Incransom ransomware targeted ezortea.com.br, a Brazilian company based in BR, encrypting or threatening company data as part of an extortion attempt. #Brazil
Category: Ransom Monitor
Carvalima Transportes (carvalima.com.br) in Brazil was impacted by ransomware attributed to the incransom threat actor, disrupting operations for the 35+ year freight and reverse-logistics provider. The company serves multiple Brazilian regions including Mato Grosso and beyond, with the incident affecting BR #Brazil
The US city of acworth-ga.gov was targeted by the incransom ransomware threat actor, impacting operations by encrypting data and disrupting municipal services. Acworth, “The Lake City” in the foothills of North Georgia, is located along Lake Acworth and Lake Allatoona, and the attack affected public sector continuity in #UnitedStates
Flowers Early Learning (formerly known as Tri-County Head Start) at tricountyhs.org in the US was impacted by ransomware attributed to the threat actor incransom, potentially disrupting access to critical early childhood education and family support services. #UnitedStates
In the ransomware claim attributed to threat actor incransom, tambasa.com (Tambasa Atacadistas) in Brazil—one of Brazil’s largest wholesale distributors—was targeted, potentially disrupting its B2B distribution operations to retailers, supermarkets, and construction shops nationwide. The incident is reported as affecting #Brazil
Ransomware targeting ritavo.com in Austria was attributed to the APT73 threat actor, affecting the Rita V,õ Group’s website and services. The impacted country is #Austria
The ransomware claim targets holidaypalace.com (MO), attributed to the APT73 threat actor, involving the Holiday Palace Hotel in Spain and allegedly exfiltrating guest information, internal documents, reports, photos, and videos. The impacted country(s) is #spain
Flazio.com, a website builder platform based in Italy, was targeted by the apt73 ransomware threat actor, according to the claim. The intrusion impacted the victim in #Brazil.
Pennant Hills Golf Club in Australia was affected by ransomware activity attributed to the qilin threat actor, resulting in disruption and attempted data encryption or extortion. The impacted country(s): #Australia
X-Copper Professional, a Canadian legal and paralegal services firm in Ontario specializing in traffic ticket defense, was targeted by ransomware attributed to the moneymessage threat actor. The attack disrupted their services supporting clients with Highway Traffic Act matters in Canada. #Canada
Karneslegal, using the domain karneslegal.com, reported a ransomware incident attributed to the medusalocker threat actor, with 23 emails extracted from the organization. The impacted country(s) is/are #countryname
Spacebears ransomware targeted Salters Propane in the US, exfiltrating personal information of employees and clients and various financial and other files. #UnitedStates
Tofutown, DE, a traditional organic plant-based food manufacturer founded in 1981, reported a ransomware incident attributed to the payload threat actor, impacting its operations and data availability. The company, known for products such as vegan spreads, tofu, and seitan, is working to mitigate the impact of the attack on its systems. #Germany
Estrela in BR was targeted by the medusalocker ransomware group, with 11 email accounts reportedly extracted from the compromised organization at the estrela.ind domain. The attack resulted in ransomware activity impacting BR #Brazil
Colorado Rehabilitation and Occupational Medicine (CROM) in the US was targeted by the incransom ransomware threat actor, disrupting operations of the leading Denver-area physiatry practice specializing in non-surgical treatment for musculoskeletal and neurological conditions. Founded in 1992 and operating multiple clinics across Colorado, CROM’s affected systems were impacted by the ransomware attack in the United States. #UnitedStates