK focused their remarks on the threat posed by Moscow,
with the UK pointing out that Russia was using offensive and malicious cyber-attacks against Ukraine alongside its illegal invasion.

💥“It’s incomprehensible to give a speech about threats in cyberspace and not mention Russia and it’s delusional to think this will turn Russia and the FSB [the Russian security agency] into our friends,”
said James Lewis, a veteran cyber expert formerly of the Center for Strategic and International Studies think tank in Washington.

“They hate the US and are still mad about losing the cold war. Pretending otherwise won’t change this.”
The US policy change has also been established behind closed doors.

theguardian.com/us-news/2025/f

The Guardian · Trump administration retreats in fight against Russian cyber threatsBy Stephanie Kirchgaessner