Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Search v2
before

Prefix a filter with + to require it, or - to exclude it — e.g. +country:us only shows US victims, -country:us hides them. Mix several with free-text words; everything is combined with AND (so hospital +country:us -group:lockbit3 means: text "hospital", country is US, group is not lockbit3). Repeating + on the same field is OR'd together (+country:us +country:ca → US or Canada); repeating - excludes all of them. Wrap multi-word values in quotes, e.g. +sector:"public sector". infostealer and press take a bare +/- with no value: +infostealer / -infostealer filter on infostealer data, while +press searches press articles only and -press hides press coverage; before:/after: take a date directly with no +/- prefix, as shown below.

+country:only this country — opens a picker
-country:exclude this country — opens a picker
+group:lockbit3only this group
-group:lockbit3exclude this group
+website:example.comonly this website
+sector:only this sector — opens a picker
-sector:exclude this sector — opens a picker
+infostealerhas infostealer data
-infostealerno infostealer data
+presssearch press articles only
-presshide press coverage
after:2025-01-01discovered/attacked on or after
before:2026-01-01discovered/attacked on or before
1 victim matched
Logo
Discovered: 2026-04-29 (2mo ago)  ·  Attack est.: 2026-04-03
Karl Chevrolet, Inc. operates a Chevrolet car dealership. It offers new and used cars, commercial ve…
Press Coverage 1
Karl Auto Group
2026-06-04

Karl Auto Group, un détaillant automobile majeur de l'Iowa, a été victime d'une cyberattaque en avril qui a perturbé ses téléphones et ordinateurs. L'incident, dont l'accès non autorisé aux systèmes a eu lieu avant le 27 mars, pourrait avoir exposé des données sensibles de clients et d'employés, incluant des numéros de sécurité sociale, des informations financières et des numéros de passeport. Bien que l'entreprise n'ait pas qualifié l'incident de rançongiciel, un groupe nommé RansomHouse a affirmé que les systèmes de Karl Chevrolet avaient été chiffrés le 3 avril.

Read article