MLIT.com.my experienced an UPDATE-FULL DATA DUMP of approximately 10GB in Malaysia by threat actor stormous, involving a full data leak and file/directory extraction from internal network shares and remote desktop sessions. The exposed data includes highly sensitive internal operations and financial records, such as complete Campaign Profit and Loss (PnL) statements, revenue sheets, clawbacks, general ledger accounts for linked entities (including Salesworks Pte Ltd Taiwan Branch and Shaves2u HK Limited), plus thousands of corporate folders and financial databases, impacting #Malaysia
Category: Ransom Monitor
Sparkle Pools in the US reported a ransomware incident attributed to the Qilin threat actor, with the specific impact details not provided. The attack resulted in disruptions to their operations in #UnitedStates
Roth Industries in Germany reported a ransomware attack attributed to the qilin threat actor, resulting in disruption of access to critical data and systems. The incident impacted Germany #Germany
Optimum First Mortgage (US) reported a ransomware incident associated with the pear threat actor, disrupting access to systems used to deliver fast and reliable mortgage solutions for home purchases and refinancing. The impact is described as affecting operations in the United States. #UnitedStates
ATCOM Outsourcing in CL was targeted by the qilin ransomware threat actor, resulting in encrypted systems and disruption of operations. The attack impacted #Chile
Homes By J Anthony (US) was targeted in a ransomware claim attributed to the qilin threat actor. The impacted country(s): #UnitedStates
The ransomware claim by nightspire targets legendsmn(Blue Ox, Paul Bunyan, Lumberjack Electric) in the US, though the specific stolen data details are currently unavailable. The impacted country(s): #UnitedStates
Victim ra-vogeler.de in Germany was targeted by the cloak ransomware threat actor, with a reported impact size of 1.1TB (private exposure). The incident is attributed to cloak and affects victim operations within #Germany
THL PROJECT MANAGEMENT SDN. BHD. in Malaysia was targeted by the Qilin ransomware actor, which encrypted files and disrupted operations. The attack’s impact was felt in #Malaysia
Makel Companies Group in Turkey reported a ransomware incident attributed to the qilin threat actor, involving unauthorized access and encryption of systems. The attack disrupted business operations and data availability across Turkey. #Turkey
Lawson Roofing was targeted by ransomware attributed to rhysida, resulting in encrypted files and disrupted operations. The impacted country(s): #countryname
icsecurity.com in the US was targeted by shinyhunters, with claims that over 2.7 million records and other internal corporate data were compromised. As a final warning updated 19 June 2026, the attackers demand action by 22 June 2026 before leaking data, warning of digital consequences and ransom risk. #UnitedStates
lynx ransomware actors targeted www.someco.com, disrupting operations for Southern Mechanical Contractors, a merit shop mechanical and industrial construction firm based in Atlanta, Georgia. The impacted country(s) are #UnitedStates
Apptricity (US) was targeted by ransomware threat actor Akira, involving the theft of approximately 12GB of corporate data, including employee personal documents (SSNs, passports, driver’s licenses, and W-9s). Stolen data also includes projects, source code, NDAs, and client/partner agreements, impacting #UnitedStates.
Berg Lilly, a trusted Bozeman, Montana law firm, allegedly suffered a ransomware incident after threat actor Akira compromised corporate and client data, with the firm planning to upload 50GB of affected information soon. The stolen material reportedly includes clients’ personal identifiers (passports, SSNs, driver’s licenses, addresses, and phone numbers), confidential files, medical and financial records, and legal documents such as court hearings and police reports; #UnitedStates