The Qilin threat actor has claimed to have compromised alpresor.se, the largest tour operator in the Nordic region, with personal data allegedly stored in a publicly accessible archive. The attack impacts Sweden, Norway, and Finland.
Incident Details
- Victim: alpresor.se
- Country: SE
- Actor: qilin
- Source: http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=7992d278-56f5-38d3-9640-26047b0fdcd7
- Discovered: 2025-08-04 20:47:44.364289
- Published: 2025-08-04 00:00:00.000000
Information
- Your personal data is in this archive.
- The full archive of STS Alpresor company is publicly available.
- STS Alpresor is the largest tour operator in the Nordic region, operating in Sweden, Norway, and Finland.

Disclaimer: This post is based on public claims made by the ransomware group "qilin". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.