June 1, 2023

Volume XIII, Number 152

Advertisement
Advertisement

June 01, 2023

Subscribe to Latest Legal News and Analysis

May 31, 2023

Subscribe to Latest Legal News and Analysis

May 30, 2023

Subscribe to Latest Legal News and Analysis
Advertisement

FBI, CISA + MS-ISAC Warn of LockBit 3.0 Ransomware

The FBI, CISA and the Multi-State Information Sharing and Analysis Center (MS-ISAC) recently released a joint cybersecurity advisory, warning organizations about indicators of compromise, and tactics, techniques, and procedures that have been associated with LockBit 3.0 ransomware.

The Advisory, #StopRansomware: LockBit 3.0, states that LockBit 3.0 is an affiliate-based ransomware variant that functions as a Ransomware-as-a-Service model that is a continuation of its predecessors, LockBit and LockBit 2.0

LockBit 3.0, also known as LockBit Black, is more evasive than its predecessors, and “shares similarities with Blackmatter and Blackcat ransomware.” The attackers using LockBit 3.0 use remote desktop protocol, drive-by compromise, phishing campaigns, abuse of valid accounts, and exploitation of public-facing applications to access networks. Once inside the victim’s network, the attackers escalate privileges, and then move through the victim’s network. Once inside the network, the attackers exfiltrate data using Stealbit,  use publicly-available legitimate file sharing services, then encrypt the files, and finally send a ransom note to the victim.

The Alert outlines the indicators of compromise, and suggestions for mitigation.  Those suggestions include:

  • Prioritized remediating known exploited vulnerabilities

  • Train users to recognize and report phishing attempts

  • Enable and enforce phishing-resistant multifactor authentication.

Copyright © 2023 Robinson & Cole LLP. All rights reserved.National Law Review, Volume XIII, Number 82
Advertisement
Advertisement
Advertisement

About this Author

Linn F. Freedman, Robinson Cole Law Firm, Cybersecurity and Litigation Law Attorney, Providence
Partner

Linn Freedman practices in data privacy and security law, cybersecurity, and complex litigation. She provides guidance on data privacy and cybersecurity compliance to a full range of public and private clients across all industries, such as construction, education, health care, insurance, manufacturing, real estate, utilities and critical infrastructure, marine, and charitable organizations. Linn is a member of the firm's Business Litigation Group and chairs its Data Privacy + Cybersecurity Team. She is also a member of the Financial Services Cyber-Compliance Team (CyFi ...

401-709-3353