Cyber threat actor
LockBit
Ransomware-as-a-service criminal enterprise · active since 2019
One of the most prolific ransomware-as-a-service operations, responsible for thousands of attacks on US hospitals, schools, and government entities before a 2024 international law-enforcement disruption.
Aliases
LockBit 3.0LockBit Black
Primary targets
Healthcare Manufacturing Government Education
MITRE ATT&CK techniques
0 techniques mapped · click any technique ID to open the MITRE ATT&CK entry, any CVE to view its NVD record, or any citation for source reporting.
No MITRE ATT&CK mapping available yet for LockBit.
Curated incidents
- 2024-06-01·Cross-sector·United States, United Kingdom, globalLockBit disruption (Operation Cronos) unmasks affiliates after healthcare and school-district attacks
International law-enforcement operation seized infrastructure and decryption keys following a wave of attacks on US hospitals and school districts.
Live feed mentions
- Tue, 20 Feb 2024 13:00:00 GMT · US Department of JusticeOperation Cronos seizes LockBit infrastructure and publishes affiliate detail