lockbit2 attacks Mosaic Eins

Incident Date:

May 13, 2022

World map

Overview

Title

lockbit2 attacks Mosaic Eins

Victim

Mosaic Eins

Attacker

Lockbit2

Location

Sathon, Mosaic Eins

Bangkok, Mosaic Eins

First Reported

May 13, 2022

Mosaic Eins Targeted by Lockbit2 Ransomware Group

Company Overview

Mosaic Eins, a business services company, has been targeted by the Lockbit2 ransomware group, as announced on the group's dark web leak site. The company operates in the Business Services sector, yet there is limited information available about the size of the company or its specific services. The company's website does not provide detailed information about its operations or the industries it serves.

Industry Standout

Mosaic Eins does not appear to have any notable standout features within its industry. The Business Services sector is broad, encompassing a wide range of activities, including management consulting, accounting, advertising, and more.

Vulnerabilities

The specific vulnerabilities that made Mosaic Eins a target for the Lockbit2 ransomware group are not detailed in the available information. Nonetheless, the Lockbit2 group has been notably active in targeting various sectors, including healthcare and public health, critical manufacturing, and government facilities. According to the FBI's Internet Crime Complaint Center (IC3), in 2023, 14 of the 16 critical infrastructure sectors had at least one member fall victim to a ransomware attack. The top five ransomware variants impacting members of a critical infrastructure sector were Lockbit, ALPHV/Blackcat, Akira, Royal, and Black Basta.

Mosaic Eins, a business services company, has been targeted by the Lockbit2 ransomware group. The company's website provides limited information about its operations and services, and there is no specific information available about the vulnerabilities that led to the attack. The Lockbit2 group has been active in targeting various sectors, including healthcare and public health, critical manufacturing, and government facilities.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.