Ransom! randa.net (JUN-2026)

PrinzEugen ransomware actors, operating as Threat Actor “PrinzEugen,” claimed that data associated with NEW PRINZ EUGEN SITE (NOT A CASE FILE) was compromised, with the OLD SITE expected to be taken offline shortly. The ransom note references an onion address used by the group (prinzkpn6d3itrgcytmsmlcpt5mgwn3ihpck2hsed5cezlbtbi3wklid.onion) and lists the affected location as unspecified. #countryname

Read More
Ransom! randa.net (JUN-2026)

Ransomware targeting bits-pilani.ac.in in India was attributed to the dragonforce threat actor, impacting the BITS Pilani research university across its campuses. BITS Pilani, founded in 1964 and recognized as an “Institution of Eminence” with elite engineering and science programs, is highly selective with a 1.47% acceptance rate and a 0% attendance policy with mandatory industry immersion. #India

Read More
Ransom! randa.net (JUN-2026)

Aaurora (AAC) ransomware actors compromised Aerospace & Advanced Composites GmbH in Germany and exfiltrated two NAS snapshots totaling 209 GB, including ESA thermal vacuum test archives, R&D/composites formulations, and administrative data such as financial statements and IT credentials. The breach also exposed HR and applicant records, identity documents, BitLocker recovery keys for 12 endpoints, and the company’s core system-password spreadsheet, along with 137 partner NDAs—impacting Germany #Germany

Read More