Colorado Rehabilitation and Occupational Medicine (CROM) in the US was targeted by the incransom ransomware threat actor, disrupting operations of the leading Denver-area physiatry practice specializing in non-surgical treatment for musculoskeletal and neurological conditions. Founded in 1992 and operating multiple clinics across Colorado, CROMโs affected systems were impacted by the ransomware attack in the United States. #UnitedStates
Category: Ransom Monitor
Anubis ransomware targeted Northeast Pediatrics & Adolescent Medicine, resulting in a data breach that exposed information about employees and patients. The incident affected the clinic and compromised sensitive records. #N/A
Eaglecrestlife.org, based in the US, claims it was targeted by the safepay threat actor operating under Bethany Lutheran Homes, Inc., a regional provider serving the area since 1946 and recognized as the largest. The incident resulted in ransomware impact in the United States #UnitedStates
dia179.com (DE) was targeted by ransomware associated with threat actor safepay, leveraging vulnerabilities to disrupt operations of the industrial architecture and logistics facilities firm. The attack impacted Germany. #Germany
The ransomware claim targets awo-suedost.de, a German (DE) regional branch of the Arbeiterwohlfahrt (AWO), and attributes the attack to the safepay threat actor. The incident implicates Germany, as indicated by the affected entityโs location, #Germany
Laughlin Nunnally Hood & Crum in the United States was targeted by the Qilin ransomware group, which is reported to have encrypted files and demanded a ransom. The incident occurred in #UnitedStates.
Ransomware attributed to the Qilin threat actor targeted Mattatuck Industrial Scrap Metal, causing disruption likely related to file encryption and extortion. The incident occurred in the United States, ending with: #UnitedStates
Dennis Waters Rental Properties in GB reported a Qilin ransomware attack, which encrypted files and disrupted operations in order to extort a ransom. The threat actorโs actions led to data and system availability impacts for the organization. #UnitedKingdom
Ingram Content Group, Inc. in the US was reportedly targeted by ransomware actors identified as shinyhunters, who claimed the company failed to reach an agreement despite repeated offers. The incident was updated on 02 July 2026 and is associated with SHA256 f3c961b709bcff8f70dbb8361116831d2c86361754a09658115b9efed39308e5. #UnitedStates
Fluke Corporation (US) suffered an alleged attack by the shinyhunters ransomware group, with over 21 million Salesforce records reportedly compromised, including some PII. Despite repeated offers, the victim failed to reach an agreement. #UnitedStates
Chamco, attributed to the Qilin threat actor, was reportedly impacted by ransomware operations that compromised its systems and disrupted access to data. The ransom claim includes the impacted country(s): #N/A
wilfley.com in the US reported a ransomware incident where threat actor settra claimed to have compromised its systems and demanded payment. #UnitedStates
The ransomware claim targets joyconstructionnyc.com in the US, attributed to the settra threat actor. The actor alleges disrupting Joy Construction Corp, linked to $1.3 billion in affordable housing and $8.7 million to a shareholder, impacting the United States. #UnitedStates
Ransomware operators associated with settra targeted clc-tn.com, a City Lumber Company: Building Materials organization in Tennessee (TN), by encrypting files and demanding a ransom. Victim location: United States #UnitedStates
Genesis ransomware targeted Brooklyn Defender Services, a legal organization dedicated to safeguard the rights of its clients, demanding ransom after encrypting their data. The attack was attributed to the genesis threat actor. #UnitedStates