Deadlock ransomware targeted Carrier AB, a Swedish transport and logistics company based in Jordbro near Stockholm, in Sweden. The attack impacted operations across Sweden. #Sweden
Category: Ransom Monitor
Deadlock ransomware claimed an attack on Relesa (AR), targeting the digital platform and client portal of Reginald Lee SA, an official Coca-Cola distributor in Argentina. The victim company, Grupo Relesa, is a Spanish multinational specializing in fabricating and installing металличес rejillas (tramex), and the impacted country is #Argentina
Deadlock ransomware targeted BioResearch in Poland, impacting the BioResearch Group’s Warsaw clinical research center specializing in early phases (I, FIH, SAD, MAD) and bioequivalence studies, including operations supported by its own clinic and laboratory. The incident affected pharmaceutical and CRO services provided from Warsaw’s facilities. #Poland
Deadlock ransomware targeted the Kenya National Highways Authority (KeNHA), disrupting the agency responsible for the construction, management, and maintenance of Kenya’s national highways (classes S, A, and B). #Kenya
KEMEK, a leading technology and automation company in the Baltics founded in 1995, was targeted by the Deadlock ransomware threat actor. The attacker claimed to encrypt or exfiltrate data from the victim, impacting operations in #Baltics.
iw steelTEC Makine San. ve Tic. A.,Ş., located in Turkey (TR), was targeted by the Doommageddon ransomware group, with the claim indicating leaked data totaling 100 GB and no specific files listed, and a deadline of 2026-03-08. The impacted country(s): #Turkey
Deadlock ransomware actors targeted H,İDROMEK, a leading Turkish heavy construction machinery manufacturer, stealing over 880 GB of sensitive internal data to pressure the organization. The claim implicates the threat actor Deadlock and impacts Turkey. #Turkey
Deadlock ransomware allegedly targeted Schaad, Balass, Menzl and Partner AG (SBMP), a specialized Swiss IP boutique providing patent, trademark, and design protection services, with offices in Zurich and Winterthur. The impact of the ransomware claim is reported in #Switzerland
Health Law Advocates (healthlawadvocates.org), a US nonprofit public interest law firm serving low-income and vulnerable communities in Boston, Massachusetts, reported ransomware activity attributed to the incransom threat actor. The incident disrupted access to their legal and support services for patients seeking healthcare, impacting the United States. #UnitedStates
Advanced Marketing (advmkt.com.mx), based in Mexico (MX), reported a ransomware incident attributed to threat actor thegentlemen. The company—an established book distribution and publishing firm founded in 1994—partners with major publishers and operates AMS Libros, with impacts in Mexico. #Mexico
A&A Safety, a US-based provider of Traffic Control and Road Safety Services, was targeted by the bravox ransomware group in an alleged attack. The incident impacted the United States. #UnitedStates
The ransomware claim targets msgas.com.br in Brazil by blackwater, alleging theft of customers’ personal data, contract information, and internal company data. The group published the purported data leak on a Tor onion site associated with the incident, impacting #Brazil
Thermalex Inc in the US was targeted by ransomware attributed to the threat actor kairos, impacting the aluminum extrusion company known for high-efficiency, corrosion-resistant products since 1985 and serving industries such as HVAC, automotive, battery cooling, and industrial applications. The attack affected business operations within the United States. #UnitedStates
The ransomware claim alleges that the US-based victim, The Myers Y Cooper, was compromised by the Qilin threat actor. The attackers exfiltrated data and deployed ransomware, impacting systems in #UnitedStates
The ransomware claim targets Plitvička Jezera National Park in HR by threat actor qilin, deploying malware to encrypt or disrupt available systems and data. The impacted country is #Croatia