Last Ransomware victims

Sponsored by Hudson RockUse Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business


Groups

0


Victims

0


Victims this month

0


Victims this year

0
This page lists the latest 100 ransom claims detected by Ransomware.live. We continously scrape ransomware group sites to detect new victims.
Ransomware.live has been tracking ransomware's victims since April 2022.


Ransomware.livedoes not exfiltrate, download, host, repost, or disclose any stolen data. Any legal concerns regarding the content should be directed at the attackers, notRansomware.live. This platform is dedicated to cybersecurity awareness, reporting on ransomware incidents to inform the public.Ransomware.liveoperates independently, with no affiliation or alignment with any ransomware groups, and does not host or distribute infringing content. All information is automatically gathered and redacted from publicly accessible sources, including ransomware leak sites on the dark web.




View summary page

CA flag

www.scpautomation.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 19:06

[AI generated] "SCP Automation is a Canada-Based company dealing in automation, controls, and industrial IT. Their team of engineers and technicians specialize in the application of automation systems in a multitude of sectors including water treatment, food production, manufacturing, and energy. They aim to improve their clients' operational efficiency & productivity."

Victim:   |  Group: 
CA flag

www.gestionquintessence.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 19:04

[AI generated] Gestion Quintessence is a financial management company based in Quebec, Canada. It ensures optimal management of your family, personal, and business wealth. They provide services such as financial planning, tax planning, investment strategies, risk management, etc. Their professionals are dedicated to offering comprehensive support for various financial needs.

Victim:   |  Group: 
EU flag

www.engines.man.eu 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 19:02

[AI generated] Engines.man.eu is a section of the official website of MAN Energy Solutions, a highly regarded global player in the transport and energy industry. This specific section is dedicated to its wide range of engines. These include engines for marine applications, power generation, and off and on-road vehicles. Man Energy Solutions is renowned for its innovative, sustainable, and highly efficient engine technologies.

Victim:   |  Group: 
CA flag

www.abmenviro.ca 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 19:00

[AI generated] ABM Environmental is a Canadian company specializing in indoor environmental solutions. Their services primarily include air quality testing for mold, asbestos testing, and temperature & humidity issue solutions. They provide expertise that helps you understand the environment better and mitigate potential health risks. The company provides services in Vancouver, Surrey, and broader areas of British Columbia.

Victim:   |  Group: 
US flag

www.accessfinanceonline.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:59
Estimated Attack Date: 2025-02-28

[AI generated] N/A

Victim:   |  Group: 
CA flag

www.ahmadiyya.ca 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:57

Sector: Not Found
[AI generated] "www.ahmadiyya.ca" is the official website for Ahmadiyya Muslim Jama'at Canada, a religious community of Muslims who accept Mirza Ghulam Ahmad as the Promised Messiah. The organization promotes a peaceful understanding of Islam and the spiritual rejuvenation through the advent of the Promised Messiah. They also engage in educational, humanitarian, and interfaith activities.

Victim:   |  Group: 
US flag

www.elizajennings.org 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:55

Sector: Healthcare
[AI generated] Eliza Jennings is a non-profit organization offering a range of solutions for seniors including independent and assisted living, skilled nursing and rehabilitation services. Their commitment to enhance the lives of aging individuals is reflected in their innovative programs like SAIDO Learning, which has been scientifically proven to improve the symptoms of Alzheimer's disease and dementia.

Victim:   |  Group: 
US flag

www.sinkdirect.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:53

[AI generated] "SinkDirect.com" is an online-based retail company in the United States specializing in kitchen and bathroom sinks. Their wide variety of products includes stainless steel sinks, ceramic sinks, stone sinks, glass sinks, and copper sinks. Additionally, they provide related sink accessories. They are committed to providing quality products at economical prices with a commitment to superior customer service.

Victim:   |  Group: 
US flag

www.broadmoormethodist.org 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:52
Estimated Attack Date: 2025-03-06

Sector: Education
[AI generated] N/A

Victim:   |  Group: 
 flag

www.parklandmanufacturing.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:51
Estimated Attack Date: 2025-03-13

[AI generated] N/A

Victim:   |  Group: 
CA flag

www.solinst.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:49
Estimated Attack Date: 2025-03-15

[AI generated] Solinst Canada Ltd. is a leading provider of high-quality groundwater and surface water monitoring instruments worldwide. Their products range from water level loggers, oil/water interface probes, peristaltic pumps, to telemetry systems. Founded in 1980, they have been delivering reliable and accurate environmental equipment, ensuring that customers receive the best solutions for their applications.

