Ransomware incident targeting reatile.co.za in South Africa was attributed to the incransom threat actor, impacting the operations of Reatile Group, a South African black-owned investment holding company focused on the energy, petrochemical, and industrial sectors. The attack disrupted the company’s pursuit of growth and development initiatives across key industries in the region. #SouthAfrica
Category: Ransom Monitor
Incransom ransomware impacted pokka.co, a Singapore-based beverage manufacturer. Founded in 1977 and headquartered in Central Singapore, Pokka Sg manufactures and markets a wide range of beverages; the attack affected Singapore #Singapore
Incransom ransomware targeted Vedan Corp in Vietnam (VN), a leading manufacturer of seasoning, starch, MSG, chemicals, and consumer goods, along with port operations and frozen food services. The incident impacted Vedan’s operations and added disruption risk to its commitment to quality, safety, and sustainable production in #Vietnam
Incransom ransomware affected D.MAG New Material Technology Co., Ltd., a key Taiwan Giant Group subsidiary supplying lightweight aluminum and magnesium alloy materials for bicycle, automotive, railway, and aerospace industries from Kunshan, Jiangsu Province, China. The incident was attributed to incransom, impacting operations in #China
Ransomware actor incransom allegedly compromised FAST.COM.PH in the Philippines, targeting FAST Logistics Group, a long-established logistics and supply chain provider that supports transport, warehousing, distribution, and nationwide operations. The incident reportedly disrupted dependable logistics services across the organization’s network, impacting business continuity in #Philippines
In May 2024, the ransomware threat actor incransom claimed to have compromised v-silicon.com in Taiwan (TW), disrupting 威,视芯半导体(合肥)有限公司’s operations tied to advanced audio and video processing technologies for smart TV and set-top box markets. The company supports global clients in smart display and visual technology sectors, and the incident was reported to have impacted #Taiwan.
Acosol in ES was targeted by the qilin ransomware threat actor, resulting in encryption and disruption of affected systems. The incident impacted #Spain
Cafar in Argentina was targeted by the qilin ransomware threat actor, resulting in encrypted files and operational disruption. The incident’s impacts are reported in Argentina #Argentina
Sunway Scientific, a leading Taiwanese distributor of international scientific and laboratory equipment, was targeted by the threat actor thegentlemen with a ransomware claim involving access to the company’s systems. The incident impacted #Taiwan
Advantage Home Health Care in the US disclosed a ransomware claim involving the threat actor thegentlemen. The incident allegedly impacted the organization’s in-home care operations across its Indiana footprint. #UnitedStates
The ransomware/extortion claim targets the Military Sealift Command (US) attributed to thegentlemen, alleging leaked ITAR documentation and personal data, including cargo manifests (ESSM shipments) and vessel blueprints. The actors report they contacted managers only reached Jennifer Miller, Todd Phillips, and Dain Costlow, who dismissed the warnings and refused to escalate, threatening publication of the stolen information if contact is not made. #UnitedStates
The ransomware claim states that the interlock threat actor targeted Paragon Store Fixtures in the US, a custom display case and retail fixture company, resulting in unauthorized exposure of internal design files and client intellectual property. As a result of the breach, confidential architectural plans, contracts, and project details were made public, revealing client and project identities in the United States #UnitedStates
interlock targeted Centre for Newcomers in Canada, claiming their databases containing personal client information and internal operational data were not adequately secured. The threat actor offers 380 GB of reportedly stolen data, including immigration client records, financial information, and HR policies, impacting Canada #Canada
interlock ransomware claim alleges that the District of Columbia Housing Authority (United States) was completely compromised due to its negligence and greed in security, resulting in theft of confidential information, databases, passports, and clients’ personal data. The threat actor claims to offer 1.6 TB of stolen data, including data of District residents and large databases. #UnitedStates
Ransomware activity attributed to threat actor m3rx targeted arambol.co.uk in the United Kingdom (GB), with the alleged exfiltration of 922 GB across 584,228 files. Arambol LLP, a UK property consultancy serving sectors including healthcare, industrial, commercial, and public sector clients, reportedly had data stolen, impacting #UnitedKingdom