Subway reportedly hit by LockBit ransomware – but is it half-baked speculation?
Subway has allegedly suffered a data breach at the hands of none other than the notorious LockBit ransomware gang.
According to The Register, the ransomware-as-a-service provider added the sandwich makers to its data leak site earlier this week after one of its affiliates made away with gigabytes of sensitive data.
“We exfiltrated their SUBS internal system which includes hundreds of gigabytes of data and all financial [aspects] of the franchise, including employee salaries, franchise royalty payments, master franchise commission payments, restaurant turnovers etc,” LockBit stated. “We are giving some time for them to come and protect this data, if no[t], we are open to sell to competitors.”
In other words, demands were sent Subway’s way, and the affiliate that breached it is now waiting for a response.
At the same time, Subway is giving everyone the silent treatment. Maybe the company tried to keep the news quiet, and maybe it wasn’t even aware of the attack until LockBit boasted about it.
“The biggest sandwich chain is pretending that nothing happened,” the group apparently said.
Subway has allegedly told media sources it is investigating the claims of the breach. If you were wondering how it could be possible that a company wasn’t aware of a ransomware attack (given its disruptive potential) – hackers have started skipping the encryption part and moving straight to the part where they steal the data.
This is a relatively new development that started occurring in the past couple of years. Apparently, building, developing, maintaining, and deploying ransomware on the target system became too cumbersome. Also, with companies getting better at backing up their data and defending from infections, in some instances insisting on the encryptor simply isn’t worth it. Instead, the threat actors would just steal the data and demand money in exchange for not leaking it to the public.
More from TechRadar Pro
Subway has allegedly suffered a data breach at the hands of none other than the notorious LockBit ransomware gang. According to The Register, the ransomware-as-a-service provider added the sandwich makers to its data leak site earlier this week after one of its affiliates made away with gigabytes of sensitive data.…
Recent Posts
- If Vampire Survivors and Spelunky had a baby, it’d be Messhof’s Blood Dungeon
- Grand Theft Auto VI is warping the video game release calendar
- 9 dog-care gadgets that are so clever they deserve a treat — including an ingenious on-the-go water solution and a ‘canine FitBit’
- Control Resonant is a sequel — and also a starting point
- Summer Game Fest Live 2026: The biggest news, trailers, and announcements
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023