108 Victims for Public Sector in 2025


Sponsored by Hudson RockUse Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business


 Manufacturing|  Construction |  Transportation/Logistics |  Technology |  Healthcare |  Financial Services |  Public Sector |  Business Services |  Retail |  Consumer Services |  Energy |  Telecommunication |  Agriculture and Food Production |  Hospitality and Tourism


This page lists all the victims of ransomware attacks in Ransomware.live database for Public Sector in 2025. We continously scrape ransomware group site to detect new victims.
Ransomware.live uses AI to identify the activity of victims, but please note that the results may not be 100% accurate—do not hesitate to contact us if you notice any errors.
DE flag

heilbronn.de 

Company logo
Ransomware Group:

Discovery Date: 2025-04-16 23:27

[AI generated] N/A

Victim:   |  Group: 
US flag

Oregon Department of Environmental Quality 

Company logo
Ransomware Group:

Discovery Date: 2025-04-15 08:45

Oregon Department of Environmental Quality They think their data hasn't been stolen. They're sorely mistaken.Over 2.5 terabytes of unique data. (SQL, employee data and more)We are waiting for your suggestions.

Victim:   |  Group: 
PL flag

Powiatowy Urząd Pracy w Żorach 

Company logo
Ransomware Group:

Discovery Date: 2025-04-13 20:36
Estimated Attack Date: 2025-03-30

Powiatowy Urząd Pracy w Żorach(Poland)

Victim:   |  Group: 
CZ flag

Správa služeb hlavního města Prahy 

Company logo
Ransomware Group:

Discovery Date: 2025-04-10 04:19
Estimated Attack Date: 2025-04-09

Status: 29d 13h 39m 0s - Size Data: 200 GB

Victim:   |  Group: 
US flag

chesterfieldtwp.org 

Company logo
Ransomware Group:

Discovery Date: 2025-04-09 23:53
Estimated Attack Date: 2025-03-06

The Chesterfield Township Library provides meeting rooms so that the library can promote its program of service to the community. The library board of trustees recognizes that the library facilities belong to the community and permits facilities use by established local non-commercial groups and organizations. The policy is subject to change at any time. ===> Phone Number: (504) 896-7800 Revenue: $21.3 Million Employees: 174 Data:49gb

Victim:   |  Group: 
US flag

North Platte Natural Resources District 

Company logo
Ransomware Group:

Discovery Date: 2025-04-09 17:11
Estimated Attack Date: 2024-11-27

The North Platte Natural Resources District is committed to protecting Nebraska's natural resources, focusing on water quality, forestry, soil management, and conservation practices. Serving the local community, they provide resources and pro ...

Victim:   |  Group: 
US flag

ccso2014.local(sheriffs) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-09 12:04

Cleburne County, Arkansas, population 25,970, is the states 75th and youngest county, formed in 1883 from three existing counties and named for Confederate Army Major General Patrick R. Cleburne. The landscape is rugged and mountainous in the north changing to rolling terrain in the south. Greers Ferry Lake, a reservoir of 40,000 acres, was formed by a hydropower dam of the same name in the early 1960s and created a recreational boom that continues to grow. Tourism is important to the economy, as are cattle and poultry farming and industrial development. The Little Red River provides an excellent fishery for rainbow trout. Fishing, boating, and hunting are important to the county. Cleburne County often hosts fishing tournaments, business meetings, reunions, crafts shows and Saturday night country music.

Victim:   |  Group: 
TR flag

turkish defense military 

Company logo
Ransomware Group:

Discovery Date: 2025-04-04 06:52

turkish defense military

Victim:   |  Group: 
BD flag

Bangladesh Armed Forces (BangLadesh Army) 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:27

Bangladesh Armed Forces (BangLadesh Army)

Group: 
SA flag

Saudi Arabian military and government internal center 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:26

Saudi Arabian military and government internal center

Group: 
GR flag

Hellenic Airforce 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 23:26

Hellenic Airforce

Group: 
IT flag

Polizia italia mail access 

Company logo
Ransomware Group:

Discovery Date: 2025-04-03 03:20

Polizia italia mail access

Victim:   |  Group: 
BD flag

navy-mil-bd 

Company logo
Ransomware Group:

Discovery Date: 2025-04-02 18:47

navy-mil-bd

Victim:   |  Group: 
SA flag

Royal Saudi Air Force 

Company logo
Ransomware Group:

Discovery Date: 2025-04-02 07:57

N/A

Victim:   |  Group: 
IN flag

drdo.gov.in 

Company logo
Ransomware Group:

