Ransom! Podo Asset Management

Qilin, a threat actor, claimed to have compromised Podo Asset Management, a South Korean firm established in 2018 that focuses on direct investments and IPOs. The attack highlights the importance of not overextending cybersecurity efforts, impacting #SouthKorea.

Incident Details

  • Victim: Podo Asset Management
  • Country: KR
  • Actor: qilin
  • Source: http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=deb1d5ea-bc95-3d0b-906d-2c4a90140c1b
  • Discovered: 2025-09-25 23:41:12.045685
  • Published: 2025-09-25 00:00:00.000000

Information

  • The ransomware victim is Podo Asset Management, based in South Korea.
  • The threat actor involved is Qilin.
  • Podo Asset Management was founded in 2018.
  • The company specializes in direct investments and IPOs.
  • It is listed among the KoreaLeak3 group.

Disclaimer: This post is based on public claims made by the ransomware group "qilin". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live