Lockbit
20
MENTIONS
9
EPISODES
8
PODCASTS
Search complete. 20 mentions across 9 episodes found for "Lockbit".
Sep 15, 2026
CrowdStrike CTO Cristian Rodriguez on Threat Intelligence and Cyber Liability
D
36:28David MorrowHOST
how they have basically built an internal search so that people can find and slice their data for all of the victim data, right? That's something very unique.
D
36:37David MorrowHOST
And then you've got LockBit 3.0. Another researcher was talking to us about LockBit, LockBit 3.0, and how they've developed this LockBit Black, which really
C
36:46Christian RodriguezGUEST
eliminates the need for IABs.
D
36:49David MorrowHOST
They won't even need initial access brokers.
#604: How He Infiltrated LockBit and Helped Get Them Indicted
D
0:21David BombalHOST
What's your advice to someone who's interested in becoming you?
J
0:24Jon DiMaggioGUEST
Well, the first piece of advice I wanna give, LockBit took down a children's, uh, cancer hospital.
J
0:30Jon DiMaggioGUEST
A- and that, y- those feelings, the ...
J
0:33Jon DiMaggioGUEST
I wrote, "I am hate, I am rage, I am vengeance."
D
1:45David BombalHOST
Yep.
J
1:45Jon DiMaggioGUEST
Uh, went out, went out to the dark web, started looking at bad guys and profiling 'em, and I realized a lot of these guys were, were accessible and would talk.
J
1:53Jon DiMaggioGUEST
So I started creating s- fake personas, uh, spending time with them, trying to join ransomware gangs, uh, and I got in with a group called LockBit.
J
2:01Jon DiMaggioGUEST
Now, after about six months, I published a report, foolishly put my name on it [laughs] and, uh, the next day they had a new avatar, uh, on their account on the dark web with my face on it.
Jon DiMaggio Takes You Undercover on the Dark Web Itself
J
29:27John DiMaggioGUEST
And then, you know, I guess the second point, you know, that the indicted affiliate, Bastard Lord.
J
29:33John DiMaggioGUEST
He died last year, big time affiliate for LockBit.
J
29:36John DiMaggioGUEST
He had worked for the Revo ransomware game previously and others.
J
29:39John DiMaggioGUEST
With him, he was like, you know, the first payment, big payment I got was 150,000 cryptocurrency.
J
31:48John DiMaggioGUEST
They go after those hospitals.
J
31:50John DiMaggioGUEST
And, you know, when I was at DEFCON, I talked about this extensively.
J
31:53John DiMaggioGUEST
But the biggest sort of the end of my fallout with LockBit was, you know, when they had attacked St. Anthony's Hospital in Chicago.
J
32:03John DiMaggioGUEST
And it has a children's cancer ward.
From Ransomware to AI: 15 Years of Cybersecurity - #218
T
10:35Tyler MoffittHOST
They're going for data exfiltration, uh, because the target in which they have been assigned has a purpose and value in the data they're going after.
T
10:42Tyler MoffittHOST
However, then there's sort of the maybe kind of complicate, obfuscate where we've seen, like LockBit, for example, Ransomhub, I think even Sodinokibi.
T
10:55Tyler MoffittHOST
This is a while back.
T
10:57Tyler MoffittHOST
There are threat actor groups out there whose ransomware as a service ecosystem has f- got their affiliates and will, for the most part, target people for money, return on investment, ROI.
Why Less Than 20% of Ransomware Victims Ever Pay with Marc Jason Grens, President of Chaintrax
M
8:45Marc Jason GrensGUEST
Where we're seeing a risk of either re-extortion or threat actors not being good in their promise are those that are in the unknown game.
M
8:53Marc Jason GrensGUEST
So after Black Hat went offline and LockBit, got sanctioned and they shut down, you saw a lot of affiliates say, I'm not going to hook up with another affiliate.
M
9:05Marc Jason GrensGUEST
I'm going to go and try it on my own.
M
9:07Marc Jason GrensGUEST
As you know, there's so much leaked code and malware out there.
M
9:10Marc Jason GrensGUEST
LockBit's got multiple versions out there, as well as Black Hat and other variants toolkits that are leaked, are using to say, I'm just going to go and attack myself.
M
9:19Marc Jason GrensGUEST
They're not part of a playbook.
M
9:20Marc Jason GrensGUEST
So typically when we see that, we usually throw flags on that to state that there's a much higher risk because this is not a well known affiliate.
ShinyHunters claims another health giant breach, PaperCut rushes second emergency patch, US bans foreign grid tech
D
3:40David ShipleyHOST
PaperCut has been here before.
D
3:42David ShipleyHOST
Its servers were hammered in twenty twenty-three through an authentication bypass flaw, attacks eventually linked to Clop, LockBit, Iranian state backed groups, and the bloody ransomware gang.
D
3:55David ShipleyHOST
PaperCut has now put CVE numbers and technical details on the table.
D
4:00David ShipleyHOST
CVE-2026-81578 is a high severity authentication bypass in the web management interface, rated eight point eight out of ten.
CYBER UNCUT: AI advice woes, Aussie auto dealers under attack, and sweeping changes coming to Facebook
D
17:37David HollingworthHOST
Yeah,
D
17:37Daniel CroftHOST
LockBit could never.
D
17:38Daniel CroftHOST
LockBit could not stand to the numbers that these guys are achieving.
D
17:42David HollingworthHOST
comes close because the way they do mass compromise.
D
17:45David HollingworthHOST
Yeah, they do, yeah.
Your IoT Devices Might Be a Chinese Spy's Front Door
C
13:42Cyber CowboyHOST
DFIR, if you don't know, is their digital forensics and incident response team, just in case some of our listeners weren't tracking that acronym.
C
13:52Cyber CowboyHOST
And CLOP and LockBit, for those that don't know, are some of the top ransomware as a service actors.
C
13:59Cyber CowboyHOST
They don't just do ransomware, but data theft, right? Take it and then hold it hostage until they pay.
C
14:05Cyber CowboyHOST
And they attack global organizations.
AI advice woes, Aussie auto dealers under attack, and sweeping changes coming to Facebook
D
19:16David HollingworthHOST
Yeah,
D
19:17Daniel CroftHOST
LockBit could never.
D
19:18Daniel CroftHOST
LockBit could not stand to the numbers that these guys are achieving.
D
19:22David HollingworthHOST
comes close because the way they do there, they do mass compromise.
D
19:25David HollingworthHOST
Yeah, they do, yeah.