Discovery Date: 2025-04-02 01:49

drdo.gov.in

Victim:   |  Group: 
US flag

stattorney.org 

Company logo
Ransomware Group:

Discovery Date: 2025-03-31 19:01

USA - State's Attorney Office

Victim:   |  Group: 
RW flag

moh.gov.rw 

Company logo
Ransomware Group:

Discovery Date: 2025-03-31 17:23

moh.gov.rw

Victim:   |  Group: 
 flag

National Defense Corp 

Company logo
Ransomware Group:

Discovery Date: 2025-03-29 21:57

AMTEC is a manufacturer of lethal and non-lethal ammunition, explosives, and cartridges for military and law enforcement use. Globally, AMTEC is the largest volume producer of 40mm Grenade Ammunition and Fuzing. Their capabilities include precision assembly, explosive load, assemble and pack, metal forming and plating, and primary explosive manufacturing. The company is headquartered in Janesville, Wisconsin.

Victim:   |  Group: 
CA flag

Town of Orangeville 

Company logo
Ransomware Group:

Discovery Date: 2025-03-29 20:28
Estimated Attack Date: 2025-02-27

[AI generated] The Town of Orangeville is the municipal government serving the town of Orangeville, Ontario, Canada. The council is responsible for ensuring the provision of necessary services to its residents, and for making decisions on behalf of the community. Its services include but are not limited to public safety, waste management, infrastructure, and community development.

Victim:   |  Group: 
FR flag

Thaon-les-Vosges 

Company logo
Ransomware Group:

Discovery Date: 2025-03-29 16:30
Estimated Attack Date: 2025-03-11

Municipality of the commune of Thaon-les-Vosges

Victim:   |  Group: 
US flag

bedfordma.gov 

Company logo
Ransomware Group:

Discovery Date: 2025-03-29 12:41
Estimated Attack Date: 2025-03-28

All data of this company will be available for download on 08.04.2025. Bedford is located on the map of Massachusetts in Middlesex County-about fifteen miles northwest of Boston near the junction of routes 3 and 95 [128]. The Town may be acce ...

Victim:   |  Group: 
CA flag

City of Fort St. John (city.cityfsj.local) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-27 12:56
Estimated Attack Date: 2025-02-25

With a population of 21,000 and growing with the city itself, Fort St. John is the largest city in Northeastern BC. Fort St. John is not only the largest city in the Northeast Region of BC; it is also the largest city in British Columbia situated along the world-famous Alaska Highway. If you are driving the highway, we invite you to stop in and explore all that Fort St. John has to offer. You wont be disappointed! Fort St. John is The Energetic City for good reason. The title reflects not only our large resource base of oil, natural gas, forestry and agriculture, but also the vitality of our residents who are, on average, 9 years younger than the average population in the rest of the province. Modern-day pioneers continue to bring a fresh spirit of exploration, innovation and connection to community within our city

Victim:   |  Group: 
PK flag

nadra.gov.pk - NADRA official Of Pakistan Army & (Andhra Pradesh) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-27 07:51

nadra.gov.pk - NADRA official Of Pakistan Army & (Andhra Pradesh)

Victim:   |  Group: 
IQ flag

mot.gov.iq - Iraqi Ministry of Commerce (Of Trade) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-26 13:14

mot.gov.iq - Iraqi Ministry of Commerce (Of Trade)

Victim:   |  Group: 
CA flag

www.afnigc.ca 

Company logo
Ransomware Group:

Discovery Date: 2025-03-25 14:51

[AI generated] N/A

Victim:   |  Group: 
MY flag

Mpaj.gov.my 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 07:22

Mpaj.gov.my

Victim:   |  Group: 
CN flag

mohrss.gov.cn ( Ministry of Human Resources and Social Security ) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 23:53

mohrss.gov.cn ( Ministry of Human Resources and Social Security )

Victim:   |  Group: 
US flag

National Safety Council 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:13
Estimated Attack Date: 2025-03-17

The National Safety Council (NSC) (founded in 1913) is a nonprofit, nongovernmental public service organization dedicated to protecting life and promoting health in the United States of America. National Safety Council corporate office is located in 1121 Spring Lake Dr, Itasca, Illinois, 60143, United States and has 501 employees.