Victim:   |  Group: 
US flag

www.allstarhealthcaresolutions.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:47

Sector: Healthcare
[AI generated] All Star Healthcare Solutions is a company that specializes in providing comprehensive staffing solutions for healthcare facilities across the United States. They match up skilled physicians and advanced practitioners with hospitals, clinics, and other healthcare settings for both temporary and permanent staffing needs. They strive to deliver exceptional services to both clinicians and healthcare employers.

Victim:   |  Group: 
 flag

www.njcalwe.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:45
Estimated Attack Date: 2025-03-07

Sector: Not Found
[AI generated] N/A

Victim:   |  Group: 
 flag

www.gcsnet.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:43
Estimated Attack Date: 2025-03-09

Sector: Technology
[AI generated] N/A

Victim:   |  Group: 
 flag

www.core-1.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:42

Sector: Technology
[AI generated] Core-1 is a California-based company specializing in IT services. They offer an array of services including IT asset disposition (ITAD), data center relocation, server decommissioning, and secure data destruction. The company focuses on optimizing and streamlining clients' IT operations, providing cost-effective, eco-friendly solutions. Core-1 is committed to delivering transparent and efficient strategies to dispose of or recycle obsolete hardware.

Victim:   |  Group: 
US flag

www.esquirebrands.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:40
Estimated Attack Date: 2025-03-06

[AI generated] "Esquire Brands" is a Hong Kong-based trading company specializing in the distribution and wholesale of various consumer products. Their offerings largely revolve around electronics, appliances, toys, and personal care items. Their mission is to provide affordable, popular and reliable products worldwide. They leverage their extensive knowledge and contacts in sourcing from Asia to provide competitive prices.

Victim:   |  Group: 
US flag

www.avalonapparel.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:38

[AI generated] Avalon Apparel, LLC, is an American fashion company that designs, manufactures, and distributes apparel for multiple brands. They work across various sectors such as juniors, misses, girls, boys, and adult men’s and women's apparel. They are known for providing high-quality products, innovative designs, and exceptional customer service to their clients.

Victim:   |  Group: 
US flag

www.oneupinnovations.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 18:37
Estimated Attack Date: 2025-03-10

Sector: Technology
[AI generated] One Up Innovations, Inc. is a US-based company which specializes in the design and manufacture of furniture for both residential and commercial use. They are known for their Liberator brand, which offers an extensive range of innovative furniture products. These products range from bedroom adventure gear, like shape-conforming cushions, to products dedicated to transform the living area into a socializing space.

Victim:   |  Group: 
KY flag

Cayman National Bank 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 15:45

N/A

Victim:   |  Group: 
EE flag

optiline.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 15:22
Estimated Attack Date: 2024-12-25

Sector: Not Found
27.02.2025 UPDATE! 100% Disclosed 947GB >> Download link #2 Commercial & Residential Construction. “Optiline Enterprises specializes in a variety of construction services including interior and exterior steel framing, drywall and drywall finishes, insulation and soundproofing, EIFS (Exterior Insulation Finishing System) & cultured stone. They bring high-volume building and retail exterior experience to the table, combined with family values.” Website: https://www.optiline.com/ Revenue : $127.3M Address: 157 Main Dunstable Rd Ste 102, Nashua, New Hampshire, 03060, United States Phone Number: (603) 402-1446 Download link #1: https://[redacted].onion/OPTILINE/PROOF/ Mirror: https://[redacted].onion/OPTILINE/PROOF/ Download link #2: https://[redacted].onion/OPTILINE DATA DESCRIPTIONS: Personal Identifiable Information, database backups, corporate confidential data: projects, drawings, customer data, financial docs\payrolls, employee and executives corporate and personal docs, correspondence, corporate dropbox, etc.

