Last Ransomware victims

Sponsored by Hudson RockUse Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business


Groups

173


Victims

13161


Victims this month

107


Victims this year

1758
This page lists the latest 100 ransom claims detected by Ransomware.live. We continously scrape ransomware group sites to detect new victims.
Ransomware.live has been tracking ransomware's victims since April 2022.


Ransomware.livedoes not exfiltrate, download, host, repost, or disclose any stolen data. Any legal concerns regarding the content should be directed at the attackers, notRansomware.live. This platform is dedicated to cybersecurity awareness, reporting on ransomware incidents to inform the public.Ransomware.liveoperates independently, with no affiliation or alignment with any ransomware groups, and does not host or distribute infringing content. All information is automatically gathered and redacted from publicly accessible sources, including ransomware leak sites on the dark web.




View summary page

DE flag

crystal-d.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 13:12
Estimated Attack Date: 2025-03-07

At Crystal D, we have been manufacturing corporate gifts, recognition awards and crystal promotional products for more than 20 years.

Victim:   |  Group: 
CH flag

Bauer-Walser AG 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 12:47

Sector: Not Found
Bauer Walser AG is a leading company in the precious metals indus try with a 100-year history of success. We are ready to upload more than 50 GB of essential corporate doc uments such as: corporate NDA’s, contact numbers and e-mail addre sses of employees and customers, financial data (audits, payment details, reports), corporate licenses, agreements and contracts, etc.

Group: 
IT flag

Gruppo C.R S.p.a 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 12:24

Sector: Not Found
Gruppo C.R S.p.a In addition to the main activity represented by the large-scale retail sector, the company, always animated by the great spirit of initiative of its President, over the years has entered other commercial sectors, such as catering and fitness, and in recent times has also organized itself with a real technical structure, ready to study the identification of new solutions both technological and commercial and innovative for the realization of new outlets The large-scale retail sector is specifically characterized by 13 supermarkets under the Conad brand with reference to the food sector, and 1 store under the Upim brand with regard to the non-food sector, and also 2 pet stores under the Pet Store Conad brand. To complete the Group's business proposition, a new Cookery brand was created in 2016 on the occasion of the new opening of the Domus shopping center. To date, the GroupCr has 8 stores under the Cookery brand. Established for our in-house café/diner in the mall, it has since become a full-fledged production center. In this laboratory, bakery, pastry, dairy and kitchen products are prepared daily, with a distribution network for all our supermarkets. I n addition, since 2016 the company has decided to create together with other experts in the field, a craft beer production company, which is marketed with direct supplies to several highly specialized catering establishments in Italy and Europe.Geo: Italy - Leak size: 255 GB Archive - Contains: Files, SQL

Group: 
ID flag

FKS Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 12:24

Sector: Not Found
FKS Group FKS Group is a South-East Asian holding company focused on food, infrastructure and property. Its companies combine a strong commitment to logistics and infrastructure with deep domestic and international understanding to realize the potential of businesses and people across the region. FKS Group strives to exceed stakeholders’ expectation and investment by ensuring a continued growth of the Group and developing employee’s competencies. The Group’s significant interests in agriculture, sugar refineries, infrastructure and property developments are managed by the subsidiaries.Geo: Singapore - Leak size: 177 GB Archive - Contains: Files

Group: 
ES flag

Coop57 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 11:34

OVER 12,000 IDS AND PASSPORTS OF CITIZENS OF DIFFERENT COUNTRIES WERE TAKEN Coop57 is a financial instrument that is part of the fair and solidarity finance system. Its mission is to provide options to meet the diverse financial needs of citizens and actors in the social economy. To achieve this goal, Coop57 is integrated into a network of microfinance organizations and federations to jointly develop strategies for building a social and solidarity economy and creating alternative models of the economic cycle.

Victim:   |  Group: 
SG flag

The Fullerton Hotelsand Resorts 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 11:18

The Fullerton Hotels and Resorts owns and operates four propertie s in the Asia-Pacific, with three award-winning hotels in the pri me Central Business District locations of Singapore and Sydney, a s well as a luxury oceanfront resort in Hong Kong. We are ready to upload more than 148 GB of essential corporate do cuments such as: NDA’s and corporate licenses, agreements and con tracts, driver licenses, passports and other employee and custome r documents, financial data (audits, payment details, reports), e tc.

