Ransom! SEARS (Grupo Sanborns) (AUG-2026)

Ransom! SEARS (Grupo Sanborns) (AUG-2026)
SEARS (Grupo Sanborns, S.A. de C.V.) in Mexico has been claimed as a ransomware target by the spacebears threat actor, with “AttentionDemo” files expected to appear before a full-scale release. The incident impacts operations across Mexico. #Mexico

Incident Details

  • Victim: SEARS (Grupo Sanborns)
  • Sector: Retail & E-Commerce
  • Country: MX
  • Actor: spacebears
  • Source: http://5butbkrljkaorg5maepuca25oma7eiwo6a2rlhvkblb4v6mf3ki2ovid.onion/companies/70/sears-grupo-sanborns
  • Discovered: 2026-08-15T15:30:23.599393+00:00
  • Published: 2026-08-15T15:30:03.885579+00:00

Information

  • SEARS (Grupo Sanborns, S.A. de C.V.) is a leading Mexican retail company and a key subsidiary of Grupo Carso, owned by the Slim family.
  • Founded in 1903 by the Sanborn brothers, it has become one of Mexico’s most iconic and successful retail groups.
  • The company operates two of the country’s best-known brands: Sears, focused on mid-range department stores, and Sanborns, known for its store-and-restaurant format.
  • Grupo Sanborns manages more than 41,000 employees and hundreds of stores nationwide.
  • The group has a strong emphasis on e-commerce and digital transformation.
  • Demo files are expected to appear in the coming days ahead of a full-scale release.

Disclaimer: This post is based on public claims made by the ransomware group "spacebears". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live