The Colegio de la Compañía de María Vigo in Spain experienced a ransomware attack attributed to the threat actor arcusmedia, which encrypted their systems and demanded a ransom. The incident underscores the ongoing cybersecurity risks facing educational institutions and highlights the importance of robust defenses to protect sensitive data and operations.
Incident Details
- Victim: Colegio de la Compania de Maria Vigo
- Country: ES
- Actor: arcusmedia
- Source: http://arcuufpr5xxbbkin4mlidt7itmr6znlppk63jbtkeguuhszmc5g7qdyd.onion/?p=476
- Discovered: 2025-05-18 00:23:45.846776
- Published: 2025-05-17 22:42:27.000000
Information
- Ransomware attack targeted Colegio de la Compañía de María Vigo.
- Attack actor identified as Arcusmedia.
- The ransomware incident involved an extensive duration of 66,666 days, 22,222,222 hours, 55,559,999 minutes, and 11,115,555 seconds.
- The attack impacted the mission of the Company of Mary to make its vision a reality in schools owned by the organization.

Disclaimer: This post is based on public claims made by the ransomware group "arcusmedia". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.