Ransomware claim targets El Wastani Petroleum Company (WASCO) with an operation attributed to the threat actor payload. WASCO is an Egyptian oil and gas company focused on the exploration, production, and processing of natural gas and condensate, operating fields and infrastructure—including processing facilities and compression stations—mainly in the Nile Delta and North Sinai regions, serving as a regional operator for Egypt’s gas industry #Libya
Incident Details
- Victim: El Wastani Petroleum Company (WASCO)
- Sector: Energy
- Country: LY
- Actor: payload
- Source: http://payloadrz5yw227brtbvdqpnlhq3rdcdekdnn3rgucbcdeawq2v6vuyd.onion/posts/29732084-774a-4667-9dcd-b2ebfb6a748a
- Discovered: 2026-04-08 01:49:05.233439
- Published: 2026-04-08 01:48:38.572975
Information
- Focuses on exploration, production, and processing of natural gas and condensate
- Operates fields and infrastructure, including processing facilities and compression stations
- Mainly active in the Nile Delta and North Sinai regions
- Serves as a regional operator supporting the development of Egypt’s gas industry

Disclaimer: This post is based on public claims made by the ransomware group "payload". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.