Clearview Eye Centre, a state-of-the-art ophthalmology clinic in Calgary, Alberta, Canada operated by doctors Faisal Adatia and Ryan Yau, reportedly suffered ransomware activity attributed to the interlock threat actor, involving the exposure of sensitive client data. Impacted information includes medical records, personal data, incident reports, and financial and tax information, with affected parties in #Canada
Category: Ransom Monitor
The ransomware claim involves payload allegedly targeting victim “A,” but the victim identifier is too ambiguous to accurately attribute the activity to a specific organization. The impacted country is unknown due to missing location details in the claim. #unknown
Nachlass Nord in Germany was targeted by the anubis ransomware threat actor after inheritance lawyers allegedly exposed sensitive IDs, estate records, and client data. The incident resulted in the compromise of personal and legal information, impacting Germany. #Germany
The ransomware claim targets politur.gob.do in the Dominican Republic, attributed to the krybit threat actor. It is associated with POLITUR (Dirección Central de Policía de Turismo), now also known as CESTUR (C…), and the impacted country(s) is #DominicanRepublic.
PrinzEugen is claiming it has posted a new leak associated with the victim domain prinzkpn6d3itrgcytmsmlcpt5mgwn3ihpck2hsed5cezlbtbi3wklid.onion, directing users to its new site for information. The impacted country(s): # (unspecified).
Grupo Riquelme (PY) was targeted by the nightspire ransomware group, with attackers threatening and encrypting a full database backup and critical business systems including banking & financial data, accounting & ledger records, and customer databases. The intrusion also compromised HR/workforce data, user/role/permission data, and ERP & other critical application data, impacting #Paraguay.
Incransom ransomware is claimed to have targeted GSP Crop Science Pvt (GSP Crop Science Limited), an agricultural innovation company in India focused on crop science and sustainable farming solutions. The claim indicates an attempt to disrupt or extort the organization, impacting operations in #India
Incransom ransomware targeted Life Bridges, a US non-profit supporting individuals with intellectual and developmental disabilities through residential support, healthcare, and community living services founded in 1973. The attack threatened the organization’s operations and care delivery, impacting the affected systems and stakeholders in #UnitedStates
The morpheus ransomware group compromised Delegal Poindexter & Underkofler, P.A., and targeted the victim’s website protectingcareers.com, with reported revenues of $5 million. The incident impacted #UnitedStates
Adapt******, a victim of the shinyhunters ransomware operation, was reportedly issued a final demand to pay or face data leakage by today 12:00 AM New York time (updated 25 June 2026). The leaked information is threatened for exposure unless the ransom is paid, #null
ISOPLUS in Greece reported ransomware activity attributed to the qilin threat actor. The attackers encrypted data and disrupted operations, with impacts affecting Greece #Greece
AuditTeam ransomware allegedly targeted I-SYS, a Russian software development and business automation company with 25 years of experience, disrupting its digital transformation services and core platforms, including DocTrix and the AI assistant, Матрёшка. The claim indicates impact within #Russia
Stormous ransomware activity against impulso-store.com in MX involved access to complete customer and buyer data, along with designs, orders, and other business assets, including all domains tied to the parent company (maglificioliliana.com/). The exposed material includes records and operational files across the impacted infrastructure in #Mexico
The ransomware claim states that stormous accessed complete data belonging to customers and buyers of montechiaro-store.com in Italy, including designs, orders, and other assets. The attacker also claims impact across all domains associated with the parent company maglificioliliana.com/, ending with #Italy
Stormous ransomware claims that the victim lorenzoni-store.com in Italy had complete customer and buyer data accessed, including designs, orders, and other assets tied to the parent company maglificioliliana.com and its associated domains. #Italy