The ransomware claim involves the victim ctd-dortmund.de, which has reportedly been compromised by the threat actor safepay. The incident has impacted systems in Germany, #DE.
Incident Details
- Victim: ctd-dortmund.de
- Country: DE
- Actor: safepay
- Source: http://j3dp6okmaklajrsk6zljl5sfa2vpui7j2w6cwmhmmqhab6frdfbphhid.onion#ctd-dortmund
- Discovered: 2025-05-21 20:51:40.810467
- Published: 2025-05-21 20:50:30.438402
Information
- Ransomware attack targeted the website ctd-dortmund.de.
- Perpetrated by the actor known as Safepay.
- No additional information or impact details available.

Disclaimer: This post is based on public claims made by the ransomware group "safepay". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.