Victim:   |  Group: 
US flag

fplfood.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 15:21
Estimated Attack Date: 2024-12-16

11.02.2025 UPDATE! 100% Disclosed 21GB >> Download link #2 Food & Beverage. “FPL Food, LLC is the largest privately held vertically integrated beef processor in the Southeastern United States and is one of the largest privately held processors of fresh beef products and value added meat selections in the United States. The Company has four facilities, and serves several brands reaching retail and foodservice customers. The Company delivers beef products locally and exports worldwide.” Website: https://fplfood.com/ Revenue : $675M Address: 1301 New Savannah Rd, Augusta, Georgia, 30901, United States Phone Number: (706) 722-2694 Download link #1: https://[redacted].onion/FPLFOOD/PROOF/ Mirror: https://[redacted].onion/FPLFOOD/PROOF/ Download link #2: https://[redacted].onion/FPLFOOD/full/ Mirror: https://[redacted].onion/FPLFOOD/full/ DATA DESCRIPTIONS: Personal Identifiable Information, corporate data: invoices, shipping scans, employee personal docs, QA data, corporate correspondence, etc.

fplfood.com has been previously claimed by Play for an attack estimated on 2024-05-30.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-03-21

Victim:   |  Group: 
US flag

biagibros.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 15:19
Estimated Attack Date: 2025-01-09

13.02.2025 UPDATE! 100% Disclosed 820GB >> Download link #2 Freight & Logistics Services. “As a full-service logistics company, Biagi Bros provides businesses and organizations with 3PL & supply chain solutions. Because our distribution centers, warehouses and truck terminals are strategically located throughout the U.S., we can resolve logistics challenges in creative ways. We are where you need us to be - with the 3PL services you need us to have.” Website: https://www.biagibros.com/ Revenue : $273M Address: 466 Devlin Rd, Napa, California, 94558, United States Phone Number: (707) 251-9990 Download link #1: https://[redacted].onion/BIAGIBROS/PROOF/ Mirror: https://[redacted].onion/BIAGIBROS/PROOF/ Download link #2: https://[redacted].onion/BIAGIBROS/full/ Mirror: https://[redacted].onion/BIAGIBROS/full/ DATA DESCRIPTIONS: Personal Identifiable information (background reports, DL, IDs, employee data records etc.), all database backups, financial data, legal docs, customer data, contracts, NDAs, corporate correspondence etc.

Victim:   |  Group: 
DE flag

bellendorf.de 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 14:59

Sector: Not Found
Auf dem richtigen Weg mit dem Autohaus Bellendorf Bei Autohaus Bellendorf sind wir mehr als nur eine Werkstatt. Wir sind Dein verlässlicher Partner für SEAT und CUPRA in Bottrop. Unsere Mission geht über das einfache "Bedienen" hinaus – wir streben Deine 100%ige Zufriedenheit an. Wie? Durch transparente Kommunikation, einen reibungslosen Ablauf, faire Preise und hervorragenden Service.

Victim:   |  Group: 
DE flag

Officio Medical 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 12:02

Sector: Healthcare
N/A

Victim:   |  Group: 
BE flag

CS Plastics 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 11:46

CS Plastics specializes in manufacturing machines and equipment f or the plastic processing sector. We are ready to upload a lot of essential corporate documents suc h as: driver licenses, financial data (audits, payment details, r eports), internal corporate correspondences, contact numbers and e-mail addresses of employees and customers, etc.

Victim:   |  Group: 
US flag

Subsurfco LLC 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 09:40
Estimated Attack Date: 2025-03-05

Sector: Not Found
Subsurfco LLC is a company that operates in the Civil Engineering Construction industry. The company is headquartered in South Sioux City, Nebraska. Brad Smith is the president of this Company. Our team managed to breach and encrypt Sub ...

Victim:   |  Group: 
US flag

The Ticktin Law Group 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 07:23

The Ticktin Law Group By Babuk Locker 2.0

Victim:   |  Group: 
MY flag

Mpaj.gov.my 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 07:22

Mpaj.gov.my

Victim:   |  Group: 
 flag

exostar.com TOP Defense AS 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 02:53

Sector: Technology
exostar.com TOP Defense AS

Victim:   |  Group: 
PK flag

Standard Capital Securities (Pvt) Backoffice - Pakistan Stock Market Data Vault 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 01:22

Standard Capital Securities (Pvt) Backoffice - Pakistan Stock Market Data Vault

Victim:   |  Group: 
IN flag

www.mslglobalexp.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-21 00:42
Estimated Attack Date: 2025-03-17

[AI generated] N/A

Victim:   |  Group: 
CN flag

mohrss.gov.cn ( Ministry of Human Resources and Social Security ) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 23:53

mohrss.gov.cn ( Ministry of Human Resources and Social Security )

