See Every Facet of the Story.
Published loading...Updated

60,000 Bitcoin Wallets Leaked As LockBit Ransomware Hackers Get Hacked

  • On April 29th, 2025, the LockBit ransomware group experienced a security incident when their affiliate portals on the dark web were vandalized, resulting in the online exposure of a MySQL database dump.
  • This breach likely exploited the CVE-2024-4577 vulnerability in PHP 8.1.2 running the server, with defacement messages similar to a recent Everest ransomware hack suggesting a possible link.
  • The leaked database includes twenty tables with nearly 60,000 unique bitcoin addresses, 4,442 negotiation messages between victims and affiliates, and a users table listing 75 admins with plaintext passwords.
  • The LockBit operator known as LockBitSupp acknowledged the security breach, assuring that no private keys or victim information were compromised. Meanwhile, the defaced affiliate panels prominently featured a message discouraging criminal activity, signed off with a note referencing Prague.
  • This incident follows the 2024 Operation Cronos takedown of LockBit's infrastructure and adds to the gang's damaged reputation, though it remains uncertain if this breach will end their operations.
Insights by Ground AI
Does this summary seem wrong?

20 Articles

All
Left
Center
3
Right
1
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 75% of the sources are Center
75% Center
Factuality

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

Neue Zürcher Zeitung broke the news in Zürich, Switzerland on Wednesday, May 7, 2025.
Sources are mostly out of (0)

Similar News Topics