The newly fashioned SatanLock ransomware group has introduced it’s shutting down. Earlier than disappearing, nevertheless, the group says it can leak all the info stolen from its victims later at the moment. The announcement was made on the gang’s official Telegram channel and darkish net leak website.
It’s additionally price noting that the group has deleted all sufferer listings that had been seen simply hours in the past. Now, anybody visiting their .onion website sees a message studying, “SatanLock challenge might be shut down – The information will all be leaked at the moment.”
SatanLock has been lively since early April 2025 and is thought for its aggressive ways. The group rapidly gained consideration, posting particulars of 67 victims on its darkish net leak website inside only a few weeks.
Curiously, as highlighted in a Could 2025 report, by Examine Level, greater than 65% of those victims had already appeared on leak websites run by different ransomware gangs. This means the group might have used shared infrastructure or intentionally tried to “re-claim” already compromised networks.
In accordance with an evaluation by Lockbit Decryptor, a cybersecurity agency that helps victims take away Lockbit ransomware, SatanLock is linked to a number of different infamous ransomware households, together with Babuk-Bjorka and GD Lockersec. These connections recommend the group is a part of a a lot bigger cybercriminal community.
The precise cause for SatanLock’s shutdown stays unclear. Simply final week, information broke that Hunters Worldwide, one other ransomware group, was shutting down too. Nevertheless, it was later clarified that the group is barely rebranding, transferring its focus to information breaches and leaks as a substitute of ransom calls for.
Hunters Worldwide now operates underneath the identify WORLD LEAKS. Is the SatanLock ransomware gang following the identical modus operandi? Perhaps we’ll by no means know, or possibly we’ll.
Even so, the shutdown of the SatanLock group is nice information for victims. It’s one much less cybercriminal gang on the market extorting unsuspecting people and companies with ransom calls for.