Victim:   |  Group: 
US flag

amazon.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 23:52

Sector: Technology
amazon.com

Victim:   |  Group: 
US flag

L&S Mechanical 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 18:58
Estimated Attack Date: 2025-03-18

Sector: Construction
L&S Mechanical began as a Dallas-based contractor in 1985 and has grown over the years to have six locations out of Dallas, Fort Worth, Houston, San Antonio and Austin.  Over the past thirty years, we have become known as the premier provider of new home construction in the plumbing industry. In the last 10 years we have added HVAC and electrical services to now offer the Tri-Trade Solution℠.  The people you have worked with, the quality, and the service our customers have come to expect remain the same, but now we are making it even easier to get things done. Being a single-source provider of mechanical services, our customers are able to more efficiently control their schedules and meet their deadlines. In 2017, we have expanded our brand once again to offering Preventive Maintenance Programs that will allow old and new customers the ability to have honest, quality preventive work done on their homes for years to come.We pride ourselves on having some of the most highly trained technicians in the industry. Technicians participate in an online training platform and have on-site, trade specific trainers that keeps them current on product specs, new industry developments, and providing superior customer service. We also do training in the field, and provide instructor-led training on a regular basis.After delivering over 100,000 homes across the US, we know what builders and contractors are looking for; and we take that knowledge to all the homeowners we serve as well.  From start to closing, we will deliver excellence every stage of the way.The company is in the investment portfolio of STERLING GROUP - https://sterling-group.com/- Database- Project documentation- Drawings- Financial documents- Personal information of employees and clients https://www.lsmech.com/

Victim:   |  Group: 
 flag

Whittaker & Company 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 18:56
Estimated Attack Date: 2025-03-02

Sector: Not Found
Whittaker & Company CPAs helps closely-held businesses and their owners solve immediate problems and plan for the future. You may be used to dealing with a ‘typical’ or ‘normal’ CPA firm…but that’s not us. We’re not merely accountants, or someone with a CPA license. We too run a family business, so we know the challenges and how it feels. We apply that knowledge and understanding to everything we do with you.The most important story to us is yours. What makes you tick? What frustrates you about the accounting industry, and how can we help you address that? We’re here to share our story with you, and listen to yours.- Database- Financial documents- Personal information of employees and clients https://www.whittakercpas.com/

Victim:   |  Group: 
UK flag

www.georgehay.co.uk 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 18:48
Estimated Attack Date: 2025-02-26

[AI generated] George Hay Chartered Accountants is a UK-based financial company providing comprehensive financial services including auditing, accounting, corporate taxation, and business consultancy. They cater to a mix of local, national and international clients across various sectors from multiple office locations in Biggleswade, Huntingdon and Letchworth Garden City.

Victim:   |  Group: 
FR flag

www.janvier-labs.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 17:10
Estimated Attack Date: 2025-03-10

Sector: Healthcare
[AI generated] Janvier Labs is a France-based company that specializes in producing and breeding laboratory rodents for biomedical research. They offer genetically standardized rodents, animal housing, and experimental services. These services support the discovery, development, and safety testing of drugs, biotherapeutics, and vaccines. Their stringent biosecurity standards ensure disease-free rodents.

Victim:   |  Group: 
US flag

National Safety Council 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:13
Estimated Attack Date: 2025-03-17

The National Safety Council (NSC) (founded in 1913) is a nonprofit, nongovernmental public service organization dedicated to protecting life and promoting health in the United States of America. National Safety Council corporate office is located in 1121 Spring Lake Dr, Itasca, Illinois, 60143, United States and has 501 employees.

Victim:   |  Group: 
US flag

Augusta Industrial Services, Inc. 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:12
Estimated Attack Date: 2025-03-17

Augusta Industrial Services, Inc. is an Employee Owned industrial and environmental cleaning service company providing pipe, tank, drain, vacuum excavation, and waste services for commercial, industrial, and nuclear customers in the southeastern United States. Augusta Industrial Services corporate office is located in 15 Lovers Ln 1428, Augusta, Georgia, 30916, United States and has 90 employees.