Victim:   |  Group: 
US flag

Oag.state.va.us 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:25

[AI generated] N/A

Victim:   |  Group: 
TH flag

mof.go.th - Ministry of Finance (Thailand) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:53

mof.go.th - Ministry of Finance (Thailand)

Victim:   |  Group: 
TH flag

smic.mi.th (Thailand Intelligence Agency) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 09:23

smic.mi.th (Thailand Intelligence Agency)

Victim:   |  Group: 
VE flag

www.gob.ve 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:58

www.gob.ve

Victim:   |  Group: 
US flag

United States County Palm Beach Goverment 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:56

United States County Palm Beach Goverment

Victim:   |  Group: 
BR flag

Municipal taxation Secretariat Access - Brazil Goverment 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:55

Municipal taxation Secretariat Access - Brazil Goverment

Victim:   |  Group: 
CN flag

Intelligence Bureau of the Joint Staff Department of the Central Military Commission... 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 18:28

Intelligence Bureau of the Joint Staff Department of the Central Military Commission China

Victim:   |  Group: 
MY flag

rac.gov.my 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 18:26

rac.gov.my

Victim:   |  Group: 
KI flag

Kiribati Government 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 00:23
Estimated Attack Date: 2025-03-18

Days00006666Hours22222222Minutes44448888Seconds22224545 Kao.gov.ki they have limited time to Contact Us before we Leak : Government Ministries and …

Victim:   |  Group: 
ID flag

kominfo.go.id 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:24
Estimated Attack Date: 2024-07-01

kominfo.go.id

kominfo.go.id has been previously claimed by Braincipher for an attack estimated on 2024-07-01.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-03-18

Victim:   |  Group: 
ID flag

pajak.go.id 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:23

pajak.go.id

Victim:   |  Group: 
ID flag

dukcapil.kemendagri.go.id (SIAK DUKCAPIL MINISTRY OF HOME AFFAIRS OF INDONESIA) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:22

dukcapil.kemendagri.go.id (SIAK DUKCAPIL MINISTRY OF HOME AFFAIRS OF INDONESIA)

Victim:   |  Group: 
US flag

Cleveland Municipal Court 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 14:32

All data will be published on Mar. 21. Cleveland Municipal Court The court is located in the Justice Center in downtown Cleveland. The Cleveland Municipal Court has the ability to hear and decide specific kinds of cases including civil dispu ...

Victim:   |  Group: 
US flag

www.cityofbellville.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-17 12:55
Estimated Attack Date: 2025-03-12

Bellville is a city in and the county seat of Austin County, Texas, in the southeastern part of the state. The population was 3,794 at the 2000 census. Bellville was named for Thomas B. Bell, one of Stephen F. Austin's Old Three Hundred, after he donated land for the new county seat established by voters in 1846. The original county seat was located in San Felipe. Bellville is located at the inter

Victim:   |  Group: 
TR flag

March, 6, 2025: City government office in Van (Turkey) van.bel.tr hacked. 7.4 TiB is for s... 

Company logo
Ransomware Group:

Discovery Date: 2025-03-17 02:12

City government office in Van (Turkey)

Victim:   |  Group: 
IN flag

icmr.gov.in 

Company logo
Ransomware Group:

Discovery Date: 2025-03-17 01:20

icmr.gov.in

Victim:   |  Group: 
KR flag

Ministry Of Defense of the Republic Of Korea 

Company logo
Ransomware Group:

Discovery Date: 2025-03-16 23:46

Ministry Of Defense of the Republic Of Korea

Victim:   |  Group: 
US flag

Florida Department of Transportation (FDOT) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-16 14:50

Florida Department of Transportation (FDOT)

Victim:   |  Group: 
IL flag

knesset.gov.il 

Company logo
Ransomware Group:

Discovery Date: 2025-03-15 10:22
Estimated Attack Date: 2024-10-25

knesset.gov.il

knesset.gov.il has been previously claimed by Hellcat for an attack estimated on 2024-10-25.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-03-15

Victim:   |  Group: 
VN flag

The Ministry of National Defense - mod.gov.vn (NavyVietnam) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-14 10:14

The Ministry of National Defense - mod.gov.vn (NavyVietnam)

Victim:   |  Group: 
BR flag

nuclep.gov.br. Nuclep Brazil 

Company logo
Ransomware Group:

Discovery Date: 2025-03-14 08:00
Estimated Attack Date: 2025-03-13

nuclep.gov.br. Nuclep Brazil

Victim:   |  Group: 
IQ flag

parliament.iq 

Company logo
Ransomware Group:

Discovery Date: 2025-03-14 07:59

parliament.iq By Babuk Locker 2.0

Victim:   |  Group: 
CN flag

Intelligence Bureau of the Joint Staff Department of the Central Military Commission China 

Company logo
Ransomware Group:

Discovery Date: 2025-03-14 07:56

Intelligence Bureau of the Joint Staff Department of the Central Military Commission China

