Can Healthcare Group in Turkey reported a ransomware incident attributed to the qilin threat actor, impacting its operations following unauthorized access. The ransomware claim has been linked to Turkey #Turkey
Category: Ransom Monitor
Grupo Indi in Mexico reported a ransomware incident attributed to threat actor qilin, resulting in disruption to their systems. The impact was reported in #Mexico
Thegentlemen ransomware group targeted Mahajak Development Co., Ltd., a Bangkok-based Thai technology provider, in an incident impacting the organization’s systems and operations. The claim indicates ransomware-related disruption for victims in #Thailand
South Texas Spinal Clinic in the US, a regional orthopedic leader since 1986, reported a ransomware incident attributed to the threat actor thegentlemen. The attack impacted operations in the United States. #UnitedStates
Enciso Ltda (CL), a Colombian safety and medical supplies distributor founded in 1999, reportedly fell victim to ransomware activity by the threat actor thegentlemen, resulting in disruption to its operations and services. The impacted country(s): #Colombia
Nova ransomware claims that Sky Devices’ technology systems were compromised and that the threat actor will provide trees and samples of allegedly stolen data to the company if they contact the support department. #countryname
Divine IT Limited, a Bangladesh-based CMMI Level 3 IT consultancy and software development firm, reported a ransomware incident allegedly carried out by threat actor nova, with the attackers leveraging stolen data and providing samples to the company’s support team to force engagement. The firm’s ERP and security solutions business was impacted, with affected entities in #Bangladesh
AuditTeam claims ransomware activity against I-***YS in Russia, threatening to disrupt access to encrypted or stolen data. The impacted country(s) is Russia#RU
frey.com, a Switzerland-based FREY (Frey Brothers, Inc.) eco-friendly laundry care products company, suffered a ransomware incident attributed to the krybit threat actor. The attack impacted the availability of affected systems and data, with encrypted files requiring remediation; #Switzerland
In June 2024, the threat actor dragonforce claimed to have deployed ransomware against INK, an award-winning London-based CGI, animation, and retouching production studio serving film, print, and interactive platforms. The claim indicates disruption to INK’s operations in the impacted country: #UnitedKingdom
Blue Nile Medical Center in the US was targeted by the nightspire ransomware threat actor, resulting in the compromise and encryption of systems. The incident exposed more than 3,000 patient EHR records. #UnitedStates
The ransomware claim targets Balai Besar POM di Bandung in Indonesia, a regulatory body supervising food and drugs, where nova is alleged to have stolen data and pressured the organization for access. The threat actor is said to provide tree and samples from the stolen information when the victim contacts the support department, impacting Indonesia. #Indonesia
nightspire targeted WaxWorks Inc in the US with ransomware, encrypting files and disrupting operations while demanding payment to restore access. The claim attributes the incident to nightspire and describes the victim’s data and systems as impacted in the United States #UnitedStates
Nightspire ransomware has claimed an attack on K****** County, with Mi**e**ta, Country listed but specific data details unavailable at this time. The impacted country(s): #mi**e**ta
Silsbee Police Department in the US reported a ransomware incident attributed to threat actor nightspire, alleging unauthorized access and data encryption as part of extortion demands. Court information cited in the claim outlines the purported legal and investigative actions related to the attack, impacting #UnitedStates