Victim:   |  Group: 
IN flag

Champions Group 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:11
Estimated Attack Date: 2025-03-19

Sector: Not Found
Champions Group is provider of essential home services specializing in heating, air conditioning, plumbing and electrical services. Champions Group is provider of essential home services specializing in heating, air conditioning, plumbing and electrical services.

Victim:   |  Group: 
GB flag

J McCann & Co Ltd 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:09
Estimated Attack Date: 2025-03-19

Sector: Construction
J McCann & Co Ltd is a company that operates in the commercial and residential construction industry. J McCann & Co Ltd corporate office is located in 110 Nottingham Road Chilwell Nottingham NG9 6DQ UK. The total amount of data leakage is 146.60 GB

Victim:   |  Group: 
US flag

Big Horn County School District #4 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 16:08
Estimated Attack Date: 2025-03-19

Sector: Education
Big Horn County School District #4 is a public school district based in Basin, Wyoming, United States. The district has 297 students. Big Horn County School District #4 corporate office is located in 416S, 3rd St, Basin, WY, 82410, US. The total amount of data leakage is 205.7 GB

Victim:   |  Group: 
US flag

Obra Play 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:35

Sector: Not Found
N/A

Victim:   |  Group: 
US flag

interiseworld.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:33

Sector: Technology
N/A

Victim:   |  Group: 
AR flag

Instituto de Ojos 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:32

Sector: Healthcare
N/A

Victim:   |  Group: 
US flag

Oag.state.va.us 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:25

[AI generated] N/A

Victim:   |  Group: 
DE flag

Wr-recht.de 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:25

Sector: Not Found
[AI generated] "Wr-recht.de" is a German legal advisory firm that specializes in matters of insolvency law, commercial law, and general civil law. The company caters to both private individuals and businesses, offering effective and efficient legal services. They possess extensive experience in guiding clients through legal proceedings, ensuring optimal client representation.

Victim:   |  Group: 
 flag

Baltimorecityschools 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:24

Sector: Education
[AI generated] Baltimore City Public Schools, also known as City Schools, is a public school district in Baltimore, Maryland, United States. It serves the youth of Baltimore and is committed to providing a comprehensive, high-quality education. The district includes elementary, middle, and high schools, and offers specialized programs and initiatives to support students' growth and development.

Group: 
 flag

Fi***************.pa 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:24

Sector: Not Found

Group: 
NL flag

St***********.nl 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:24

Sector: Not Found

Group: 
 flag

Land Planners 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:17

Sector: Construction
Land Planners PC is a company that operates in the Architecture, Engineering & Design industry with HQ in Georgia. We are ready to upload more than 13 GB of essential corporate doc uments such as: contact numbers and e-mail addresses of employees and customers, personal passports, SSN’s, employment authorizati ons and driver licenses, HR documents, financial data (audits, pa yment details, reports), etc.

Group: 
ES flag

Auren 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 15:17

Sector: Not Found
Auren is a consulting firm for multidisciplinary services, whose aim is to contribute to the sustainable development of society, o rganizations and people. We are ready to upload more than 40 GB of essential corporate doc uments such as: contact numbers and e-mail addresses of employees and customers, financial data (audits, payment details, reports) , corporate licenses, agreements and contracts, personal passport s, etc.

Group: 
US flag

Newtown Friends School (newtownfriends.org) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 14:02

Sector: Education
[AI generated] Newtown Friends School is a private, co-educational day school located in Newtown, Pennsylvania. It offers high-standard education to students from preschool to grade 8. The school, established by Quakers in 1948, upholds Quaker values and aims to cultivate students' intellectual, ethical, and spiritual growth. They have a curriculum regionally recognized for its rigor and creativity, serving around 250 students.

Victim:   |  Group: 
FR flag

fr.sodexo.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:57

fr.sodexo.com

Victim:   |  Group: 
QA flag

Corporate access, up to Shipping Apps in QATAR 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:55

Corporate access, up to Shipping Apps in QATAR

Victim:   |  Group: 
QA flag

woqod.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:54

Sector: Energy
woqod.com

Victim:   |  Group: 
TH flag

mof.go.th - Ministry of Finance (Thailand) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:53

mof.go.th - Ministry of Finance (Thailand)

Victim:   |  Group: 
DE flag

ZB ZIMMERMANN UND BECKER GmbH 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 13:46

ZBP Zimmermann und Becker is an architecture and planning firm th at offers engineering, planning, design, and object monitoring se rvices. We are ready to upload more than 70 GB of essential corporate doc uments such as: pension insurance numbers, contact numbers and e- mail addresses of employees and customers, HR documents with info about family members, financial data (audits, payment details, r eports), corporate licenses, agreements and contracts, internal c orporate correspondences, etc.