Group: 
NL flag

Thiekon Constructie 

Company logo
Ransomware Group:

Discovery Date: 2025-04-08 10:03

Sector: Construction
Thiekon Constructie BV is a company from Reijen (Netherlands) with more than 40 years of experience in steel structures and zinc coatings. It is the only one in the country with its own hot-dip galvanizing plant, which allows steel processing within a single company. The company performs fabrication and assembly of steel elements (from small parts to complete structures) and provides powder coating service on request. This provides a centralized approach to work using steel, zinc and painting technologies.

Victim:   |  Group: 
CA flag

Doman Building Materials Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 23:37

Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM

Victim:   |  Group: 
US flag

Andretti Indoor Karting & Games 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 23:36

Andretti Indoor Karting and Games was established in 2001 and is based in Orlando, Florida. They currently have four state of the art entertainment and event destinations located in Florida, Georgia and Texas. Two additional locations will be opening in 2020 in The Colony, Texas and Katy, Texas. Andretti Indoor Karting and Games has undergone exponential expansion over the last four years and will be debuting several more of their legendary entertainment centers across the United States in the near future. Their locations feature varying entertainment options all under one roof including high-speed super-karts, multi-level tracks, state of the art arcade, cutting edge virtual reality attractions, challenging ropes obstacle courses, unique two-level laser tag arenas, boutique bowling and custom high-tech mini-golf. Each location also offers a fresh, hand-crafted menu, a full bar and in-house gourmet catering to over 10,000+ square feet of event and meeting space.

Victim:   |  Group: 
 flag

galesburg.org 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 22:07

Sector: Not Found
USA - Galesburg Area Chamber of Commerce

Victim:   |  Group: 
GB flag

Cambridge Fluid Systems 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 21:22

They are a full-service provider and Original Equipment Manufacturer (OEM) for high technology industries, committed to delivering the performance you demand, on time and on budget. They focus on continuous improvement to achieve operational ...

Victim:   |  Group: 
 flag

The Komec 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 21:20

Sector: Not Found
What makes Komec truly unique is that its vision and philosophy are not just empty statements that serve no purpose. As the driving force of both factory and product, our two essential values of reliability and honesty, are shared by the enti ...

Victim:   |  Group: 
US flag

Spring Creek Golf & Country Club 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 21:19

Spring Creek Golf Country Club offers golf services and a variety of membership options for enthusiasts. The club provides a vibrant social atmosphere, hosting events such as weddings, business meetings, and gatherings for its members. It is ...

Victim:   |  Group: 
AU flag

JKC Australia LNG 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 21:17

Sector: Energy
JKC Australia LNG Pty Ltd is a company that operates in the Insurance industry. It employs 10 to 19 people and has 1M to 5M of revenue. The company is headquartered in Wickham, Northern Territory, Australia. The company didn't enter to the c ...

Victim:   |  Group: 
US flag

American Air Conditioning & Heating 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 19:47

At American Air Conditioning and Heating Co., we pride ourselves on providing quality service to both residential and commercial customers in the San Antonio area. One of our top priorities is saving you money, and we firmly believe a system ...

Victim:   |  Group: 
IN flag

Dhoot Transmission 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 19:46

Dhoot Transmission is a manufacturer and supplier of automotive components to OEMs. Manufactures wire harness, electronics, copper wire enamelling, tooling components, stamping components, moulding components and cable components for two-whee ...

Victim:   |  Group: 
CH flag

Privat-Spitex Schweiz GmbH 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 19:44

Sector: Healthcare
Industry: Offices of Other Health Practitioners , Ambulatory Health Care Services , Health Care and Social Assistance , Nurses and other medical assistants. Accelerate growth, navigate risk, and control costs with reliable data and insights t ...

Victim:   |  Group: 
 flag

P**o*** 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 19:02

Sector: Not Found
We have breached a U.S.-based financial services firm. 381GB of sensitive data has been secured. The name will be made public in a few hours. This is a warning.

Victim:   |  Group: 
CN flag

CVTE 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 19:02

Sector: Technology
We have breached the internal systems of Guangzhou Shiyuan Electronic Technology, securing sensitive files that, if exposed, would cause serious disruption across operations and partnerships.

Victim:   |  Group: 
 flag

Telecontrol 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 17:11
Estimated Attack Date: 2025-04-01

Sector: Technology
One of Telecontrol’s main objectives is to fully meet the client’s needs by delivering services with the utmost care and professionalism, with a view to continuous quality improvement, while respecting the environment and the Health and Safety of its staff.

