This week, it was revealed that the LockBit ransomware gang has released their latest encryptor named “LockBit Green”. After analyse by cyber security analysts and information disclosed by the ransomware group, it has been revealed that the new encryptor “LockBit Green” is based on the leaked source code of the former Conti ransomware.
Furthermore, the cybersecurity firm PRODAFT stated that they now know of at least five victims that have been attacked using the new encryptor. Apart from the similarities found between the Conti encryptor and LockBit’s new encryptor, there has been a change observed which is LockBit Green uses what appears to be a random extension rather than the standard “.lockbit” extension.
PRODAFT told Tech news site, BleepingComputer that they believe that one reason for the new encryptor could be that the ex-Conti members within the LockBit group prefer LockBit Green and could possibly feel comfortable using Conti-based ransomware.
© 2021 CyberEnsō – Nihon Cyber Defence Co., Ltd. All Rights Reserved.