coinbasecartel reportedly claimed to have deployed ransomware against Caterpillar Inc., an American industrial manufacturer headquartered in Irving, Texas, impacting its operations in the United States. The impacted country(s): #UnitedStates
Category: Ransom Monitor
Ali-Monde, a long-standing US-based food production and distribution company with 800+ dry organic and gluten-free products across multiple regions, reported a ransomware incident attributed to the incransom threat actor. The attackers’ actions impacted Ali-Monde’s operations in the US. #UnitedStates
Threat actor kairos allegedly deployed ransomware against Collège O’Sullivan de Québec, a Canadian training institution offering in-class and online programs in administration, insurance, office management, IT, web development, and marketing. The claim states the attack disrupted the college’s education services and impacted their operations in #Canada
The ransomware incident targeting Universidad Nacional de Mar del Plata (Argentina) was attributed to the nova threat actor, which allegedly threatened the university by leveraging stolen data. Nova reportedly demanded engagement with its support channel and provided proof-of-data to the victim as part of the extortion attempt, impacting Argentina #Argentina
Rumah Sakit Universitas Indonesia (RSUI), a teaching hospital of the University of Indonesia in Indonesia, reported ransomware activity that placed its medical data stored on affected drives at risk after the nova threat actor infiltrated its systems. The nova group claims to have exfiltrated and provided a proof tree and samples of stolen data to RSUI when contacted via its support department. #Indonesia
Jrd Logistics LTD, an India-based freight forwarding and supply chain company headquartered in Kolkata, was targeted by the nova ransomware group, which allegedly exfiltrated data and threatens to release it unless the company contacts their support. The threat actor provides a data “tree” and samples of stolen information to the victim upon engagement with the support department. #India
Wikoff Color Corporation (wikoff.com) in the US has reportedly suffered full compromise confirmed by threat actor chaos, with claims of access to internal materials including financial reports and proprietary R&D formulas. The incident is described as involving 650 GB of data from the US. #UnitedStates
Bolt & Nut Manufacturing in the UK reported a ransomware incident attributed to the qilin threat actor. The attack resulted in disruption of operations and potential data exposure. #UnitedKingdom
Koperasi Konsumen Karyawan PT Aplikanusa Lintasarta (KOPKARLA) in Indonesia, which evolved from savings and loan services to telecommunications network installation solutions since 1998, was targeted by the nova ransomware actor. #Indonesia
Eana in Argentina was targeted by the qilin ransomware threat actor, resulting in disruption and data encryption consistent with malicious ransomware activity. The impacted country is #Argentina
Qilin ransomware impacted PP+K in Brazil, encrypting files and disrupting operations. The attack was attributed to the qilin threat actor, impacting Brazil #Brazil
Reni Farm,ácias Associadas in Brazil faces an upcoming ransomware claim by Doommageddon with no disclosed data size and no listed files. The deadline for response is 2026-07-30T00:00:00Z. #Brazil
The ransomware claim targets tws-tac.net in Germany (DE) by the threat actor threeam. The company, locally owned for over 65 years and family-owned for almost 40 years, continues to serve its customers while anticipating the future. #Germany
AK Preparedness reported a ransomware incident attributed to the qilin threat actor, resulting in disruption and unauthorized encryption of data. The impacted country(s) is/are #N/A
The ransomware incident targeting Armara in France was attributed to the qilin threat actor, involving unauthorized encryption of files and disruption of operations. The attack resulted in data and system impact for the victim, France #France