Victim:   |  Group: 
US flag

Metal Sales Manufacturing Corporation 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 17:08
Estimated Attack Date: 2025-04-04

**Website**: metalsales.us.com **Revenue**: $270.1 Million Metal Sales is the largest manufacturer of metal roofing, wall, and building systems in the United States, also offering metal fabrication

Victim:   |  Group: 
SG flag

asiapacificex.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:31
Estimated Attack Date: 2025-04-06

Sector: Not Found
employee documents(CEO included), corporate emails, finance, HR and many more! In case you cant find readme file: have a look at OBS cloud share: obs://apex-om-fileshare or obs://apex-private-img

Victim:   |  Group: 
IT flag

TIME Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:13

Sector: Not Found
TIME develops and installs BMS, an ERP system and with both high- level technological and application features, to meet the market needs of Italian SMEs in production and business process manageme nt/monitoring. We are ready to upload a lot of essential corporate documents suc h as: financial data (audits, payment details, reports), employee HR documents, contact numbers and e-mail addresses of employees and customers, etc.

Victim:   |  Group: 
IT flag

ASOLO DOLCE SAS 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:12

Sector: Not Found
Asolo Dolce Spa operates within the Production of rusks and biscu its; production of preserved pastry products industry. It was inc orporated in 2006. Its headquarters are located at Via Enrico Fer mi 51 Asolo Veneto 31011. We are ready to upload more than 17 GB of essential corporate doc uments such as: contact numbers and e-mail addresses of employees and customers, financial data (audits, payment details, reports) , etc.

Victim:   |  Group: 
PL flag

SMYK 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:12

Sector: Not Found
SMYK stores offer a wide selection of clothing and footwear, toys , baby accessories and other products for children aged 0-14. The SMYK chain’s advantage is the availability of a multitude of pro ducts of various categories for children aged 0-14 “under one roo f”. We are ready to upload more than 28 GB of essential corporate doc uments such as: corporate NDA’s, corporate licenses, agreements a nd contracts, financial data (audits, payment details, reports), contact numbers and e-mail addresses of employees and customers, etc.

Group: 
IT flag

Baucenter.it 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:04
Estimated Attack Date: 2024-08-24

Sector: Not Found
BAUCENTER is a reliable partner for private and commercial bathroom and wellness projects, offering complete solutions for wall and floor coverings. With 50 years of industry experience, their competent advice ensures high aesthetic and desig ...

Victim:   |  Group: 
 flag

sunbayhotel.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:03

Sunbay Hotel Barbados is an affordable family-friendly resort located on the scenic south coast of Barbados. Offering a range of accommodations including standard, superior, deluxe, and family rooms, the hotel is designed to create lasting me ...

Victim:   |  Group: 
 flag

Dalincoln 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 16:01
Estimated Attack Date: 2024-10-09

Sector: Not Found
Tri-west Building Supplies (D.A. Lincoln) We specialize in the sale, installation and service of In Bay Automatics, Self Serve, Tunnel Systems, and Truck/Bus Wash Systems. At D.A. Lincoln we manufacture the Lincoln Series Self Serve Car/Truc ...

Victim:   |  Group: 
CA flag

Flo Components 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 15:59

Sector: Not Found
FLO Components Ltd. is an automatic greasing systems specialist and the leading supplier of "Total Lube Solutions" to major manufacturers FLO Components Ltd. is an automatic greasing systems specialist and the leading supplier of "Total Lub ...

Victim:   |  Group: 
GB flag

St Edmund's College 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 15:58
Estimated Attack Date: 2024-10-22

Sector: Education
St. Edmund's College is a co-educational Catholic special high school for students with vision impairment or other special needs. As a special school, St. Edmund's provides an individualised education program for students with a clinically di ...

Victim:   |  Group: 
US flag

Hewsco.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 15:56
Estimated Attack Date: 2024-12-22

Sector: Not Found
Hews Company, LLC is a family-owned and Equal Opportunity Employer headquartered in the Greater Portland area for over 85 years. We offer a competitive Wage and Benefits Package, including health and dental coverage, a 401K retirement plan, a ...

Victim:   |  Group: 
PL flag

Wertex Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-07 15:54
Estimated Attack Date: 2024-12-25

Sector: Not Found
The Wertex Group is committed in providing product utilizing the lastest innovative technologies in fabrics and fibers. It takes dedication to our craft, a commitment to quality and a genuine and ongoing understanding of our customers' needs ...

Victim:   |  Group: 
AE flag

Dubai Company 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:31

Sector: Not Found
Different Locker

Group: 
 flag

Texas Construction Firm 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:31

Sector: Construction
Name disclosed soon

Group: 
TW flag

Optimax Technology 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:31

Sector: Technology
Pending

Group: 
FR flag

doumen.fr 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:31
Estimated Attack Date: 2025-03-22

Sector: Not Found
Still in negotiation

doumen.fr has been previously claimed by Qilin for an attack estimated on 2025-03-22.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-04-06

Victim:   |  Group: 
US flag

Phil Smith Automotive Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:25
Estimated Attack Date: 2025-03-29

Phil Smith Automotive Group, headquartered in Lighthouse Point, Florida, is a dealership that sells and services Acura, Kia, Dodge, Jeep, Subaru, Chevrolet, Chrysler, Toyota, Mercedes-Benz, Ford, Lincoln, Hyundai, Nissan, and Ram vehicles.

Victim:   |  Group: 
 flag

Dermatology Solutions 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:24
Estimated Attack Date: 2025-03-31

Sector: Healthcare
At Dermatology Solutions, we provide the highest quality dermatology care, aesthetic and cosmetic dermatology, and now Mohs surgery to the community of Fort Myers, Florida and surrounding areas. Our office specializes in skin care to help you attain healthy and beautiful skin. Whether you are seeking medical care for a problematic skin condition or you simply want to preserve and enhance your skin's youthful glow, our team of medical professionals is committed to providing you with exceptional care for your skin care needs

Victim:   |  Group: 
 flag

National Electronic Transit (N.E.T) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:22
Estimated Attack Date: 2025-04-01

Located in Lyndhurst, NJ, National Electronic Transit (N.E.T) specializes in high-value specialized delivery and print production logistics

Victim:   |  Group: 
NG flag

Altara 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:21
Estimated Attack Date: 2025-04-01

Sector: Not Found
Altara is a global Microsoft Dynamics Gold Certified partner recognized for providing outstanding ERP & CRM implementations and Microsoft expertise. Our relentless pursuit of customer satisfaction and ability to implement customer specific solutions backed with unparalleled support places us in the top Microsoft Dynamics partners worldwide. What makes Altara a leading Microsoft® Dynamics provider also makes us a valuable partner in furthering the success of our clients’ businesses.

Victim:   |  Group: 
EG flag

IACC Holdings 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:19
Estimated Attack Date: 2025-04-04

IACC Holdings is a privately owned investment company with a focus on shipping and logistics. Our origins trace back to 1979, when industry pioneer Mostafa El Ahwal founded International Associated Cargo Carrier (IACC). Decades of being at the forefront of the Egyptian and regional markets, has poised IACC Holdings to take a leadership role in investing in, and developing the regional and global supply chain.

Victim:   |  Group: 
US flag

Texla Energy Management 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:18
Estimated Attack Date: 2025-04-04

Sector: Energy
Texla Energy Management, Inc. is a privately-held energy marketing company based out of Houston, Texas

Victim:   |  Group: 
US flag

Krypton Solutions 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:11
Estimated Attack Date: 2025-04-01

Sector: Technology
Krypton Solutions is a provider of rapid prototyping and low/medium volume turn-key contract manufacturing services to the semiconductor, medical, defense and telecommunications industries. Krypton Solutions corporate office is located in 3060 Summit Ave, Plano, Texas, 75074, United States and has 141 employees. The total amount of data leakage is 244.30 GB

Victim:   |  Group: 
CA flag

FS Tool Corporation 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 22:10
Estimated Attack Date: 2025-04-01

FS Tool Corporation (founded 1973) - offers cost-effective, solution-based approaches to tooling needs across a variety of industries. The company manufactures carbide and diamond tools for composites, non-ferrous metals, plastics and woodworking. FS Tool corporate office is located in 71 Hobbs Gate, Markham, Ontario, L3R 9T9, Canada and has 111 employees.

