OnTrac
emperadorThis record tracks a ransomware attack claimed by the emperador group against OnTrac. It collects the publicly disclosed attack details — sector, location and timeline — as published on the operator's leak site and indexed by Breach House.
Window Zero
EXPOSURE GAPWindow Zero is the time the breach stayed in the open before anyone said so — the gap between when the attack was first discovered on the operator's leak site (t1) and when it was publicly disclosed (t2). The wider this window, the longer victims, staff and customers were exposed with no warning.
Attack Summary
OnTrac is an entity operating within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. Its catalog listing identifies it as a ransomware victim, with the associated threat actor or source designated as emperador. The description reflects the entity’s sector profile and the intelligence classification without asserting unconfirmed breach details, stolen data, ransom terms, or specific incident metrics. This entry serves threat-intelligence indexing by documenting the victim profile, geographic context, industry relevance, and actor association for analytical and defensive reference. OnTrac was listed as a ransomware victim associated with emperador.
Leak Screenshots
2 CAPTUREDCaptured directly from the operator's leak site by our collector, last checked 2026-09-23. Verdict evidence: [H7] 27d 22h 40m 31s
Proof files published by the operator — 1 image(s) harvested from this entry. Content is locked; type and dimensions shown.