Group: 
lk flag

Cargills Bank 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 12:27

Exfiltraded data : yes - Encrypted data : no

Victim:   |  Group: 
CA flag

Luff Industries 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 11:38

All data will be available on Mar.27. Luff Industries Ltd. has been manufacturing quality conveyor components, including idlers with patented polymer endcaps and pulleys with an industry-leading rim thickness, to an international market for o ...

Victim:   |  Group: 
cl flag

Megacentro 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 10:57

Sector: Not Found
Exfiltraded data : yes - Encrypted data : no

Victim:   |  Group: 
TH flag

smic.mi.th (Thailand Intelligence Agency) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 09:23

smic.mi.th (Thailand Intelligence Agency)

Victim:   |  Group: 
US flag

www.kvhealth.net 

Company logo
Ransomware Group:

Discovery Date: 2025-03-20 02:03

Sector: Healthcare
Leak in progress... http://[redacted].onion/...

Victim:   |  Group: 
VE flag

www.gob.ve 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:58

www.gob.ve

Victim:   |  Group: 
TH flag

Access Panel Financial Technology Company (Thailand) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:57

Sector: Technology
Access Panel Financial Technology Company (Thailand)

Victim:   |  Group: 
US flag

United States County Palm Beach Goverment 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:56

United States County Palm Beach Goverment

Victim:   |  Group: 
BR flag

Municipal taxation Secretariat Access - Brazil Goverment 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 19:55

Municipal taxation Secretariat Access - Brazil Goverment

Victim:   |  Group: 
CN flag

Intelligence Bureau of the Joint Staff Department of the Central Military Commission... 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 18:28

Intelligence Bureau of the Joint Staff Department of the Central Military Commission China

Victim:   |  Group: 
MY flag

rac.gov.my 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 18:26

rac.gov.my

Victim:   |  Group: 
IN flag

nimapinfotech.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 18:25

Sector: Technology
nimapinfotech.com

Victim:   |  Group: 
US flag

controlledair.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 17:44
Estimated Attack Date: 2025-03-17

[AI generated] Controlled Air, Inc. is a family-owned company based in Connecticut that specializes in heating, ventilation, and air conditioning (HVAC) services. Offering more than 30 years of experience, they provide solutions for energy efficiency and comfort to both commercial and residential clients. Their services include installation, repair, service contracts, and emergency HVAC services.

Victim:   |  Group: 
DE flag

Q railing 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 17:40
Estimated Attack Date: 2025-02-19

Germany

Victim:   |  Group: 
 flag

www.medsrx.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 16:45

Sector: Healthcare
In a world where technology makes everything easier, the old school pharmacy experience is still hard. Waiting in line is sucks, insurances don’t make sense, medications are expensive, and it’s impossible to ever speak to a pharmacist when needed. We started MEDS because the old pharmacy experience you’re used to needed to be changed, Yesterday! MEDS has been the go-to place to get hard to f

Victim:   |  Group: 
ES flag

Los Madroños Hospital 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 14:40
Estimated Attack Date: 2025-03-07

Sector: Healthcare
We have tried to negotiate regarding data protection with the Los Madroños Hospital's management. A lot of emails with the details of this incident were sent to reach for Jesús Tornero's attention. But, no one from Los Madroños Hospita ...

Victim:   |  Group: 
US flag

The Ely Company, Inc. 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 13:48

Sector: Not Found
The Ely Company, Inc. has a solid foundation of over 50 years exp erience with the manufacturing and productions of quality machine d parts for Commercial and Aerospace Industries. We are ready to upload more than 14 GB of essential corporate doc uments such as: financial data (audits, payment details, reports) , corporate licenses, agreements and contracts, healthcare docume nts, personal SSN’s, contact numbers and e-mail addresses of empl oyees and customers, etc.

Group: 
PE flag

Machu Picchu Foods 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 13:48

Machu Picchu Foods provides services as a cacao ingredient and ch ocolate supplier, as well as a contract manufacturer for private labels. We are ready to upload some essential corporate documents such as : financial data (audits, payment details, reports), contact numb ers and e-mail addresses of employees and customers, corporate li censes, agreements and contracts, etc.