Victim:   |  Group: 
 flag

Indian military and government defense 20TB 

Company logo
Ransomware Group:

Discovery Date: 2025-03-14 07:55

Indian military and government defense 20TB

Victim:   |  Group: 
IQ flag

Iraqi Ministry of Finance 

Company logo
Ransomware Group:

Discovery Date: 2025-03-13 00:57

Iraqi Ministry of Finance

Victim:   |  Group: 
IQ flag

Iraqi Council of Ministers 

Company logo
Ransomware Group:

Discovery Date: 2025-03-13 00:55

Iraqi Council of Ministers

Victim:   |  Group: 
US flag

Gaines County, Texas 

Company logo
Ransomware Group:

Discovery Date: 2025-03-11 19:38
Estimated Attack Date: 2025-02-20

Gaines County Courthouse 101 South Main Mailing Address: P.O. Box 847 Seminole, Texas 79360 (432) 758-5411

Victim:   |  Group: 
US flag

Springfield Water and Sewer Commission 

Company logo
Ransomware Group:

Discovery Date: 2025-03-11 19:28

Documents.

Victim:   |  Group: 
BR flag

fnde.gov.br brazilian government 

Company logo
Ransomware Group:

Discovery Date: 2025-03-11 02:54

fnde.gov.br brazilian government

Victim:   |  Group: 
PK flag

wapda.gov.pk 

Company logo
Ransomware Group:

Discovery Date: 2025-03-11 02:53

wapda.gov.pk By Babuk Locker 2.0

Victim:   |  Group: 
IN flag

Access to Indian Ministry of Defence and Military Secret (DRDO) documents By Babuk Locker ... 

Company logo
Ransomware Group:

Discovery Date: 2025-03-10 22:21

Access to Indian Ministry of Defence and Military Secret (DRDO) documents By Babuk Locker 2.0

Victim:   |  Group: 
US flag

State Bar of Texas (www.texasbar.com) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-09 13:32
Estimated Attack Date: 2025-02-12

Founded in 1939, the State Bar of Texas agency assists the Texas Supreme Court in overseeing attorneys licensed to practice law in Texas. The State Bar of Texas is located in Austin, TX

Victim:   |  Group: 
GB flag

British virgin islands London Office 

Company logo
Ransomware Group:

Discovery Date: 2025-03-09 08:40

British virgin islands London Office Opened in 2002, the BVI London Office represents the interests of the Government and people of the British Virgin Islands in the United Kingdom and Europe.

Victim:   |  Group: 
 flag

bayvillage.org 

Company logo
Ransomware Group:

Discovery Date: 2025-03-07 16:05
Estimated Attack Date: 2025-02-19

[AI generated] Bayvillage.org is the online portal for the town of Bay Village in Ohio, providing residents with crucial information on a range of city services, community events, department contacts, local businesses, and city council updates. It aims to promote civic involvement, boost local businesses and provide up-to-date news for residents. The site is meant to serve as a primary point of contact between the city's administration and its people.

Victim:   |  Group: 
CA flag

www.hinton.ca 

Company logo
Ransomware Group:

Discovery Date: 2025-03-06 19:05
Estimated Attack Date: 2025-03-05

[AI generated] www.hinton.ca is the website for The Town of Hinton, a community located in the province of Alberta, Canada. The website provides residents and visitors with a wide range of information including municipal services, recreation opportunities, local news, development plans and various administrative details. It serves as the digital platform for the local government, ensuring transparency and ease of access.

Victim:   |  Group: 
UA flag

Ministry of Foreign Affairs of Ukraine 

Company logo
Ransomware Group:

Discovery Date: 2025-03-06 13:21

The data of the Ministry of foreign affairs of Ukraine ended up in our hands. The part of it was sold succesfully. Among the rest data: private correspondence, personal information, decrees etc.

Victim:   |  Group: 
US flag

USGS 

Company logo
Ransomware Group:

Discovery Date: 2025-03-06 01:42
Estimated Attack Date: 2023-07-12

Extract from The 19 biggest gitlabs

Victim:   |  Group: 
TR flag

City government office in Van (Turkey) - van.bel.tr 

Company logo
Ransomware Group:

Discovery Date: 2025-03-06 01:24

[AI generated] City Government Office in Van, Turkey, also known as van.bel.tr, is an administrative body responsible for local governance in the city of Van. It is involved in a range of municipal tasks such as urban planning, delivering local services, maintaining public facilities, and more. The office is a crucial component of the city’s infrastructure, supporting the growth, sustainability, and daily operations of Van.

