LockBit threatens to leak CDW data after failed negotiations

Share post:

CDW, a $20 billion IT reseller, has refused to pay LockBit’s ransom demands, prompting the cybercrime gang to threaten to leak the company’s stolen data.

LockBit spokesperson LockBitSupp told The Register that the company offered a “ridiculous” amount of money, which “insulted the crooks.”

“As soon as the timer runs out you will be able to see all the information,” LockBitSupp said. “The negotiations are over and are no longer in progress.”

The countdown timer on LockBit’s victim blog shows that CDW’s data is scheduled to be published on October 11. CDW has not yet commented on the incident, which appears to have been ongoing since at least September 3.

Cybersecurity experts warn that ransomware groups are ramping up their tactics in forcing victims to pay quickly. They say that posting a company to a victim blog multiple times is a known aggressive tactic adopted by ransomware groups to hurry negotiations.

The U.K. National Cyber Security Centre (NCSC) has a longstanding stance against paying ransoms to cybercriminals, citing research that shows less than half of businesses paying ransoms recover all of their data.

Experts also note that LockBit has a history of using pressure tactics and engaging in strange behavior. For example, the group has been accused of orchestrating “fake” ransomware attacks and posting false information on its website.**

It is unclear what data LockBit stole from CDW or how the group breached the company’s network. However, experts say that the leak, if it occurs, could have a significant impact on CDW’s customers and partners.

The sources for this piece include an article in TheRegister.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

Cyber Security Today, Week in Review for week ending Friday, April 26, 2024

This episode features a discussion on the latest in the Change Healthcare ransomware attack, a vulnerability in an abandoned Apache open source project, the next step in Canada's proposed critical infrastructure cybersecurity law and the future

Cyber Security Today, April 26, 2024 – Patch warnings for Cisco ASA gateways and a WordPress plugin

This episode reports on the malicious plugin worm that refuses to die

Cyber Security Today, April 24, 2024 – Good news/bad news in Mandiant report, UnitedHealth admits paying a ransomware gang, and more

This episode reports on the danger of using expired open-source packages, a tool used by a Russian hacking group and passw

Google Play introduces new biometric verification with a user warning

Google has recently announced updates to the biometric verification process for Google Play purchases, aiming to bolster security...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways