United States
Targets by Group
United States - Targeted Attacks in All period
Posts 10895 total Page 4 / 109
| Type | Target | Source | Discovered | Business Category | Intel Link |
|---|---|---|---|---|---|
| Breaches | USA_Facebook 04.txt View Details | Database World ROC | — | ||
| Breaches | USA_Facebook 05.txt View Details | Database World ROC | — | ||
| Ransomware | RapidFort View Details | xpl0itrs | — | ||
|
Software supply chain security |
|||||
| Ransomware | AAM:HOA Management View Details | direwolf | Finance / Legal / Insurance | ||
|
HOA Management |
|||||
| Ransomware | Colla Health View Details | direwolf | — | ||
|
Healthcare |
|||||
| Ransomware | PayrHealth View Details | direwolf | Manufacturing / Engineering | ||
|
Healthcare |
|||||
| Ransomware | Lepi Enterprises View Details | securotrop | Construction / Real Estate | ||
|
Status: AWAITING Size: 692 GB |
|||||
| Ransomware | Interim HealthCare View Details | anubis | Healthcare / Pharma | ||
|
Home Healthcare Agency & Medical Staffing. |
|||||
| Ransomware | Columbia University Information (Dental) View Details | Global Secret Group | Education | ||
|
Country: New York, US | Website: columbia.edu | Revenue: $6.6 Billion | Industry: Colleges & Universities | Employees: 20.000-25.000 | Properties: 296 GB (283,387 Files, 11,268 Folders) |
|||||
| Ransomware | Connell Enterprises LLC View Details | interlock | IT | ||
|
Connell Enterprises Inc. is a United States-based IT sector company operating within enterprise technology services and related offerings. Within the threat-intelligence index catalog, connellenterprisesinc.com is documented as a ransomware victim entity associated with the threat actor interlock. This listing type indicates the entity was identified in relation to a ransomware incident connected to interlock's activity. The description maintains factual neutrality regarding the nature of the threat and avoids speculative claims about data exposure, operational impact, or resolution details. The entry serves as a structured reference for cybersecurity professionals monitoring entity-level threat associations and incident categorizations. |
|||||
| Ransomware | Serruya private equity View Details | coinbasecartel | Finance / Legal / Insurance | ||
|
[AI generated] Serruya Private Equity is a Canadian private equity firm based in Toronto, Ontario. Founded by the Serruya family, known for their background in the franchise and consumer goods industry, the firm focuses on investments in consumer brands, retail, and food and beverage sectors. The company acquires and grows established brands, leveraging operational expertise to drive value creation across its portfolio companies in North America. |
|||||
| Ransomware | Sweet Water Holdings View Details | coinbasecartel | — | ||
|
[AI generated] N/A |
|||||
| Ransomware | Keystops View Details | akira | — | ||
|
Key Oil Company is the largest distributor of branded motor fuels for Marathon Petroleum Compan y and also holds contracts with major brands like ExxonMobil and ConocoPhillips. They provide a wide range of products including lubricants, diesel exhaust fluid, antifreeze, and various fue l delivery solutions. We will upload 15gb corporate data soon. Employee and client personal information (NAME, PASSPO RT, DL, SSN and so on), financials, payment details, contracts and agreements and so on. |
|||||
| Ransomware | Cozad Asset Management View Details | akira | — | ||
|
Cozad Asset Management, Inc. provides the highest quality professional and personalized financi al services and advice to individuals, families and institutional investors throughout the coun try. We will upload 13gb corporate data soon. Employee personal information (passport, DLs, SSN), fi nancials, confidential files, contracts and agreements, legal files and so on. |
|||||
| Ransomware | Pierce Township View Details | rhysida | Public Sector | ||
|
Pierce Township Pierce Township is a growing community in Ohio that blends rural charm with suburban living, covering 23.5 square miles and home to over 16,000 residents.We are pleased to present:Judicial materials - Grand Jury subpoena response incl. hospital records (Mercy Hospital), public records requests, fire investigation reportsEmployee PII - Social Security numbers (SSA-1945, W-4, Ohio Tax forms), CDL licenses, health insurance waivers, new-hire packetsLegal settlements - Logan Creek v. Pierce Township, Purdue opioid settlement, easement and lease agreementsFinancial records - budgets, tax levies, appropriation reports, invoices, paymentsInternal email archives of township officials and administration More |
|||||
| Ransomware | Radiant View Details | qilin | IT | ||
|
N/A |
|||||
| Ransomware | ZEBRA.COM View Details | clop | Manufacturing / Engineering | ||
|
Data exfiltrated included the following: Database, Project - files, CAD - files Total size: 8Tb Revenue: $5,600,000,000 |
|||||
| Ransomware | PenLink View Details | qilin | IT | ||
|
N/A |
|||||
| Ransomware | Hinman Straub View Details | Storm | Finance / Legal / Insurance | ||
|
Hinman Straub is a full-service law firm located in Albany, New York, offering a comprehensive range of legal and lobbying services. The firm caters to a diverse clientele, including Fortune 500 companies, associations, and local governments, providing expertise in areas such as Labor and Employment, Corporate Law, Real Estate, and Healthcare. With a team of experienced professionals, they guide clients through complex legal matters at various governmental levels, leveraging strong relationships with key decision-makers. Additionally, their public affairs partner, Corning Place Communications, enhances their clients' communication strategies to effectively convey their messages to the public. The company headquarters is located in 121 State Street, Albany, NY 12207, United States. 51-200 Employees |
|||||
| Ransomware | Rood & Riddle Equine Hospital View Details | Storm | — | ||
|
Rood & Riddle Equine Hospital was established in Lexington, Kentucky in 1986 as a partnership between veterinarians William Rood and Thomas Riddle. The facility offers a range of services for the treatment of horses. They have cared for many famous Thoroughbreds both at the racetrack and on the farm. They also provide support for other equine sporting events such as the 2010 FEI World Equestrian Games held in Lexington. Rood & Riddle operates branches in Saratoga Springs, New York and Wellington, Florida. The company headquarters is located in 2150 Georgetown Road, Lexington, KY 40511, United States. 201-500 Employees |
|||||
| Ransomware | Southern Metals Company View Details | Storm | — | ||
|
Southern Metals Company, based in Charlotte, NC, specializes in the recycling of ferrous and non-ferrous metals, including steel, brass, copper, aluminum, and automobile bodies. Established in 1938, the company is committed to responsible recycling, superior customer service, and providing exceptional value for recyclable products. Serving a diverse clientele throughout the Carolinas, Southern Metals has built a reputation for integrity and efficiency over its long history. The company continues to uphold the principles set by its founders while adapting to modern recycling needs. The company headquarters is located in 2200 Donald Ross Road, Charlotte, NC 28208, United States. 51-200 Employees |
|||||
| Ransomware | Metabase View Details | shinyhunters | IT | ||
|
:P | Updated: 12 August 2026 | SHA256: 84daf8f33954a0b03238a1e0da3ee109d5bc32acc134cfdddfac36b4b75d2480 |
|||||
| Ransomware | Sharecare, Inc. View Details | shinyhunters | Healthcare / Pharma | ||
|
This Company data was published due to them hiring a very incompetent and unskilled negotiator. If you choose incompetency to negotiate for you, that is on you. We will be publishing companies data who are negotiating with us, without a warning if negotiators continue to take us as misinformed individuals and BS us. Over 3.4 million Salesforce records containing some PII and 28GB+ of internal corporate data was compromised. The Company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 25GB+ (compressed) | Updated: 13 August 2026 | SHA256: 195842b8a53e8d7fe63238dbed753c1c28a86034ca98f99527ef743528b6cc45 |
|||||
| Ransomware | Carhartt, Inc. View Details | shinyhunters | — | ||
|
Our demand for this Company was $3.3 million. The Company reached out. However, The Company did not try to negotiate. If The Company attempted to negotiate with us The Company would've ended up saving a good chunk of money. Instead they decided to do (see blow); this is also because The Company hired a very unskilled and incompetent negotiator. If The Company hired competency to negotiate for them, this post would've never been published. [21:24:22] carhartt: After careful review and internal discussions with leadership, we have decided not to move forward with negotiations or further discussions. We appreciate your patience throughout this process. There is millions of customers of data involved here. As we always say, these companies don't care. Millions of records of customer data and vast amount of sensitive information and PII containing employee, customer, customer metadata (royalty info), and other internal corporate data was compromised. The Company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 50GB+ (compressed) | Updated: 13 August 2026 | SHA256: 6b37f770382ce82bfa4677466cc51d9269e5a70436eecf101fae6fa9d5d8e8ac |
|||||
| Ransomware | Cook Medical LLC View Details | shinyhunters | — | ||
|
Customer data, employee data, and other internal corporate data was compromised. The Company engaged with us but made several paltry offers, did not want to pay what we asked for and decided they are okay with the data leak to happen instead of increasing their offer by a little, then we'd likely have accepted and this post would not have gone up. The Company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 182GB+ (compressed) | Updated: 14 August 2026 | SHA256: 8a87ba511f25f20a193f05a6578a620b02302c2075a6f2dff428d1f1a826ba63 |
|||||
| Ransomware | Gravity Coffee View Details | thegentlemen | — | ||
|
gravitycoffee.com zoominfo.com/c/gravity-coffee-company-llc/373342412 Gravity Coffee is a premium coffee brand known for serving high-quality beverages in its physical cafes and through retail products. Their signature medium roast blends feature a bold, smooth flavor profile with popular notes of hazelnut and chocolate. The company operates multiple locations and focuses on providing an exceptional coffee experience for its customers |
|||||
| Ransomware | Baxter International, Inc. View Details | shinyhunters | — | ||
|
Over 7.1M Salesforce records containing some PII was compromised. This is a final warning to reach out by 17 Aug 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 14 Aug 2026 | Warning: FINAL WARNING PAY OR LEAK |
|||||
| Ransomware | First Coast Heart Vascular Center View Details | thegentlemen | — | ||
|
firstcoastheart.com zoominfo.com/c/first-coast-heart--vascular-center/356606344 First Coast Heart & Vascular Center is a premier cardiovascular care provider serving patients across Northeast Florida. Their website highlights a comprehensive range of services, including expert cardiology, electrophysiology, advanced imaging, and vascular surgery. The medical center focuses on delivering innovative, evidence-based treatments and minimally invasive procedures to ensure the highest standard of heart health. |
|||||
| Ransomware | Community Connections View Details | thegentlemen | — | ||
|
comconnections.org zoominfo.com/c/community-connections-inc/350834294 Community Connections is a non-profit organization based in Ketchikan, Alaska, dedicated to providing individualized support for children, seniors, and individuals with disabilities. Founded over 40 years ago, their core mission focuses on encouraging independence, community belonging, and improving the overall quality of life for those they serve. The organization offers a wide range of specialized programs, including early childhood learning, mental health support, and comprehensive disability services. |
|||||
| Breaches | 2025 ISSUE USA DL SSN SELFIE PART (3).zip View Details | Database World ROC | — | ||
| Ransomware | D & J Beverage Service View Details | qilin | Retail / E-commerce | ||
|
N/A |
|||||
| Ransomware | Safeware View Details | thegentlemen | IT | ||
|
safewareinc.com Safeware Inc. is a national leader providing safety and security solutions for first responders, schools, and government agencies. For over 40 years, they have supplied advanced protective equipment and public preparedness training across the United States. The company simplifies government purchasing by offering specialized gear through competitive cooperative contract pricing. |
|||||
| Ransomware | clgroup View Details | incransom | Finance / Legal / Insurance | ||
|
Compunnel, founded in 1994 and headquartered in Plainsboro, New Jersey, provides information technology consulting and staffing, custom business application development, and eLearning services |
|||||
| Ransomware | Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... View Details | blacknevas | IT | ||
|
A Canadian IT company based in Markham, Ontario, founded in 2015. It develops software for warehouse management and automation (Warehouse Management Systems).Key products:RF Plus — a barcode scanning and inventory tracking system for ERPs (specifically Infor VISUAL)TED — a warehouse task management and tracking platformSolutions for forklift tracking, RTLS (Real-Time Locating Systems), and machine visionIt works primarily with manufacturers in North America. |
|||||
| Breaches | 600k Yahoo Combo List USA Mail Access.txt View Details | Database World ROC | — | ||
|
📂 600k Yahoo Combo List USA Mail Access.txt |
|||||
| Breaches | 5M USA YAHOO.txt View Details | Database World ROC | — | ||
|
#Combo List Yahoo USA 5M |
|||||
| Breaches | 1KK yahoo usa m.txt View Details | Database World ROC | — | ||
|
Private yahoo base by stradu |
|||||
| Breaches | USA Yahoo+ATT.txt View Details | Database World ROC | — | ||
| Breaches | 2.5Milion UHQ USA Yahoo Domain.txt View Details | Database World ROC | — | ||
| Breaches | Dump_public_gamenex.us_2013.09.08.rar View Details | Database World ROC | — | ||
| Ransomware | Riker Danzig Scherer Hyland & Perretti View Details | SilentRansomGroup | Finance / Legal / Insurance | ||
|
Founded in 1882, Riker Danzig Scherer Hyland & Perretti is a law firm with practice areas such as Alte… |
|||||
| Ransomware | Hightech Signs View Details | kairos | Manufacturing / Engineering | ||
|
Hightech Signs, Inc. is a full-service sign shop located in Charlottesville, Virginia, specializing in custom sign production and creative consultation. They offer a wide range of products including engraving services, banners, vehicle graphics, and window lettering. Their services cater to clients in Central Virginia, providing fast turnaround and excellent customer service. Hightech Signs aims to meet the diverse signage needs of businesses and organizations in the region. |
|||||
| Ransomware | Riker Danzig LLP View Details | SilentRansomGroup | Finance / Legal / Insurance | ||
|
[AI generated] Riker Danzig LLP is a prominent full-service law firm based in the United States, primarily operating in New Jersey. Founded in 1882, the firm provides legal services across a wide range of practice areas including litigation, corporate law, real estate, environmental law, and insurance. It serves clients spanning industries such as finance, healthcare, and manufacturing, and is recognized as one of New Jersey's leading law firms. |
|||||
| Ransomware | gamaus.com View Details | incransom | IT | ||
|
https://www.zoominfo.com/c/greater-austin-merchants-cooperative-association/98978085 greater-austin-merchants-cooperative-association 400gb |
|||||
| Ransomware | Westbrook Greenhouse Systems www.westbrooksystems.com serviced by an IT company Computer C... View Details | blacknevas | IT | ||
|
A Canadian family-owned company (part of the Westbrook Group of Companies) founded over 50 years ago. It specializes in the design, manufacturing, and installation of commercial greenhouses and related equipment (structures, heating and ventilation systems, benches, and handling materials).Its headquarters and manufacturing facilities are located in the Niagara region (Beamsville, Ontario). It serves clients across North America and operates its own factory spanning approximately 80,000 square feet. |
|||||
| Ransomware | Enteroptyx Ophthalmology Products www.enteroptyx.com serviced by an IT company Computer Co... View Details | blacknevas | — | ||
|
There is very little public information available about this company. Judging by its name, it is a small supplier or manufacturer of ophthalmology products (equipment, consumables, or instruments for eye care). There is virtually no detailed data regarding its operations, location, or history in open sources. |
|||||
| Ransomware | United Association Local Union 345 View Details | qilin | NGOs / Associations | ||
|
N/A |
|||||
| Ransomware | diabetesandmetabolism.com View Details | incransom | Healthcare / Pharma | ||
|
Diabetes and Metabolism Specialists is a specialty medical clinic located in San Antonio, TX, focused on the diagnosis and treatment of endocrine-related medical conditions. The clinic is staffed by board-certified endocrinologists, nurse practitioners, and certified diabetes educators who provide comprehensive care and education for chronic conditions such as diabetes, hyperparathyroidism, and metabolic syndrome. They emphasize professionalism and patient education, ensuring that clients understand their diagnoses and treatment options. The intended clients are individuals seeking specialized care for endocrine disorders and metabolic conditions. Employees: 50 Revenue: $5.5 Million Industry: Hospitals & Physicians Clinics Phone Number: (210) 494-3739 |
|||||
| Ransomware | AOL.COM View Details | clop | IT | ||
|
[AI generated] AOL.com is an American web services and media company headquartered in New York, USA. Originally known as America Online, it was one of the pioneering internet service providers in the 1990s. Today, AOL operates as a digital media and advertising technology platform under Verizon Communications, offering email services, news, entertainment content, and online advertising solutions to consumers and businesses across the United States and globally. |
|||||
| Ransomware | FLUIDLOGIC.COM View Details | clop | Manufacturing / Engineering | ||
|
FLUIDLOGIC.COM operates within the United States manufacturing and engineering sector, providing specialized operational and technical services relevant to industrial workflows and supply chain functions. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor clop. This designation reflects the cybersecurity event documented against the organization within the index, without elaborating on unverified incident details such as data exfiltration scope, ransom demands, or internal impact specifics. The listing type underscores the role of FLUIDLOGIC.COM within incident tracking frameworks for identifying ransomware activity across targeted sectors and geographies. |
|||||
| Ransomware | G3AEROSPACE.COM View Details | clop | Manufacturing / Engineering | ||
|
G3AEROSPACE.COM operates within the United States manufacturing and engineering sector, providing specialized industrial technology and engineering solutions. The entity is cataloged in this threat-intelligence index as a ransomware victim. Its association with the threat actor clop indicates a cybersecurity compromise within its operational environment. This listing reflects verified intelligence linking the organization to ransomware activity attributed to clop, without disclosing unconfirmed incident details. The classification supports threat monitoring and risk assessment for sector-specific security stakeholders. |
|||||
| Ransomware | ARCHERGREY.COM View Details | clop | IT | ||
|
ARCHERGREY.COM operates within the IT sector based in the United States. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor clop. The listing type identifies ARCHERGREY.COM within the ransomware incident database, providing context for security professionals monitoring cyber threats in information technology environments. No specific incident details, such as data stolen or ransom demands, are included here to maintain factual neutrality and avoid speculation beyond the verified association. This entry supports threat-intelligence workflows focused on identifying and tracking ransomware-related entities and their associated actors. |
|||||
| Ransomware | OMNITANKER.COM View Details | clop | IT | ||
|
OMNITANKER.COM operates within the IT sector and is situated in the United States. The entity is cataloged within this threat-intelligence index under the designation ransomware victim, explicitly linked to the clop threat actor. This listing reflects the observed association between OMNITANKER.COM and clop within cybersecurity intelligence records. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are included per strict factual neutrality guidelines. The entry serves to document the relationship for threat researchers, defenders, and security analysts monitoring actor-linked entities across critical technology sectors. |
|||||
| Ransomware | LIFESTRAW.COM View Details | clop | IT | ||
|
LIFESTRAW.COM operates within the IT sector and is situated in the United States. As documented in threat-intelligence indexing, the entity is classified as a ransomware victim linked to the clop threat actor group. The listing reflects observed cyber threat activity targeting this organization and aligns with broader monitoring of ransomware campaigns in the technology sector. This record serves as a reference point for analysts tracking threat actor methodologies, victim profiles, and sector-specific security risks. The inclusion underscores the importance of vigilance for IT organizations against evolving ransomware threats. |
|||||
| Ransomware | IVALUESYS.COM View Details | clop | Services | ||
|
IVALUESYS.COM operates within the Services sector and is based in the United States. The entity provides professional services aligned with its sector classification, though specific operational details remain limited within available threat intelligence records. This listing type identifies IVALUESYS.COM as a ransomware victim linked to the clop threat actor group. The association reflects cybersecurity monitoring findings compiled into the threat-intelligence index. No additional incident specifics, such as data stolen or ransom demands, are confirmed or included here. This entry serves as a neutral catalog reference for entities impacted by identified cyber threats. |
|||||
| Ransomware | THERMOS.COM View Details | clop | Manufacturing / Engineering | ||
|
THERMOS.COM operates within the United States Manufacturing and Engineering sectors, providing specialized technical and operational services relevant to industrial workflows and product development. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor clop. The listing reflects the cybersecurity context in which the organization was impacted, emphasizing sector exposure and actor attribution without disclosing unverified incident details. This catalog entry supports researchers and defenders in understanding ransomware patterns within critical manufacturing and engineering environments. |
|||||
| Ransomware | INTELLIHOT.COM View Details | clop | IT | ||
|
INTELLIHOT.COM operates within the IT sector and is situated in the United States. The entity is cataloged within the threat-intelligence index under the designation ransomware victim, with the associated threat actor identified as clop. Catalog entries for such organizations provide structured intelligence regarding exposure profiles, sector relevance, and attacker attribution for security analysts and defenders. This listing reflects the observed relationship between INTELLIHOT.COM and the clop threat actor without disclosing unverified incident details. It was listed as a ransomware victim associated with clop. |
|||||
| Ransomware | INTELLIGENTGROWTHSOLUTIONS.COM View Details | clop | IT | ||
|
INTELLIGENTGROWTHSOLUTIONS.COM operates within the IT sector and is headquartered in the United States. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, with the associated threat actor identified as clop. Clop is a known cyber threat actor group linked to ransomware campaigns targeting organizations across multiple sectors. This listing reflects the entity's inclusion in intelligence records tied to this specific threat actor's activity. No further incident details, such as data stolen or ransom demands, are specified in this catalog entry to maintain factual neutrality and avoid speculation regarding the event. |
|||||
| Ransomware | CLOVER.COM View Details | clop | IT | ||
|
CLOVER.COM is an entity cataloged within the threat-intelligence index under the ransomware victim listing type. Operating within the IT sector and associated with the United States, the entity is documented as a victim linked to the threat actor clop. The listing provides a neutral reference point for cybersecurity analysts tracking ransomware exposure, entity risk profiles, and associated adversary activity across digital infrastructure sectors. No specific breach details, stolen data categories, record counts, ransom terms, or confirmed incident claims are included, preserving factual restraint and avoiding speculative characterization. This entry reflects the indexed classification of CLOVER.COM as a ransomware victim associated with clop. |
|||||
| Ransomware | SMAPCENTER.UAH.EDU View Details | clop | Education | ||
|
SMAPCENTER.UAH.EDU is an entity identified within the Education sector located in the United States, operating under a domain structure indicating a center or service hub potentially serving academic or institutional functions. It is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor clop. This listing type documents the entity's status as a compromised or impacted organization within the cybersecurity landscape, reflecting targeted activity in the education sector. The entry provides neutral context for analysts tracking ransomware campaigns and their impact across sectors and geographies. SMAPCENTER.UAH.EDU was listed as a ransomware victim associated with clop. |
|||||
| Ransomware | TRISTAR.COM View Details | clop | IT | ||
|
TRISTAR.COM operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions serving clients within its industry domain. As documented in this threat-intelligence index, TRISTAR.COM has been identified as a ransomware victim linked to the threat actor clop. This classification reflects the cybersecurity context in which the entity was observed within the ransomware incident landscape. The entry serves to catalog this association for threat researchers and security professionals monitoring adversary activity. |
|||||
| Ransomware | CORNELIUS.COM View Details | clop | IT | ||
|
CORNELIUS.COM operates within the IT sector and is identified as a ransomware victim within the threat-intelligence index. The entity is associated with the threat actor clop, with operational context linked to the United States. CORNELIUS.COM represents an organization impacted by ransomware activity, contributing to the catalog's mapping of victim infrastructure, sector exposure, and adversary attribution. The listing type explicitly categorizes CORNELIUS.COM as a ransomware victim connected to clop, providing neutral reference points for defenders assessing risk patterns in the IT landscape. No specific incident details beyond the verified association are included. |
|||||
| Ransomware | PARTECH.COM View Details | clop | IT | ||
|
PARTECH.COM operates within the IT sector and is headquartered in the United States. The entity functions as a technology services provider, with catalog records categorizing it specifically as a ransomware victim within threat-intelligence indexing frameworks. This listing type indicates documented exposure to cyber-threat activity linked to the clop threat actor group. The entry contributes contextual intelligence regarding entity vulnerability, sector exposure, geographic origin, and associated adversary attribution for defense and incident-response analysis. PARTECH.COM was listed as a ransomware victim associated with clop. |
|||||
| Ransomware | STARKEY.COM View Details | clop | IT | ||
|
STARKEY.COM operates within the IT sector and is located in the United States. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor clop. The listing reflects the cybersecurity context surrounding this organization without disclosing specific technical findings, data exfiltration details, or confirmed breach metrics. This record serves to document the association for analysts tracking ransomware campaigns and related threat actor activity across sectors. Neutral reporting ensures transparency while adhering to intelligence-sharing protocols. |
|||||
| Ransomware | TOASTTAB.COM View Details | clop | IT | ||
|
TOASTTAB.COM operates within the IT sector and is situated in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association specifically linked to the threat actor clop. This listing reflects the entity's inclusion in records documenting cybersecurity incidents and attacker attribution. The description remains neutral and factual, focusing on the entity's classification, sector, geographic context, and the attributed threat actor without elaborating on unverified incident details. TOASTTAB.COM was listed as a ransomware victim associated with clop. |
|||||
| Ransomware | FISERV.COM View Details | clop | IT | ||
|
FISERV.COM is an IT sector company based in the United States, historically associated with enterprise technology services and digital infrastructure solutions. As a ransomware victim in the threat-intelligence index, this listing documents its association with the threat actor clop within the catalog. The entry provides neutral context for analysts tracking cyber incidents across sectors and geographies. No breach details, data scope, ransom terms, or confirmed attack specifics are included in this description to maintain factual restraint. The record serves as a structured reference point linking the entity, its sector, listing type, threat actor, and country of origin. |
|||||
| Ransomware | GE.COM View Details | clop | Manufacturing / Engineering | ||
|
GE.COM operates within the United States manufacturing and engineering sectors, providing industrial technology, digital solutions, and enterprise services for operational and technical applications. As cataloged in this threat-intelligence index under the ransomware victim listing type, GE.COM is associated with the threat actor clop. This entry reflects the entity's classification within cybersecurity intelligence records without confirming specific incident details, data exfiltration, or operational impact. The listing serves to document the relationship between the organization, its sector context, and the identified threat actor for monitoring and risk assessment purposes. |
|||||
| Ransomware | NETPOWER.COM View Details | clop | Energy | ||
|
NETPOWER.COM operates within the Energy sector and is headquartered in the United States. The entity provides energy-related services or infrastructure functions, though specific operational details remain limited in public threat-intelligence records. It has been identified within this threat-intelligence index as a ransomware victim linked to the threat actor clop. This listing reflects the association between NETPOWER.COM and clop's activity without disclosing unverified incident specifics such as data stolen, ransom demands, or confirmed breach details. The entry serves cybersecurity stakeholders monitoring ransomware campaigns targeting energy-sector organizations in the US. |
|||||
| Ransomware | stuartandassociates.com View Details | incransom | — | ||
|
Stuart & Associates Commercial Flooring, Inc. specializes in providing high-quality commercial flooring solutions designed to enhance customer experiences. They offer a three-year warranty on new installations when clients purchase maintenance programs, ensuring satisfaction and value throughout the process. The company features a design center with extensive product samples and emphasizes delivering projects on budget and on schedule. Their target clients include businesses seeking safe, comfortable, and aesthetically pleasing flooring options. Employees: 50 Revenue: $6.4 Million Industry: Construction Management Phone Number: (316) 267-0743 |
|||||
| Ransomware | WONDR DIAMONDS & D GEM MOUNT View Details | majinahanashi | Retail / E-commerce | ||
|
TARGET: wondrdiamonds.com & gemmount.com REVENUE: $12m USD EMPLOYEES: 200+ [LEAK / 247 FILES] |
|||||
| Ransomware | ALTAIR View Details | majinahanashi | IT | ||
|
PUBLICATION SCHEDULED. [LEAK / 84251 FILES] |
|||||
| Ransomware | Holstrom, Block & Parke, A Professional Law View Details | Ethics | Finance / Legal / Insurance | ||
|
Our attorneys have experience handling cases in all areas of family law, estate planning, appeals, and probate law |
|||||
| Ransomware | Philadelphia Insurance Companies View Details | Ethics | Finance / Legal / Insurance | ||
|
Philadelphia Insurance Companies (phly.com) is a premier national Property/Casualty and Professional Liability insurance carrier that designs |
|||||
| Ransomware | R... D... View Details | SilentRansomGroup | Manufacturing / Engineering | ||
|
Redacted entry - full company name pending disclosure (FULL DATA TIMER active). |
|||||
| Breaches | gourls.us DATABASE.txt View Details | Database World ROC | — | ||
| Ransomware | **E*** View Details | genesis | Other | ||
|
A healthcare organization |
|||||
| Ransomware | powdr.com View Details | settra | Hospitality / Food & Beverage / Tourism | ||
|
Point of No Return: What the Ski Empire Is Hiding A company that sells adventure, family memories, a... |
|||||
| Ransomware | firstdigital.com View Details | settra | Telecommunications | ||
|
The Digital Cartel: How a Telecom Empire Robs Its Own Customers and Employees A company that sells c... |
|||||
| Ransomware | flowco-inc.com View Details | settra | Manufacturing / Engineering | ||
|
DEEP WELL: Flowco Production Solutions Documents PROLOGUE Payroll records with employee names and po... |
|||||
| Ransomware | advancedtaxsolutions.com View Details | settra | Finance / Legal / Insurance | ||
|
Frank Rim & Associates: Archive of a Tax Consulting Practice PROLOGUE Every tax case. Initial cl... |
|||||
| Ransomware | AngMar Companies View Details | interlock | Services | ||
|
angmarcompanies.com operates within the Services sector and is located in the United States. The entity functions as a commercial organization within this service-oriented industry, with public digital presence under its domain name. This listing categorizes angmarcompanies.com within a ransomware victim designation in the threat-intelligence index, specifically linked to the threat actor interlock. The description reflects the indexed classification only and does not confirm specific intrusion details, data exfiltration, or operational impact. It serves as a neutral reference point for threat actors, defenders, and analysts monitoring service-sector exposure to interlock-associated ransomware activity. |
|||||
| Ransomware | Service Evaluation Concepts View Details | qilin | Services | ||
|
N/A |
|||||
| Ransomware | tommer construction View Details | qilin | Construction / Real Estate | ||
|
N/A |
|||||
| Ransomware | Leafwell View Details | direwolf | Healthcare / Pharma | ||
|
Hospitals & Physicians Clinics |
|||||
| Ransomware | Cleaver-Brooks View Details | anubis | Manufacturing / Engineering | ||
|
Major data breach at a leading industrial manufacturer. |
|||||
| Ransomware | Consolidated Medical Practices of Memphis View Details | genesis | Other | ||
|
A healthcare organization |
|||||
| Ransomware | Interim HealthCare (Oklahoma and Tulsa) View Details | genesis | Healthcare / Pharma | ||
|
A healthcare organization dealing with elderly care services |
|||||
| Ransomware | Merge View Details | direwolf | Finance / Legal / Insurance | ||
|
Financial |
|||||
| Ransomware | Swyft Inc. View Details | direwolf | Retail / E-commerce | ||
|
Retail Technology & SaaS |
|||||
| Ransomware | AliveCor, Inc. View Details | direwolf | Healthcare / Pharma | ||
|
medical device and artificial intelligence |
|||||
| Ransomware | Osmo Wallet View Details | direwolf | Finance / Legal / Insurance | ||
|
FinTech |
|||||
| Ransomware | Coggins Insurance Agency View Details | Global Secret Group | Finance / Legal / Insurance | ||
|
Country: Florida, United States | Website: cogginsinsurance.com | Revenue: $5 Million | Industry: Insurance | Employees: 1-10 | Properties: 85.9 GB (245,768 Files, 26,563 Folders) |
|||||
| Ransomware | Presentations.AI View Details | unsafe | IT | ||
|
Revenue: $5 million |
|||||
| Ransomware | City of Winchester View Details | qilin | — | ||
|
N/A |
|||||
| Ransomware | B Wright Drywall View Details | qilin | — | ||
|
N/A |
|||||
| Ransomware | Cook Remodeling View Details | Global Secret Group | Construction / Real Estate | ||
|
Country: Arizona, United States Website: cookremodeling.com | Revenue: $5 Million | Industry: Construction Management | Employees: 11-50 Properties: 23.2 GB (47,193 Files, 8,323 Folders) |
|||||
| Ransomware | Southern Metals View Details | Storm | Manufacturing / Engineering | ||
|
Southern Metals Company, based in Charlotte, NC, specializes in the recycling of ferrous and non-ferrous metals, including steel, brass, copper, aluminum, and automobile bodies. Established in 1938, the company is committed to responsible recycling, superior customer service, and providing exceptional value for recyclable products. Serving a diverse clientele throughout the Carolinas, Southern Metals has built a reputation for integrity and efficiency over its long history. The company continues to uphold the principles set by its founders while adapting to modern recycling needs. The company headquarters is located in 2200 Donald Ross Road, Charlotte, NC 28208, United States. 51-200 Employees |
|||||
| Ransomware | TRP International View Details | Storm | Transportation / Travel / Logistics | ||
|
TRP International, LLC specializes in the distribution of high-quality components for various markets, including axle manufacturers, boat trailer manufacturers, and specialty vehicle manufacturers. The company utilizes state-of-the-art technology and strategically located distribution centers to ensure efficient order processing and delivery across the U.S., Canada, and Mexico. With a strong focus on engineering, quality, and lean manufacturing principles, TRP is committed to meeting and exceeding customer specifications. Their ISO 9001:2015 certification underscores their dedication to quality and continuous improvement in their product offerings. The company headquarters is located in 22420 Challenger Drive, Elkhart, IN 46514, United States. 51-200 Employees |
|||||
| Ransomware | Supportive Insurance Services View Details | Storm | IT | ||
|
Supportive Insurance Services is a specialized insurance compliance firm that provides comprehensive licensing solutions for agents, agencies, adjusters, and carriers across the United States. The company helps clients navigate complex, state-specific regulatory requirements, ensuring full compliance while reducing administrative burdens and operational risk. By managing every aspect of the licensing process with precision and personalized service, Supportive Insurance Services enables insurance professionals to focus on client service and business growth. The firms expertise, deep industry knowledge, and client-centered approach make it a trusted partner for insurance organizations seeking efficient and reliable licensing support. The company headquarters is located in 1610 S Old Decker Road, Vincennes, IN 47591, United States. 11-50 Employees |
|||||
| Ransomware | T.RAD North America View Details | Wallstreet | Manufacturing / Engineering | ||
|
T.RAD North America (tradna.com) is a Hopkinsville, Kentucky-based manufacturer focused on heat exchangers for thermal-management applications such as vehicle powertrains, HVAC/architectural systems, and emerging technologies like battery and fuel-cell cooling. |
|||||