Victim:   |  Group: 
US flag

Legal Aid Society of Salt Lake 

Company logo
Ransomware Group:

Discovery Date: 2025-03-04 09:23

Legal Aid Society of Salt Lake is a non-profit law firm in Salt Lake City, Utah, providing free legal representation to low-income families in family law cases such as divorce, custody, and guardianship, as well as offering free representation to victims of domestic violence for protective orders and civil stalking injunctions.

Victim:   |  Group: 
US flag

City of Aurora 

Company logo
Ransomware Group:

Discovery Date: 2025-03-01 20:27
Estimated Attack Date: 2025-02-26

Aurora is a home rule city located in Arapahoe, Adams, and Douglas counties, Colorado, United States. The city's population was 386,261 at the 2020 United States census with 336,035 residing in Arapahoe County, 47,720 residing in Adams County, and 2,506 residing in Douglas County. City of Aurora corporate office is located in 15151 E Alameda Pkwy Ste 4600, Aurora, Colorado, 80012, United States

Victim:   |  Group: 
US flag

Wayne County, Michigan 

Company logo
Ransomware Group:

Discovery Date: 2025-03-01 18:27

Wayne County is located in the state of Michigan, United States. We offer you more than 130 SQL databases . A large collection of confidential criminal investigation files, personal data of residents.

Victim:   |  Group: 
PW flag

Ministry of Health of Palau 

Company logo
Ransomware Group:

Discovery Date: 2025-02-28 16:31

All data will be available soon. The Palau Ministry of Health is located in the island nation of Palau. The negligent attitude and complete lack of cooperation has led innocent citizens of this state to a huge data leak and compromise. Appare ...

Victim:   |  Group: 
US flag

sublettecountywy.gov 

Company logo
Ransomware Group:

Discovery Date: 2025-02-28 00:39
Estimated Attack Date: 2024-11-27

Meetings To Be Public Government is and should be the servant of the people, and it should be fully accountable to them for the actions which it supposedly takes on their behalf. (U.S.C. CAN 2183) The courts, legislature, administrative agencies, and the state, county, and municipal governments should ever be mindful that theirs is public business, and the public has a right to know how its servants are conducting its business. Wyoming Supreme Court The object of the public records act is disclosure, not secrecy... Wyoming Supreme Court Wyoming statutes contain two important open government laws: the Wyoming Public Records Act (16-4-201) and the law governing meetings of governmental agencies (16-4-401). Starting with the meeting law, the statute declares that agencies in the state, be it boards, commissions, or committees, of the State, County, municipality, or other political subdivision exist in order to conduct public business and that business is to be conducted openly, with certain exceptions. If you receive a jury summons and have any questions or concerns please call the Clerk of District Court at 307-367-4376.

Victim:   |  Group: 
US flag

www.townofbourne.com 

Company logo
Ransomware Group:

Discovery Date: 2025-02-27 22:07
Estimated Attack Date: 2025-02-26

[AI generated] TownofBourne.com is not a company but a municipal website for the town of Bourne, Massachusetts. The site provides valuable information about the town's government, departments, services, and resources. It also contains important news, updates, event details and more about Bourne. The website helps to facilitate a smooth communication line between the town administration and its residents.

Victim:   |  Group: 
US flag

Mundelein Park & Recreation District 

Company logo
Ransomware Group:

Discovery Date: 2025-02-25 19:57
Estimated Attack Date: 2025-02-24

Mundelein Park & Recreation District (founded in 1954) provides 33 park sites offering over 735 acres of open space, playgrounds, ball fields, lakes, and trails. Mundelein Park & Recreation District corporate office is located in 1401 N Midlothian Rd, Mundelein, Illinois, 60060, United States and has 437 employees. The total amount of data leakage is 118.20 GB

Victim:   |  Group: 
ID flag

tni.mil.id 

Company logo
Ransomware Group:

Discovery Date: 2025-02-25 16:14

DATABASE OF NATIONAL INDONESIAN ARMY | NAMA NRP PANGKAT KORPS GRADE SATUAN JABATAN TGL LAH...

Victim:   |  Group: 
GB flag

Metropolitan Borough of Gateshead 

Company logo
Ransomware Group:

Discovery Date: 2025-02-22 17:55
Estimated Attack Date: 2025-02-21

The Metropolitan Borough of Gateshead is a metropolitan borough in the metropolitan county of Tyne and Wear, England. It includes Gateshead, Rowlands Gill, Whickham, Blaydon, Ryton, Felling, Birtley, Pelaw, Dunston and Low Fell. The borough forms part of the Tyneside conurbation, centred on Newcastle upon Tyne. At the 2021 census, the borough had a population of 196154. Gateshead Council office is located in 12 Gladstone Ter, Gateshead, Tyne and Wear, NE8 4DY, United Kingdom and has 684 employees.

Metropolitan Borough of Gateshead has been previously claimed by Medusa for an attack estimated on 2025-01-14.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-02-22

Victim:   |  Group: 
US flag

Benton Police Department 

Company logo
Ransomware Group:

Discovery Date: 2025-02-22 17:48
Estimated Attack Date: 2025-02-21

Benton Police Department - city police department. Benton Police Department corporate office is located in 114 S East St Ste 100, Benton, Arkansas, 72015, United States and has 52 employees.

Victim:   |  Group: 
BG flag

Supreme Administrative Court of Bulgaria 

Company logo
Ransomware Group:

Discovery Date: 2025-02-19 20:25
Estimated Attack Date: 2025-01-27

The Supreme Administrative Court provides for supreme judicial supervision over the precise and uniform application of laws in administrative justice. The Supreme Administrative Court hears complaints and protests against the actions of the Council of Ministers, the Prime Minister, Deputy Prime Ministers, Ministers, heads of other positions directly subordinate to the Council of Ministers, Acts of the Supreme Judicial Council, Acts of the Bulgarian Citizen Bank, Acts of Regional Regional Governing Acts, as well as other actions specified in the law; This is pronounced in disputes about the legality of taxes; It has reviewed the quality of judicial acts issued in administrative cases and is considering requests for annulment of compulsory courts' decisions in administrative cases.

Victim:   |  Group: 
ZM flag

Eservices.gov.zm 

Company logo
Ransomware Group:

Discovery Date: 2025-02-19 10:21
Estimated Attack Date: 2025-02-12

To the leadership of Zamservices We have compromised Eservices.gov.zm main servers, backup, internal network, we also exfiltrated all data before […]

Victim:   |  Group: 
 flag

www.cityoftarrant.com 

Company logo
Ransomware Group:

Discovery Date: 2025-02-15 16:35
Estimated Attack Date: 2025-02-10

[AI generated] City of Tarrant is the official website for the City of Tarrant, Alabama. It provides comprehensive information about various city services, department details, municipality codes, and ordinances. It acts as a communication bridge between citizens and local government, providing resources for business licenses, utility payments, and community event updates.

Victim:   |  Group: 
US flag

Northeast Delta Human Services Authority 

Company logo
Ransomware Group:

Discovery Date: 2025-02-15 12:20
Estimated Attack Date: 2025-02-09

NE Delta HSA is devoted to delivering programs and services that encourage citizens of Northeast Louisiana to reach their full human potential. Three tenets guide these efforts: excellent customer service, greater access to services and competent, quality care. We serve Caldwell, East Carroll, West Carroll, Ouachita, Lincoln, Madison, Franklin, Morehouse, Jackson, Tensas, Richland and Union Parishes

Victim:   |  Group: 
US flag

City of McKinney 

Company logo
Ransomware Group:

Discovery Date: 2025-02-15 12:19
Estimated Attack Date: 2025-02-09

McKinney Economic Development Corporation works in conjunction with the City of McKinney, Texas to promote and provide economic development for the city.

Victim:   |  Group: 
US flag

Bethany Lutheran Church 

Company logo
Ransomware Group:

Discovery Date: 2025-02-14 12:13

Bethany Lutheran is a dynamic church located just south of Grantsburg Wisconsin. You are invited to join us this Sunday for Sunday School from 9:30-10:30 AM (except during summer months). Educational programming for all ages. Followed by wors ...

Victim:   |  Group: 
US flag

snoqualmietribe.us 

Company logo
Ransomware Group:

Discovery Date: 2025-02-13 14:35

[AI generated] The Snoqualmie Tribe is an indigenous group in the Pacific Northwest of the US that is federally recognized since 1999. Located in Snoqualmie, Washington, the tribe operates a number of businesses such as the Snoqualmie Casino and invests in initiatives focused on environmental protection, education, and cultural preservation among other key areas. It aims to improve the wellbeing of its tribal members and the local community.

Victim:   |  Group: 
US flag

Central District Health Department 

Company logo
Ransomware Group:

Discovery Date: 2025-02-12 23:39

Central District Health Department is a company that operates in the Government industry in the field of health care. Central District Health Department corporate office is located in 1137 S Locust St, Grand Island, Nebraska, 68801, United States and has 119 employees. The total amount of data leakage is 84.40 GB

Victim:   |  Group: 
ZM flag

E*******s.gov.zm 

Company logo
Ransomware Group:

Discovery Date: 2025-02-12 13:59

To the leadership of Z*********S We have compromised E*******s.gov.zm main servers, backup, internal network, we also exfiltrated all data before […]

Victim:   |  Group: 
ZA flag

weathersa.co.za 

Company logo
Ransomware Group:

Discovery Date: 2025-02-12 10:14
Estimated Attack Date: 2025-01-26

[AI generated] Weathersa.co.za is South Africa's national weather service, providing the most up-to-date weather forecasts, warnings, and observations to the public. The service covers all regions of South Africa, offering detailed reports including temperature, rainfall, wind speed, humidity, and more. The company uses advanced meteorological technology to deliver accurate data useful for various sectors such as agriculture, tourism, and disaster management.

Victim:   |  Group: 
ES flag

ACCEM.COM 

Company logo
Ransomware Group:

Discovery Date: 2025-02-10 14:28

[AI generated] Accem is a non-governmental organization based in Spain that specializes in providing assistance, services, shelter, and integration programs for refugees, immigrants, and displaced persons across various continents. They work to protect human rights and promote social interaction. Their goal is to improve the living conditions of people in vulnerable situations.

Victim:   |  Group: 
IL flag

Israel Police 

Company logo
Ransomware Group:

Discovery Date: 2025-02-09 11:41

To the self-proclaimed guardians of order in Israel, Your arrogance has been your downfall. Did you truly believe your digital fortresses were unassailable? That your firewalls, your protocols, and your illusions of security could keep us at bay? How naive. How tragically naive. Today, we stand before you not as a threat, but as a…

Victim:   |  Group: 
DE flag

GFZ Helmholtz Centre for Geosciences 

Company logo
Ransomware Group:

Discovery Date: 2025-02-04 21:12
Estimated Attack Date: 2025-02-01

Extract from Gitlabs: PT. ITPRENEUR INDONESIA TECHNOLOGY, GFZ Helmholtz Centre for Geosciences, LUA Coffee

Victim:   |  Group: 
 flag

brewsterfiredepartment.org 

Company logo
Ransomware Group:

Discovery Date: 2025-02-03 21:22

[AI generated] "Brewster Fire Department" appears to be a fire and emergency service provider based in Brewster, likely in the United States. As a fire department, they are likely responsible for providing rapid, professional response to fires, medical emergencies, and other incidents that threaten public safety. They may also offer public educational programs focused on fire safety, emergency preparedness, and related topics. Note that more specific information may vary by location.

Victim:   |  Group: 
 flag

Denton Regional Suicide Prevention Coalition 

Company logo
Ransomware Group:

Discovery Date: 2025-02-03 14:41
Estimated Attack Date: 2025-01-31

With over 200 GB of files stolen , company has 100 hours to contact us before making files public . The Denton Regional Suicide Prevention Coalition came together in June 2014 as a response to the high number of suicides in our area. We are d ...

Victim:   |  Group: 
PK flag

Punjab.gov.pk 

Company logo
Ransomware Group:

Discovery Date: 2025-01-31 18:53

To The Organization of Punjab.gov.pk We have owned the servers and extract ed all data of all officers and Employees working

Victim:   |  Group: 
US flag

njcar.org 

Company logo
Ransomware Group:

Discovery Date: 2025-01-31 15:08

Extract from Taking stock of 2024 Part 1

Victim:   |  Group: 
US flag

City Of Beloit 

Company logo
Ransomware Group:

Discovery Date: 2025-01-29 12:03

The beautiful and historic City of Beloit is located along Interstate 39/90, just north of the Wisconsin border. The City Center is located along the beautiful Rock River, while the new Gateway Business Park is easily accessible to the east side of Interstate 90.

Victim:   |  Group: 
IL flag

Israel Ministry of National Security 

Company logo
Ransomware Group:

Discovery Date: 2025-01-29 06:46

Ministry of National Security Hacked Happening now: 1- Hacking the comprehensive integrated management system of the regime’s shelters by Handala 2- Sound the red alert by Handala 3- People Go to shelters 4- Handala Close the Doors 5- Handala Play Kheybar Kheybar for Them 6- Handala Wipe the System 7- Plz Call 101 for saving…

Victim:   |  Group: 
ID flag

INDONESIA TAXPAYER IDENTIFICATION NUMBER (NPWP) 

Company logo
Ransomware Group:

Discovery Date: 2025-01-28 18:12

INDONESIA TAXPAYER IDENTIFICATION NUMBER (NPWP)

Victim:   |  Group: 
US flag

Carthage Police Department 

Company logo
Ransomware Group:

Discovery Date: 2025-01-28 17:09

Carthage Police Department Carthage Police Department

Victim:   |  Group: 
SG flag

sce.org.sg 

Company logo
Ransomware Group:

Discovery Date: 2025-01-28 12:44

The Singapore Cooperation Enterprise (SCE) was set up by the Ministry of Trade and Industry and the Ministry of Foreign Affairs of Singapore in 2006 to respond effectively to the multitude of foreign requests interested in Singapores development experience. SCE works closely with Singapores 16 ministries and over 60 statutory boards to scope out and tailor possible solutions to match the needs of foreign governments, and help meet their development objectives. SCE also serves as the focal point of access to expertise from Singapore across its public agencies. SCE is currently an integrated arm of Enterprise Singapore , the Singapore government agency championing enterprise development and supporting the growth of Singapore as a hub for global trading and startups. Our mission is to lead in public sector collaboration projects with foreign countries, so as to build long-term partnerships with foreign governments and generate economic spin-offs for Singapores private sector

Victim:   |  Group: 
MX flag

zapopan.gob.mx 

Company logo
Ransomware Group:

Discovery Date: 2025-01-27 08:16

zapopan.gob

zapopan.gob.mx has been previously claimed by Funksec for an attack estimated on 2025-01-13.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-01-27

Victim:   |  Group: 
JO flag

carc.gov.jo 

Company logo
Ransomware Group:

Discovery Date: 2025-01-27 08:14

carc.gov

carc.gov.jo has been previously claimed by Funksec for an attack estimated on 2025-01-09.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-01-27

Victim:   |  Group: 
MK flag

skopje.gov.mk 

Company logo
Ransomware Group:

Discovery Date: 2025-01-27 08:06

skopje.gov.mk

skopje.gov.mk has been previously claimed by Funksec for an attack estimated on 2024-12-14.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-01-27

Victim:   |  Group: 
MN flag

rtdc.gov.mn 

Company logo
Ransomware Group:

Discovery Date: 2025-01-27 08:05

rtdc.gov.mn access

rtdc.gov.mn has been previously claimed by Funksec for an attack estimated on 2024-12-17.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-01-27

Victim:   |  Group: 
PK flag

pbos.gov.pk 

Company logo
Ransomware Group:

Discovery Date: 2025-01-27 08:04

pbos.gov.pk

pbos.gov.pk has been previously claimed by Funksec for an attack estimated on 2024-12-17.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-01-27

Victim:   |  Group: 
IN flag

punjab.gov.in 

Company logo
Ransomware Group:

Discovery Date: 2025-01-26 13:37

[AI generated] Punjab.gov.in is the official online portal of the Government of Punjab in India. The website is designed to provide a comprehensive source of information about the government's various departments, initiatives, services, and policies. It offers online services like bill payments, applications, and complaints. It strives to enhance the government's transparency and the convenience of citizens, facilitating various digital services under one platform.

Victim:   |  Group: 
NG flag

www.lnrbda.gov.ng 

Company logo
Ransomware Group:

Discovery Date: 2025-01-24 16:43

5MB

Victim:   |  Group: 
PK flag

punjab.gov.pk 

Company logo
Ransomware Group:

Discovery Date: 2025-01-23 13:38

[AI generated] The "punjab.gov.pk" is not a company. It's the official website of the Government of Punjab, Pakistan. It provides a platform for e-governance and hosts information regarding various departments, policies, services and latest updates of the government. It's intended to increase transparency and efficiency in delivering government services to citizens.

Victim:   |  Group: 
AU flag

Christian Community Aid 

Company logo
Ransomware Group:

Discovery Date: 2025-01-22 04:46

CCA is a non-denominational service provider to the local communities. Contents: Valuable information (.jpg, .mp4, .mov, .xls, .doc, .mdf, .msg, .pdf... etc) https://ccas.org.au/

Victim:   |  Group: 
BD flag

navy-mil-bd 

Company logo
Ransomware Group:

Discovery Date: 2025-01-21 22:49

The Bangladesh Navy is the naval warfare branch of the Bangladesh Armed Forces, responsible for the defence of Bangladesh's 118,813 square kilometres of maritime territorial area from any external threat, the security of sea ports and exclusive economic zones of Bangladesh. Bangladesh Navy is a front line disaster management force in Bangladesh.

Victim:   |  Group: