icon
icon
icon
icon
$300 Off
$300 Off

News /

Articles /

LockBit Suffers Major Breach, 60,000 Bitcoin Addresses Compromised

Coin WorldThursday, May 8, 2025 10:22 am ET
1min read

LockBit, a prominent Ransomware-as-a-Service (RaaS) group, recently experienced a significant security breach that compromised approximately 60,000 Bitcoin addresses. The incident was reported by blockchain security firm SlowMist on May 8, who revealed that hackers exploited a PHP 0-day or 1-day vulnerability to gain unauthorized access to LockBit’s backend systems and admin console.

As a result of the breach, a compressed file containing sensitive data was leaked. The exposed information included private keys, internal chat records, and details of affiliated entities. The hackers left a message on the website stating, “Don’t do crime CRIME IS BAD crime is bad xoxo from Prague.”

Ask Aime: How does the LockBit ransomware breach impact Bitcoin holders?

LockBit, in a message to threat researcher Rey, clarified that only wallet addresses and chat logs were published from the attack. The platform asserted that no decryptors or source code were stolen during the breach. However, SlowMist, using its Mistrack system, traced one of LockBit’s Bitcoin wallet addresses and found that the transaction trail led directly to known crypto exchanges, suggesting that the attacker may have already attempted to cash out or launder the stolen funds.

LockBit has since offered a bounty for information on the hacker, claiming that the attacker may be someone called “xoxo” based in Prague. The group stated, “If you can provide accurate and reliable information about this person’s identity — I’m willing to pay for it.” This bounty offer is ironic, given that LockBit is itself a target of a US government bounty program. The US authorities accuse the group of executing over 2,500 ransomware attacks in more than 120 countries, with nearly 1,800 of those victims reportedly based in the United States. The Department of Justice claims the LockBit group extorted more than $500 million in ransom payments, with total losses, factoring in recovery and downtime, reaching into the billions.

Despite LockBit’s claims that only a lightweight management panel had been breached and that core tools like the locker builder, decryptors, and source code remained secure, the incident marks a significant blow to its criminal credibility among affiliates and clients. The breach highlights the vulnerabilities within the RaaS ecosystem and the potential for internal threats to disrupt operations. As the investigation continues, the impact of this breach on LockBit’s operations and the broader ransomware landscape remains to be seen.

Comments

Add a public comment...
Post
User avatar and name identifying the post author
11thestate
05/08
LockBit's 60k BTC leak is wild. Ransomware game's getting shaky. Who's next on the hacker hit list? 🤔
0
Reply
User avatar and name identifying the post author
OG_Time_To_Kill
05/08
Ransomware attacks causing billions in losses. LockBit's impact is huge. Hope your portfolio's diversified, not relying on $AAPL alone.
0
Reply
User avatar and name identifying the post author
BathrobeBoogee
05/08
@OG_Time_To_Kill How long you been holding $AAPL? Got any other big positions?
0
Reply
User avatar and name identifying the post author
themagicalpanda
05/08
60k BTC addresses compromised? That's a massive breach. LockBit's credibility's taking a hit. Time to rethink RaaS trust.
0
Reply
User avatar and name identifying the post author
goodpointbadpoint
05/08
Hackers always find vulnerabilities. LockBit's down, but other RaaS might be next. Keep those wallets safe, folks.
0
Reply
User avatar and name identifying the post author
Sgsfsf
05/08
Crypto exchanges be the ultimate wild west
0
Reply
User avatar and name identifying the post author
Mean_Dip_7001
05/08
LockBit's core tools seem safe, but reputation's tarnished. Will affiliates stick around or jump ship? Ransomware landscape shifting.
0
Reply
User avatar and name identifying the post author
provoko
05/08
I'm sticking with my crypto strategy of HODLing and dollar-cost averaging. Ransomware drama won't shake my resolve.
0
Reply
User avatar and name identifying the post author
WellWe11Well
05/08
LockBit's breach shows RaaS ecosystem's weak spots. Time for better security measures or risk more fallout.
0
Reply
User avatar and name identifying the post author
EndSeveral5452
05/08
@WellWe11Well True, RaaS security is a weak link.
0
Reply
User avatar and name identifying the post author
bottlethecat
05/08
LockBit's 0-day blunder, classic rookie move
0
Reply
User avatar and name identifying the post author
Excellent_Chest_5896
05/08
LockBit's breach is wild, but let's not forget, crypto's all about risk and reward. 🚀
0
Reply
User avatar and name identifying the post author
rareinvoices
05/08
@Excellent_Chest_5896 True, crypto's a rollercoaster.
0
Reply
User avatar and name identifying the post author
_Ukey_
05/08
LockBit's trying to play detective with their "xoxo" bounty. Irony much, given their US bounty status? 🙃
0
Reply
User avatar and name identifying the post author
joe4942
05/08
"Don't do crime CRIME IS BAD" - LOL, hackers trolling each other now. Ransomware world's got its own memes. 😂
0
Reply
User avatar and name identifying the post author
rltrdc
05/08
Ransomware game's getting shaky, not bullish here
0
Reply
User avatar and name identifying the post author
Mysterious-Dot-5617
05/08
OMG!I successfully capitalized on the BTC stock's bearish movement with Premium tools, generating $250!
0
Reply
Disclaimer: the above is a summary showing certain market information. AInvest is not responsible for any data errors, omissions or other information that may be displayed incorrectly as the data is derived from a third party source. Communications displaying market prices, data and other information available in this post are meant for informational purposes only and are not intended as an offer or solicitation for the purchase or sale of any security. Please do your own research when investing. All investments involve risk and the past performance of a security, or financial product does not guarantee future results or returns. Keep in mind that while diversification may help spread risk, it does not assure a profit, or protect against loss in a down market.
You Can Understand News Better with AI.
Whats the News impact on stock market?
Its impact is
fork
logo
AInvest
Aime Coplilot
Invest Smarter With AI Power.
Open App