International and US cybersecurity authorities said in a joint statement that the gang behind the LockBit ransomware managed to obtain approximately $91 million through 1,700 attacks on US organizations, since 2020.

It is a Ransomware-as-a-Service (RaaS) operation and, according to experts, was the top threat in 2022.According to US authorities and their international partners in Australia, Canada, the UK, Germany, France and New Zealand, LockBit had the highest number of victims (based on the list of victims reported on the hackers' data leak website).
See also: Illinois government agencies attacked by ransomware group CL0P
Last year, affiliates of LockBit ransomware targeted municipal governments, county governments, public higher education institutions, K-12 schools, and emergency services. 16% of ransomware attacks targeting such organizations were related to LockBit.
“In 2022, LockBit was the most widely deployed ransomware variant worldwide and continues to be prolific in 2023,” the authorities warn.
“Since January 2020, affiliates using LockBit have attacked organizations of varying sizes related to critical infrastructure, including financial services, food and agriculture, education, energy, government and emergency services, healthcare, manufacturing, and transportation.“.
The joint announcement by US and international cybersecurity authorities includes, among other things, a detailed MITRE ATT&CK mapping with more than 40 Tactics, Techniques and Procedures (TTPs) used by LockBit affiliates in attacks.
Additionally, it reports on vulnerabilities exploited by the gang behind LockBit ransomware and an in-depth analysis of the LockBit RaaS trajectory since it first appeared in September 2019.
See also: BlackCat ransomware group leaks HWL Ebsworth data

Of course, some protection measures are also recommended so that system defenders can prevent LockBit activity. The FBI encourages all organizations to implement the recommended security measures to best defend against threats using LockBit.
LockBit ransomware first appeared in September 2019 as a ransomware-as-a-service (RaaS) operation. It resurfaced as LockBit 2.0 RaaS in June 2021 in response to the banning of ransomware groups on hacking forums.
The FBI had warned about LockBit ransomware again last year in February and advised victims to immediately report any attacks related to it.
Several months later, LockBit 3.0 appeared with many upgrades, innovative extortion tactics, and the first ransomware bug bounty program.
See also: Royal ransomware group has added the BlackSuit cryptojacker to its arsenal
Since then, LockBit has reported several high-profile victims around the world, including Continental, the Italian Inland Revenue Service, the UK Royal Mail , etc.
Ransomware is a serious threat to both individuals and businesses, but there are steps you can take to protect yourself. By being careful when opening emails or downloading files, keeping your software up to date, regularly backing up your files, and seeking help from cybersecurity professionals, you can significantly reduce your risk of becoming a ransomware victim. Stay vigilant and remember that prevention is the best defense against this insidious threat.
Source: www.bleepingcomputer.com