Group: 
US flag

LINC Systems 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 12:16

LINC Systems is a leading distributor of fastening solutions and industrial supplies. We are ready to upload mor4e than 11 GB of essential corporate do cuments such as: contact numbers and e-mail addresses of employee s, vendors and customers, financial data (audits, payment details , reports), corporate licenses, agreements and contracts, etc.

Group: 
 flag

VEST LLC 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 12:16

Sector: Not Found
Vest LLC is one of the largest producers of electric welded carbo n steel tubing in the Western United States. They are located in the heavy industrial neighborhood of Los Angeles named Vernon. We are ready to upload more than 125 GB of essential corporate do cuments such as: corporate NDA’s, financial data (audits, payment details, reports), HR documents, driver license information, con tact numbers and e-mail addresses of employees and customers, per sonal SSN’s, etc.

Group: 
GB flag

Palomino Petroleum 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 11:29

Sector: Energy
Palomino Petroleum Inc is a company that operates in the Oil & Gas Exploration & Services industry.

Victim:   |  Group: 
GB flag

warmsworth.doncaster.sch.uk 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 03:29
Estimated Attack Date: 2025-03-18

Sector: Education
WARMSWORTH PRIMARY SCHOOL If your child or anyone in your household is displaying any of the symptoms of Covid-19, your entire household must self-isolate immediately and the person displaying symptoms should be tested as early as possible, please keep school informed Warmsworth Primary School promotes high achievement and learning for life by working with children to: become highly motivated lifelong learners; develop lively enquiring minds and a spirit of curiosity; have a high self-esteem and to respect themselves, their community, others and the environment; encourage responsibility for their actions; be able to work independently and collaboratively; achieve high standards in all areas of the curriculum; value and respect other beliefs and cultures; increase their global awareness and understanding of the world; challenge themselves to do well; be able to enjoy school and make friends. We believe that each child will succeed through experiencing quality in: a broad and challenging curriculum. ===>> Phone Number: +44 1302852200 Revenue: $5 Million Employees: 25 Industry: Education

Victim:   |  Group: 
CA flag

alphaoil.ca 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 03:28
Estimated Attack Date: 2025-02-22

Sector: Energy
Alpha Oil is a family run business based in Toronto servicing the Greater Toronto area. We are a full service fuel company offering a wide selection of quality, brand name products and services to businesses and homes. Our products include low sulfur clear diesel, coloured diesel, furnace oil, stove oil, gasoline, and a full range of lubricants. We have a 24 hour cardlock depot offering clear & coloured diesel. We have successfully built a business based on a solid commitment to service. Alpha Oil is a proud member of GTSWCA, TCA and ACMO. ===> [redacted]

Victim:   |  Group: 
JP flag

CD 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 01:31

Sector: Not Found
Full Leak

Victim:   |  Group: 
 flag

Gloria Cales 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 01:29

Sector: Not Found
Full leak

Victim:   |  Group: 
US flag

newhollandwood.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 00:53
Estimated Attack Date: 2025-02-17

New Holland Church Furniture established in 1919 and is located in Lancaster County in the heart of Central Pennsylvania Dutch Country. Holland Church Furniture custom manufacture a full line of worship furniture including traditional church pews with standard or custom pew ends, and it is the nations leading manufacturer of radius curved pews with over 800 installations since 1962. Manufacturers of church furniture including pulpits, altars, clergy chairs and baptismal fonts, New Holland is focused on producing aesthetically pleasing worship furniture of virtually any design. It's dedicated craftsman create unique custom pieces of worship furniture including retablos, reredos, and organ casework. It also manufactures a fine line of wood chairs, courtroom seating, custom synagogue furniture and synagogue seating. ===>> Phone Number: (717) 354-2481 Revenue: $14.3 Million Industry: Retail Data: 73.4Gb SQL db: dbo.CUSTOMER,dbo.CUSTOMER_CONTACT,dbo.V_CONTACT,dbo.CUSTOMER_BOOKINGS

Victim:   |  Group: 
CO flag

Coopertruni 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 00:27
Estimated Attack Date: 2025-03-18

Sector: Not Found
Days00006666Hours22222222Minutes44448888Seconds22224545 www.coopertruni.com.br Cooperativa dos Transportadores Unidos Ltda – COOPERTRUNI is a…

