Ransom! Criba (AUG-2026)
Criba (AR) in Argentina reported a ransomware claim by threat actor dragonforce, with leaked data reportedly covering Argentina, Uruguay, and other countries, including financial and client documentation and a large volume of information not intended for public disclosure. #ArgentinaUruguay

Incident Details

  • Victim: Criba
  • Sector: Technology
  • Country: AR
  • Actor: dragonforce
  • Source: http://z3wqggtxft7id3ibr7srivv5gjof5fwg76slewnzwwakjuf3nlhukdid.onion/blog/?post_uuid=5cf8c483-41c0-4da7-800e-fcdbe6a0819b
  • Discovered: 2026-08-24T16:24:19.790213+00:00
  • Published: 2026-08-24T16:11:47.096251+00:00

Information

  • Release includes data on Argentina, Uruguay, and other countries, as well as financial documents and client documentation, including a vast amount of information not intended for public disclosure.
  • Specializes in providing comprehensive solutions for every stage of construction projects, leveraging over 70 years of experience.
  • Focuses on quality, efficiency, and safety, ensuring the ability to execute even the most ambitious architectural designs.
  • Portfolio includes commercial offices, healthcare facilities, and residential buildings.
  • Committed to maintaining a zero-accident policy and prioritizing workforce safety.

Disclaimer: This post is based on public claims made by the ransomware group "dragonforce". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live