LockBit gang claims Subway as latest victim

The gang is demanding that Subway pays ransom by 2 February. Subway stated it is investigating LockBit’s claims.

Computer keyboard with red key with open lock icon, security unsecured unlocked vulnerable concept

The LokcBit ransomware group asserted on its data leak website that Subway, the American fast-food restaurant franchise, is its most recent target.

LokcBit ransomware gang has claimed on its data leak site on 21 January, that American fast-food restaurant franchise Subway is its latest victim. The gang has claimed that they exfiltrated hundreds of gigabytes of data and has given the company time till 2 February to pay the ransom.

The post on its data leak site states, ‘The biggest sandwich chain is pretending that nothing happened. We exfiltrated their SUBS internal system which includes hundreds of gigabytes of data and all financial expects of the franchise, including employee salaries, franchise royalty payments, master franchise commission payments, restaurant turnovers etc. We are giving some time for them to come and protect this data, if no we are open to sell to competitors.’

LocBit has not shared any data samples yet. Subway has responded, stating that they are verifying the validity of the claim.

Why does it matter?

LockBit gang is one of the most active ransomware gangs, mainly targeting construction, manufacturing/industrial, and retail industries. It has claimed responsibility for 1009 incidents in 2023, which constituted nearly a quarter of the ransomware attacks last year.