GDLockerSec is a financially motivated ransomware group known for double extortion tactics globally.
Analyst brief
GDLockerSec is a financially motivated ransomware group solely focused on monetary gain. They target victims globally but exclude CIS countries, Cuba, North Korea, China, and non-profit hospitals from their operations. Their extortion strategy involves data theft and encryption, enforcing double extortion while prohibiting re-attacks on companies that have already paid. Defenders should focus on securing initial access vectors such as phishing or exploitation, enforce network segmentation, and ensure robust backup and recovery plans to avoid paying ransoms.
GDLockerSec
crime
Our team members are from different countries and we are not interested in anything else, we are only interested in dollars. We do not allow CIS, Cuba, North Korea and China to be targeted. Re-attacks are not allowed for target companies that have already made payments. We do not allow non-profit hospitals and some non-profit organizations be targeted.