The European Business Server Cluster was targeted by the threat actor bqtlock, which claimed to have encrypted sensitive data. The attack involved multiple domains such as www.bizoneo.com and www.bizoneo.eu, impacting various countries including Ireland. #Ireland
Incident Details
- Victim: European Business Server Cluster
- Country:
- Actor: bqtlock
- Source: http://yywhylvqeqynzik6ibocb53o2nat7lmzn5ynjpar3stndzcgmy6dkgid.onion
- Discovered: 2025-08-09 21:11:06.868100
- Published: 2025-08-09 21:10:35.254655
Information
- Ransomware attack involved the actor bqtlock.
- The victim was the European Business Server Cluster.
- Malicious activity was associated with multiple domains including bizoneo.com, bizosoft.eu, meeting.wandsoft.com, dataprotectionact.iebizoneo.com, bizoneo.eu, bizoneo-membership.eu, tourguides.iebizoneo-membership.eu, cleanrooms-ireland.ie, and cleanrooms-ireland.ie members.tourguides.ie, among others.

Disclaimer: This post is based on public claims made by the ransomware group "bqtlock". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.