Victim:   |  Group: 
 flag

THX Transport 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 00:25
Estimated Attack Date: 2025-03-18

Days00006666Hours22222222Minutes44448888Seconds22224545 www.thxtransport.com THX Transport LLC is a company that operates in the Transportation ind…

Victim:   |  Group: 
KI flag

Kiribati Government 

Company logo
Ransomware Group:

Discovery Date: 2025-03-19 00:23
Estimated Attack Date: 2025-03-18

Days00006666Hours22222222Minutes44448888Seconds22224545 Kao.gov.ki they have limited time to Contact Us before we Leak : Government Ministries and …

Victim:   |  Group: 
FR flag

Atos-racks.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 22:41

Sector: Technology
ATOS designs, develops and manufactures in France enclosure products for the electronics industry: cabinets, boxes, racks, fine and precision sheet metal assemblies, 19" indoor or outdoor solutions: standard, adaptation of the standard, specific, or production to drawings, up to the integration of complex assemblies.ATOS serves the Energy, Telecommunications, Electronics, IT and Transport markets,

Victim:   |  Group: 
FR flag

AMICIO 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 20:27

Sector: Not Found
AMICIO does business in the Activities of call centres sector. AMICIO is located at 17 RUE DES GRANDES TERRES 92500 RUEIL-MALMAISON. To our knowledge, it is present on the internet with at least one website: www.amicio.fr.

Victim:   |  Group: 
US flag

Ted Hosmer Enterprises 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 19:21

Sector: Not Found
Ted Hosmer Enterprises Ted Hosmer Enterprises, established in 1987, specializes in lawn care and snow removal services, consistently exceeding customer expectations through teamwork and innovation.

Group: 
PH flag

51talk.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:38

Sector: Education
A lot of interesting info: 1G - 51TalkActivity_backup_2025_01_25_030001_1281267.bak 1G - 51TalkNewStaff_backup_2025_01_25_030001_1281267.bak 1G - 51TalkOA_backup_2025_01_25_030001_1437541.bak 9G - 51TalkOAtask_backup_2025_01_25_030001_1281267.bak...

Victim:   |  Group: 
IT flag

esaote.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:27

Sector: Healthcare
esaote.com

Victim:   |  Group: 
TH flag

nstda.or.th 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:26

Sector: Technology
nstda.or.th

Victim:   |  Group: 
ID flag

kominfo.go.id 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:24
Estimated Attack Date: 2024-07-01

kominfo.go.id

kominfo.go.id has been previously claimed by Braincipher for an attack estimated on 2024-07-01.

This could suggest a new attack, a cross-claim between brands by the same threat actor, or the recycling of previously leaked stolen data.

Update Date: 2025-03-18

Victim:   |  Group: 
ID flag

pajak.go.id 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:23

pajak.go.id

Victim:   |  Group: 
ID flag

dukcapil.kemendagri.go.id (SIAK DUKCAPIL MINISTRY OF HOME AFFAIRS OF INDONESIA) 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 18:22

dukcapil.kemendagri.go.id (SIAK DUKCAPIL MINISTRY OF HOME AFFAIRS OF INDONESIA)

Victim:   |  Group: 
FR flag

semaphore.asso.fr 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 16:58

Sector: Not Found
[AI generated] N/A

Victim:   |  Group: 
 flag

PTS Group 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 16:11
Estimated Attack Date: 2025-03-13

Sector: Not Found
We are a pan-European IT company specialized in providing data-driven solutions and services. With the motto “Empowering Data-Driven Solutions”, we base our actions on the strengths and capabilities of data. We combine leading technology ...

Victim:   |  Group: 
CA flag

whitecapcanada.com 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 15:24

Sector: Technology
whitecapcanada.com

Victim:   |  Group: 
 flag

JAMEL CONTAINERS LLC 

Company logo
Ransomware Group:

Discovery Date: 2025-03-18 15:16

JAMEL CONTAINERS specialize in custom corrugated packaging, custo m printing & die-cuts, custom design services, and fulfillment fo r industries including manufacturing goods, health products, and foods. We are ready to upload a lot of essential corporate documents suc h as: corporate NDA’s, driver licenses, contact numbers and e-mai l addresses of employees and customers, financial data (audits, p ayment details, reports), etc.

Group: 
Previous Next