Victim:   |  Group: 
FR flag

Groupe Delcourt 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 18:59
Estimated Attack Date: 2025-03-22

Sector: Not Found
Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
DE flag

Hofmann Fördertechnik GmbH 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 18:54
Estimated Attack Date: 2025-03-29

Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
IN flag

IDS Infotech 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 18:51

Sector: Technology
Exfiltraded data : yes - Encrypted data : no

Victim:   |  Group: 
MX flag

grupotersa.com.mx 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 18:28

Sector: Not Found
Greetings! Today we are posting here the new company, "Grupo TERSA". Company Description: Grupo TERSA was born from the dream of our Chairman and Founder Rodrigo Valle Hernández in 1982, which has now become the dream of a great team of workers...

Victim:   |  Group: 
US flag

graphiquedefrance.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 18:27

Sector: Not Found
Shop our Lifestyle & Gift Boutique for Designer Stationery, Journals, Planners, Calendars, Holiday, Home Decor, Greeting Cards, Gifts & beyond! Fashion Your Life with Graphique!

Victim:   |  Group: 
CH flag

Swiss Capitals Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 10:59

Swiss Capitals Group Swiss Capitals Group is the holding of a group of companies with more than 40 years of experience of investments in differents sectors. More

Victim:   |  Group: 
US flag

National Ticket Company 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 10:41
Estimated Attack Date: 2025-04-04

National Ticket Company – Tickets and wristbands since 1907.

Victim:   |  Group: 
CH flag

Bosshard-Farben AG 

Company logo
Ransomware Group:

Discovery Date: 2025-04-06 08:00
Estimated Attack Date: 2025-03-28

[IA generated] Swiss company specializing in the production of paints, varnishes, and glazes for building and wood protection,

Victim:   |  Group: 
JO flag

Eagle Distilleries 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 23:55

Status: 29d 20h 8m 34s - Size Data: 50 GB

Victim:   |  Group: 
CL flag

caschile.cl 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 23:41

CAS–CHILE® is a company with 30 years of experience in the Information Technology market, dedicated to the design, development, and maintenance of public and municipal management software. As experts in the design, construction, and maintenance of software for public management, we develop IT platforms distributed throughout the country with excellent results, backed by the improvement, optimiz

Victim:   |  Group: 
 flag

Optimax Technology 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 17:17
Estimated Attack Date: 2025-04-05

Sector: Technology
Optimax Technology ========================Pwn3d=================================== By Qilin & Devman ================================================================ p.s sorry guys did not yet wheight the files allot of ...

Victim:   |  Group: 
IN flag

ABITL Finishing 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 17:15

United States

Victim:   |  Group: 
US flag

Baltimore Steel Erectors 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 17:13

Sector: Construction
United States

Victim:   |  Group: 
US flag

Hawk Technology 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 17:12

Sector: Technology
United States

Victim:   |  Group: 
US flag

Csm Engineering 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 17:10

Sector: Not Found
United States

Victim:   |  Group: 
US flag

L&S Mechanical (Reuploaded) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 14:24
Estimated Attack Date: 2025-04-03

Sector: Construction
L&S Mechanical began as a Dallas-based contractor in 1985 and has grown over the years to have six locations out of Dallas, Fort Worth, Houston, San Antonio and Austin.  Over the past thirty years, we have become known as the premier provider of new home construction in the plumbing industry. In the last 10 years we have added HVAC and electrical services to now offer the Tri-Trade Solution℠.  The people you have worked with, the quality, and the service our customers have come to expect remain the same, but now we are making it even easier to get things done. Being a single-source provider of mechanical services, our customers are able to more efficiently control their schedules and meet their deadlines. In 2017, we have expanded our brand once again to offering Preventive Maintenance Programs that will allow old and new customers the ability to have honest, quality preventive work done on their homes for years to come.We pride ourselves on having some of the most highly trained technicians in the industry. Technicians participate in an online training platform and have on-site, trade specific trainers that keeps them current on product specs, new industry developments, and providing superior customer service. We also do training in the field, and provide instructor-led training on a regular basis.After delivering over 100,000 homes across the US, we know what builders and contractors are looking for; and we take that knowledge to all the homeowners we serve as well.  From start to closing, we will deliver excellence every stage of the way.The company is in the investment portfolio of STERLING GROUP - https://sterling-group.com/- Database- Project documentation- Drawings- Financial documents- Personal information of employees and clients https://www.lsmech.com/

Victim:   |  Group: 
MX flag

Industrial Corona de México 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 14:22
Estimated Attack Date: 2025-03-29

Industrial Corona de México has been a manufacturer of injection-molded plastic parts and tools for the industrial, automotive, electronics, and consumer markets since 1964. We specialize in high volume production of precision plastics including small aesthetic components and tight tolerance functional parts.With two certified facilities located in San Juan del Rio, Queretaro and Mexico City, we are committed to quality throughout the mold design and manufacturing to the injection and finish of the part.- Database- Drawings- Financial documents- Personal information of employees and clients http://icorona.mx/en/index.html

Victim:   |  Group: 
US flag

HighWire Press 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 10:47
Estimated Attack Date: 2025-03-18

Sector: Technology
Jiraware <<3 !! We hold sensitive data from HighWire Press, a leading platform serving scholarly publishers. The data includes internal documents, communications, and materials that could impact both HighWire and its publishing partners.

HighWire Press has been previously claimed by Babuk2 for an attack estimated on 2025-03-18.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-04-05

Victim:   |  Group: 
US flag

Racami 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 10:47

Sector: Technology
Jiraware <<3 !! We have breached Racami’s internal systems. The data in our possession poses a serious threat to their business continuity, reputation, and client trust.

Victim:   |  Group: 
PL flag

Asseco 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 10:46

Sector: Technology
Jiraware <<3 !! We have breached Asseco’s internal systems, stealing sensitive files, communications, financial records, and source material

Victim:   |  Group: 
SE flag

LeoVegas AB 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 10:46

We have compromised the internal systems of LeoVegas AB. The data in our possession threatens their operations, regulatory compliance, and customer trust.

Victim:   |  Group: 
CY flag

Nexia Poyiadjis IT 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 09:22

Sector: Technology
Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
CZ flag

TEDOM 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 09:19

Exfiltraded data : yes - Encrypted data : no

Victim:   |  Group: 
US flag

Blackmon Mooring 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 09:17

Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
US flag

Apex Logistics International 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 08:45

Apex Logistics International Deeply committed to the international transportation industry for over 20 years, Apex has gained rich experience in various verticals, providing customers with comprehensive, first-class and efficient logistics services around the globe. Apex Group has 46 self-operated offices across six continents, with over 2500 employees, providing high-quality, and efficient international logistics services to global customers. As a comprehensive logistics service provider founded in 2001, Apex has expanded its footprint across the Americas, Asia, Europe, and Oceania, and ranked No.2 airfreight forwarder in China 2023. Apex is a world class full-service global logistics and supply chain solutions provider with up to 4,000 charters annually and 370,000 TEUs global shipping container volume in 2023. Additionally, Apex Group also offers cross-border railway transportation covering the Eurasian continent, which provides customers with diversified and full-segment logistics solutions.Geo: Singapore (office) - Leak size: 62 GB Archive - Contains: Files

Victim:   |  Group: 
JP flag

FUJIFILM 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 08:45

Sector: Technology
Fujifilm has actively promoted the research and development of liposome formulations by harnessing its advanced nano-dispersion technology, analysis technology, and process technology cultivated and evolved through its wide range of product development. In 2017, the company began a U.S. Phase I clinical trial of FF-10832, a liposome-based agent that encapsulates the approved anti-cancer agent gemcitabine *** . In the preclinical mice studies on FF-10850 and FF-10832 *4 Fujifilm has observed the extension of the survival period as a result of immune checkpoint inhibitor *5 combination therapy. In addition, Fujifilm has been promoting the application of liposome for use with next-generation drugs such as nucleic acid drugs and gene therapy drugs. Looking towards future growth, in order to ensure a stable supply of high-quality liposome formulations, Fujifilm is developing a manufacturing facility for producing investigational and commercial drugs through its subsidiary, FUJIFILM Toyama.Geo: Singapore - Leak size: NO DATA 1 pdf - Contains: NO DATA 1 pdf

Victim:   |  Group: 
US flag

Latronica Law Firm, P.C 

Company logo
Ransomware Group:

Discovery Date: 2025-04-05 05:38
Estimated Attack Date: 2025-04-03

**Website**: latronicalaw.com **Revenue**: $5 Million The Latronica Law is a firm specializing in personal injury/negligence cases, criminal defense, and divorce/family law, with a focus on maximizi

Victim:   |  Group: 
US flag

Massachusetts Municipal Wholesale Electric 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 22:55
Estimated Attack Date: 2025-02-04

Sector: Energy
In the early 1970s, MMWEC worked to gather and focus the collective strength of municipal utilities on issues and developments that were threatening the viability of public power in Massachusetts. Joint action led to the acceptance of municipal utilities into the New England Power Pool in 1973, giving municipals the right to joint ownership in the large, regional power plants under development by private utilities.

Victim:   |  Group: 
 flag

Royal Glass 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 20:42

United States

Victim:   |  Group: 
US flag

Fraser Trebilcock 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 20:41

United States

Victim:   |  Group: 
CA flag

Drive Products 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 18:32

Drive Products offers a complete range of truck mounted equipment, products, services and solutions through a growing branch and partner network across Canada. Drive Products has continued to build on its diversification strategy centered around strong distribution, systems integration, upfitting and manufacturing capabilities.

Victim:   |  Group: 
CA flag

Doman 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 18:30

Sector: Not Found
Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM

Victim:   |  Group: 
FR flag

Sinari's software POC 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 17:45

Sector: Technology
Our team managed to leak software development, personal data, customers data, internal data and most important source codes from there. We have tried to make a deal with Mr.Ruffle regarding data protection. The gentlemen thought this was ...

Victim:   |  Group: 
US flag

amourgis.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 17:44
Estimated Attack Date: 2024-12-25

Sector: Not Found
Amourgis & Associates is an experienced Ohio Personal Injury and Bankruptcy Law firm with offices in Cleveland, Akron, Canton, Toledo, Columbus, Cincinnati and Dayton. Amourgis & Associates handle personal injury cases caused by auto accident ...

amourgis.com has been previously claimed by Lynx for an attack estimated on 2024-12-25.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-04-04

Victim:   |  Group: 
IN flag

DELOPT 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 16:46

Sector: Not Found
DELOPT is a world-class Company in the area of Defence Electronic s & Electro-Optics and solutions for Retail market with In-Store Technology. We are ready to upload more than 70 GB of essential corporate doc uments such as: corporate NDA’s, contact numbers and e-mail addre sses of employees and customers, corporate licenses, agreements a nd contracts, financial data (audits, payment details, reports), passports and other employee and customer documents, etc.

Victim:   |  Group: 
US flag

Source Photonics 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 15:25

Sector: Technology
Source Photonics is a leading global provider of innovative and reliable technology that enables communications and data connectivity. Our team was successful in extracting the following documents: Financial statements of the company Partnership agreements, licenses and contracts Employee passports and other personal documents The icing on the cake: Corporate non-disclosure agreements Passport scans You have a week to come to an agreement with us, after that your information will be made freely available.

Victim:   |  Group: 
CA flag

AWM Alliance Real Estate Group Ltd. 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 15:15

AWM-Alliance Real Estate Group Ltd. provides highly disciplined p roperty management, leasing and sales services for all types of r eal estate. We are ready to upload more than 67 GB of essential corporate doc uments such as: internal corporate correspondence, financial data (audits, payment details, reports), contact numbers and e-mail a ddresses of employees and customers, HR documents, passports and other employee and customer documents, etc.

Victim:   |  Group: 
TW flag

RORZE Technology Inc. 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 15:15

Sector: Technology
Well-known throughout the global semi-conductor industry, Japan’s number 1 wafer handling solutions provider RORZE Corporation has now set-up a subsidiary in Taiwan. We are ready to upload some of essential corporate documents such as: financial data (audits, payment details, reports), contact n umbers and e-mail addresses of employees and customers, etc.

Victim:   |  Group: 
TR flag

yuagam 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 14:40
Estimated Attack Date: 2025-02-25

Sector: Not Found
Founded in 2005 under the aegis of the Istanbul Education and Culture Foundation (ISTEK) and Yeditepe University, the Yeditepe University Healthcare Institutions group is one of the most established and respected multidisciplinary hospital gr ...

Victim:   |  Group: 
US flag

Sansone Group 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 13:55

Sector: Not Found
Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
US flag

Parker Fabrication, Inc 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 13:42

Parker Fabrication, Inc.'s Manufacturing & Engineering techniques are able to produce the utmost in service, customized applicatio ns, & design for any Metal project. We are ready to upload some essential corporate documents such as : financial data (audits, payment details, reports), internal cor porate correspondences, etc.

Victim:   |  Group: 
US flag

Henna Chevrolet 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 13:42

Henna Chevrolet, part of the Henna Motor Co., has been proudly se rving Austin, Texas, motorists for more than seven decades, and w e look forward to continuing to provide our customers with the sa me unsurpassed level of care that they've come to expect from the Henna name. We are ready to upload more than 43 GB of essential corporate doc uments such as: driver licenses, financial data (audits, payment details, reports), contact numbers and e-mail addresses of employ ees and customers, personal SSN’s, etc.

Victim:   |  Group: 
US flag

National Sign corp 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 12:30

Exfiltraded data : yes - Encrypted data : yes

Victim:   |  Group: 
US flag

raymurray.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 11:56

All data of this company will be available for download on 14.04.2025. Since its humble beginnings in 1973, Ray Murray, Inc. (RMI) has grown into one of the largest distributors of propane gas equipment and appliances in the United States. F ...

Victim:   |  Group: 
AT flag

dgr.at 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 11:54

Sector: Technology
All data of this company will be available for download on 14.04.2025. With our ERP solution PROFI.neo, we are the right partner for building services, electrical, plumbing, heating, ventilation and air conditioning installation companies, pl ...

Victim:   |  Group: 
IT flag

yumaspazio.com 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 10:16

Sector: Not Found
All data of this company will be available for download on 14.04.2025. Yuma Spazio is a company that operates in the Architecture, Engineering & Design industry.

Victim:   |  Group: 
NZ flag

The ToolShed 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 08:50

Sector: Not Found
The ToolShed We specialise in bringing high quality product directly to you at bargain, tradesman prices. We stock a wide range of hand tools, power tools, air tools, automotive tools, outdoor tools, machinery, compressors, welders, accessories, consumables and much, much more. The ToolShed is well renowned for providing imported high quality tools, along with also being major stockists of Makita, Hitachi, DeWalt, Milwaukee, Powerbuilt, Stanley and many more well-known brands. Originally formed over 30 years ago and run by tradies, the ToolShed is New Zealand owned by real down to earth kiwi jokers who love tools! You can count on us to bring you speciality service and knowledge, so that you can get the right tool for your job. If we don't have it, we'll be happy to source it for you. What ever you do, day to day or at home, The ToolShed will be here to help you through your project, job, or industry - bringing you quality without the cost.Geo: New Zealand - Leak size: Files - Contains: 160 GB Archive

Victim:   |  Group: 
TR flag

turkish defense military 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 06:52

turkish defense military

Victim:   |  Group: 
DE flag

rheinmetall.com (Rheinmetall Defence) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 06:51

rheinmetall.com (Rheinmetall Defence)

Victim:   |  Group: 
US flag

Woodmen Valley Chapel 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 06:36

Sector: Not Found
Woodmen Valley Chapel These are the beliefs that unite the people of Woodmen. They are gospel-centered and firmly rooted in the Bible. Although we are a non-denominational church, we are committed to these time-tested essential truths of the Christian faith. They serve as our true north, defining who we are as a church and permeating the way we live.Geo: USA - Leak size: 274 GB Archive - Contains: Files

Victim:   |  Group: 
US flag

Cherokee County School District 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 01:00

Sector: Education
The school nurse has the expertise to identify, assess, plan, implement, and evaluate the health needs of the individual student and the school community. School nurses, grounded in ethical and evidence-based practice, are leaders who link health and education, provide care coordination, advocate for quality student-centered care, and collaborate to develop systems that enable individuals and communities to reach their full potential. (Adopted by the National Association of School Nurses Board of Directors, February 2017). But Cherokee County School District, for all its talents, is rather negligent about the security of its network. We present to your attention the personal data of employees, financial and tax reports.

Victim:   |  Group: 
IN flag

gangotreehomes.com (RealEstate) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:28

Sector: Not Found
gangotreehomes.com (RealEstate)

Victim:   |  Group: 
 flag

Secret plans of Indian army 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:28

Sector: Not Found
Secret plans of Indian army

Group: 
BD flag

Bangladesh Armed Forces (BangLadesh Army) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:27

Bangladesh Armed Forces (BangLadesh Army)

Group: 
SA flag

Saudi Arabian military and government internal center 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:26

Saudi Arabian military and government internal center

Group: 
GR flag

Hellenic Airforce 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:26

Hellenic Airforce

Group: 
Next