Continental 'held to ransom', refuses to confirm if LockBit has stolen data
The ransomware group is threatening to leak the data it has on the German manufacturer tonight if a ransom isn't paid
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
You are now subscribed
Your newsletter sign-up was successful
The LockBit ransomware group has claimed an attack on German manufacturer Continental, which is refusing to confirm whether its data has been stolen.
LockBit claimed the attack on its leak site and is threatening to publish the company’s data by 15:45:36 UTC, according to its deep web blog. At this time, the group hasn’t specified what the data contains or how much it allegedly has, just that it will publish “all available data".
When asked for comment, Continental referred IT Pro to a statement it had published on 24 August 2022 regarding a cyber attack. It declared it had been the victim of an attack which infiltrated parts of its IT systems.
The company claimed to have detected the attack, but then managed to avert it and that its business activities hadn’t been affected. It added that it had full control over its IT systems and that the systems of third-party providers hadn’t been affected either.
The company's August statement made no reference to data, stolen or otherwise. When pressed on whether the company was aware if LockBit was in possession of any of its data, a Continental spokesperson told IT Pro that it is "not commenting on this beyond the statement that has already been published on our website in August".
RELATED RESOURCE
LockBit is one of the leading ransomware organisations currently in operation and operates on a double extortion model which involves stealing data from a victim - which is usually a business or other type of organisation - and threatening to leak it if a ransom isn't paid.
Victims are usually encouraged to pay the ransom demand up front, or in some cases, they are afforded a window in which time they can negotiate the ransom demand down to a lower rate.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
LockBit has a history of claiming attacks on large businesses and those claims were ultimately revealed to be untrue. This week, French multinational Thales confirmed to IT Pro that the claims made by LockBit concerning an attack on its systems were unfounded following an internal investigation.
Similarly, it repeated this behaviour with cyber security firm Mandiant earlier this year, claiming to have taken more than 350,000 files from the company and intended to publish them.
However, the company found no evidence that the attack had been carried out, and the countdown reached zero without data being published. LockBit later admitted the incident was a 'PR stunt'.
Zach Marzouk is a former ITPro, CloudPro, and ChannelPro staff writer, covering topics like security, privacy, worker rights, and startups, primarily in the Asia Pacific and the US regions. Zach joined ITPro in 2017 where he was introduced to the world of B2B technology as a junior staff writer, before he returned to Argentina in 2018, working in communications and as a copywriter. In 2021, he made his way back to ITPro as a staff writer during the pandemic, before joining the world of freelance in 2022.
-
AutoCAD Users may have a ransomware problem – here's what they can doIn-depth A new malware family is currently using the same file types as the professional design software AutoCAD
-
Google Workspace just got a huge Gemini updateNews Google is targeting deeper Gemini integration across a range of Workspace applications
-
Sectigo taps Clint Maddox to lead global field operationsReviews The appointment follows a year of strong momentum for the security vendor as it expands its global channel footprint
-
The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in lifeNews With family responsibilities and mortgages to pay, it's not teenagers dishing out malware or carrying out cyber extortion
-
Ransomware gangs are using employee monitoring software as a springboard for cyber attacksNews Two attempted attacks aimed to exploit Net Monitor for Employees Professional and SimpleHelp
-
Ransomware gangs are sharing virtual machines to wage cyber attacks on the cheap – but it could be their undoingNews Thousands of attacker servers all had the same autogenerated Windows hostnames, according to Sophos
-
Google issues warning over ShinyHunters-branded vishing campaignsNews Related groups are stealing data through voice phishing and fake credential harvesting websites
-
The FBI has seized the RAMP hacking forum, but will the takedown stick? History tells us otherwiseNews Billing itself as the “only place ransomware allowed", RAMP catered mainly for Russian-speaking cyber criminals
-
Everything we know so far about the Nike data breachNews Hackers behind the WorldLeaks ransomware group claim to have accessed sensitive corporate data
-
There’s a dangerous new ransomware variant on the block – and cyber experts warn it’s flying under the radarNews The new DeadLock ransomware family is taking off in the wild, researchers warn
