An alleged ransomware claim states that the Everest threat actor breached a Norstella company, encrypted critical systems, and demanded a ransom in exchange for decryption. The incident is linked to Norway, with investigators evaluating potential data exfiltration and the operational impact #Norway
Incident Details
- Victim: Evaluate a Norstella company
- Sector: Not Found
- Country: NO
- Actor: everest
- Source: http://ransomocmou6mnbquqz44ewosbkjk3o5qjsl3orawojexfook2j7esad.onion/news/Evaluate_a_Norstella_company/
- Discovered: 2026-03-15 17:38:43.070921
- Published: 2026-03-15 17:38:07.200159
Information
- Ransomware incident affecting Evaluate (a Norstella company)
- Country: NO
- Threat actor identified as everest

Disclaimer: This post is based on public claims made by the ransomware group "everest". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.