Ransomware Group intelligence
Dark Project
ActiveTrack Dark Project with 51 published victims and 1 known leak locations in a single intelligence view.
Overview
Dark Project is tracked by Breach House as a ransomware group with 51 published victims.
United States is currently the most targeted country in this dataset.
1 known leak locations are currently associated with this group.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (1)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 1 | Onion service | Up checked 4h ago | darkprn3d3udnhpuxknsrhft3376lrz5tenhgkrxge5hxqe46pkbrwid.onion |
Top Activity Sectors (11)
Typical Attacks (12)
▼MITRE ATT&CK does not currently catalogue Dark Project, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
T1059.001 PowerShell Execution
What they do: Dark Project executes malicious payloads through PowerShell scripts to stage ransomware operations on compromised hosts.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
What they do: Dark Project modifies Windows Registry Run keys to ensure ransomware execution upon system restart for persistence.
What that means: Adversaries may interact with the Windows Registry as part of a variety of other techniques to aid in defense evasion, persistence, and execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: Dark Project disables security tools by terminating antivirus processes and modifying system behavior to evade detection.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1070.004 File Deletion Stealth
What they do: Dark Project deletes Volume Shadow Copies and temporary backup files using vssadmin and file deletion commands.
What that means: Adversaries may delete files left behind by the actions of their intrusion activity.
-
What they do: Dark Project performs system checks to validate target environments and adapt encryption behavior before deployment.
What that means: Adversaries may employ various system checks to detect and avoid virtualization and analysis environments.
-
T1564.003 Hidden Window Stealth
What they do: Dark Project operates through hidden command windows to conceal malicious processes and tool execution during attacks.
What that means: Adversaries may use hidden windows to conceal malicious activity from the plain sight of users.
-
T1083 File and Directory Discovery Discovery
What they do: Dark Project performs file and directory discovery to identify critical business data and system folders for targeting.
What that means: Adversaries may enumerate files and directories or may search in specific locations of a host or network share for certain information within a file system.
-
T1135 Network Share Discovery Discovery
What they do: Dark Project uses network share discovery to locate victim file shares and storage paths for encryption targets.
What that means: Adversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of interest for Lateral Movement.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: Dark Project uses SMB/Windows Admin Shares for lateral movement across networked manufacturing and engineering systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1486 Data Encrypted for Impact Impact
What they do: Dark Project encrypts victim files using custom ransomware binaries to maximize operational disruption and extortion leverage.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1489 Service Stop Impact
What they do: Dark Project stops critical services like backup agents and monitoring systems using net stop commands to disrupt recovery.
What that means: Adversaries may stop or disable services on a system to render those services unavailable to legitimate users.
-
T1490 Inhibit System Recovery Impact
What they do: Dark Project inhibits system recovery by destroying Volume Shadow Copies and backup restore mechanisms via command-line tools.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Victims (51)
Search, filter and paginate the victim timeline for Dark Project. Showing 1–51 of 51.
| Type | Target | Discovered | Country | Business Category | Intel Link |
|---|---|---|---|---|---|
| Ransomware | Pump Engineering Company id32092 View details | United States | Manufacturing / Engineering | ||
|
www.pumpengineering.net operates within the United States manufacturing and engineering sector, providing specialized technical engineering solutions and related industrial services. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the Dark Project threat actor group. This listing reflects a cybersecurity incident classification rather than confirmed breach details, avoiding speculation on data exfiltration, ransom demands, or operational impact. The designation underscores the vulnerability of engineering firms to cyber threats targeting operational technology and intellectual property. This entry serves threat analysts monitoring ransomware activity across industrial sectors. |
|||||
| Ransomware | Pump Engineering Company id32092 View details | United States | Manufacturing / Engineering | ||
|
About Pump Engineering Company Pump Engineering Company is a full-service distributor and supplier of industrial pumps, parts, and fluid handling systems, serving Southern California since 1946. During the cyberattack, 120,000 files (115 GB) were stolen, including an extensive customer database, insurance documents, confidential financial documents, and a vast number of project drawings. |
|||||
| Ransomware | Dentist in New Britain, CT id32094 View details | United States | Healthcare / Pharma | ||
|
dentistinnewbritain.com operates within the healthcare and medicine sector, based in the United States, providing dental services and related patient care offerings. As a ransomware victim, this entity is documented within the threat-intelligence index due to an incident associated with Dark Project, a threat actor identified in cyber threat reporting. The listing type reflects the nature of the exposure without disclosing unconfirmed technical details, data scope, or operational impact. This catalog entry serves cybersecurity professionals by contextualizing the entity within active threat actor activity across critical healthcare infrastructure. It was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Dentist in New Britain, CT id32094 View details | United States | Healthcare / Pharma | ||
|
About Dentist in New Britain, CT Dentist in New Britain has spent over a decade caring for families across New Britain—pairing modern technology with the kind of warmth you don't expect from a dental office. As a result of the attack, the following were compromised: the entire customer database, consisting of just over 8,000 files, as well as a small number of records containing Social Security numbers |
|||||
| Ransomware | The Liberty Group id32086 View details | United States | Services | ||
|
LibertyGroup.com operates within the Services sector and is headquartered in the United States, providing business and operational services to clients. According to the threat-intelligence index, this entity has been identified as a ransomware victim associated with the Dark Project threat actor. The designation reflects its inclusion in records documenting cyber incidents where ransomware activity was observed or attributed. This listing serves as a reference point for analysts tracking Dark Project campaigns and their impact across sectors in the US. The description remains neutral regarding specific technical details, as confirmed incident specifics were not publicly disclosed by the entity itself. |
|||||
| Ransomware | The Liberty Group id32086 View details | United States | Services | ||
|
About The Liberty Group Companys offerings include local, long distance, and international moving, lab relocation services, and logistics solutions. They cater to a diverse range of clients, providing professional and comprehensive assistance to both residential and commercial customers. Investigators are working to identify the perpetrators and assess the full scope of the damage. A company has suffered a major cyberattack resulting in the theft of approximately 27,000 internal files. The leaked documents include financial records, internal working materials, and personal data of employees. Attackers encrypted the company's systems following the breach, severely disrupting operations |
|||||
| Ransomware | Jones, Little & Co., CPAs, LLP id32087 View details | United States | Retail / E-commerce | ||
|
www.jonesandlittle.com operates within the US retail and e-commerce sector, providing commercial services and online commerce capabilities to customers and partners. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the Dark Project threat actor. This listing reflects the cybersecurity context in which the organization was identified within Dark Project's operational footprint, without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The record serves to inform stakeholders of the threat exposure profile for this sector-specific entity. Neutral documentation ensures transparency while adhering to strict factual boundaries regarding confirmed incidents. |
|||||
| Ransomware | Jones, Little & Co., CPAs, LLP id32087 View details | United States | Retail / E-commerce | ||
|
About Jones, Little & Co., CPAs, LLP Jones, Little & Co., CPAs, LLP is a professional accounting firm that offers a wide range of services including business accounting, tax preparation, and IRS problem resolution. They cater to small businesses, non-profit organizations, and specialized industries such as auto dealers and retailers. At least 100 gigabytes of company data—including financial records, internal files, and employee personal information—were stolen in a cyberattack. Hackers encrypted the firm's systems after exfiltrating the documents, leaving operations paralyzed. |
|||||
| Ransomware | Design-Aire Engineering, INC id32083 View details | United States | Manufacturing / Engineering | ||
|
www.daengineering.com operates within the United States manufacturing and engineering sector, providing engineering services and technical solutions for industrial operations. The entity is cataloged as a ransomware victim in the threat-intelligence index, with an associated threat actor identified as Dark Project. This listing type indicates a cybersecurity incident classification where the organization was targeted by ransomware activity connected to Dark Project. The description focuses on verified entity attributes, sector context, geographic location, and the neutral association with the specified threat actor without disclosing unconfirmed incident details. It serves as authoritative catalog copy for threat-intelligence researchers tracking ransomware impacts across industrial sectors. |
|||||
| Ransomware | Design-Aire Engineering, INC id32083 View details | United States | Manufacturing / Engineering | ||
|
About Design-Aire Engineering, INC Design-Aire Engineering specializes in mechanical, electrical, plumbing, and energy engineering services. They focus on providing innovative and sustainable solutions for their clients. The company serves a diverse range of clients, including those in the public and private sectors. With a commitment to green engineering practices, they aim to enhance energy efficiency and environmental sustainability. Design-Aire Engineering, INC has suffered a cyberattack on its service systems, resulting in the theft of approximately 377GB of sensitive data. The breached information includes employees' personal data and detailed architectural plans of clients' buildings. |
|||||
| Ransomware | Furnished Quarters id32084 View details | United States | Retail / E-commerce | ||
|
www.furnishedquarters.com operates within the Retail and E-commerce sector and is headquartered in the United States. The entity provides furnishing and accommodation-related services, positioning it within commercial and consumer retail frameworks. Within the threat-intelligence index, this listing type identifies www.furnishedquarters.com specifically as a ransomware victim linked to the Dark Project threat actor. This designation reflects the cybersecurity context in which the entity appears, highlighting exposure to ransomware-related activity without disclosing unverified incident details. The entry serves catalog and analytical purposes for threat monitoring and sector-specific risk assessment. |
|||||
| Ransomware | Furnished Quarters id32084 View details | United States | Retail / E-commerce | ||
|
About Furnished Quarters Headquartered in New York City, New York, Furnished Quarters, is to deliver exceptional residential experiences with passion, reliability and integrity always innovating and putting people first. They consider this in everything they do and every guest and client experience they deliver. The company "Furnished Quarters" was the victim of a successful cyberattack, as a result of which the company’s confidential data was stolen. The volume of data stolen amounts to 155 GB. The data stolen included the company’s customer details, as well as documents containing banking and financial information. Currently, around 198,000 files are no longer under the control of "Furnished Quarters". |
|||||
| Ransomware | Long-Lewis Automotive Group id31290 View details | United States | Retail / E-commerce | ||
|
Longlewis.com is a US-based company operating in the retail and e-commerce sector, offering various products and services to its customers. As an e-commerce platform, it provides a range of shopping options, likely including automotive and other retail products. Longlewis.com was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Long-Lewis Automotive Group id31290 View details | United States | Retail / E-commerce | ||
|
About Long-Lewis Automotive Group The Long-Lewis Auto Group is Alabama’s largest automotive retailer, with origins tracing back to a hardware store founded in Bessemer, Alabama, in 1887. It became one of the nation's very first Ford dealerships in 1915 and operates multiple dealerships across the state. Following a successful cyberattack on Long Lewis, more than 500 GB of confidential information was stolen. More than 15,000 records containing personal data of the organization’s customers and employees, important financial and banking documents, and other valuable company information were compromised. Currently, Long Lewis lost control of more than 650,000 files. |
|||||
| Ransomware | The Metropolitan Entertainment & Convention Authority id31252 View details | United States | NGOs / Associations | ||
|
Omahameca.org is a non-governmental organization based in the United States, operating in the sector of NGOs and associations. The organization likely provides various services and support to its community. Omahameca.org was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | The Metropolitan Entertainment & Convention Authority id31252 View details | United States | NGOs / Associations | ||
|
About MECA Omaha MECA is a organization that manages public event venues in Omaha, Nebraska, including the CHI Health Center, Charles Schwab Field, and The RiverFront. Established in 2000, it plays a crucial role in hosting world-class events and fostering community engagement through its facilities. As a result of a successful cyberattack on the company, MECA suffered damage; more than 500 GB of confidential information was stolen, specifically the company’s customer data, important financial documents, and the personal data of the organization’s employees. About 100 000 files are not secured by domain for now. Download here: http://667k2ck7qlzoqt52i6dq7evcfzko2ezfrhgv6zziccjet2cc653kvbid.onion/ |
|||||
| Ransomware | Laurel Institutes id31254 View details | United States | Education | ||
|
Laurel University, located in the United States, is an educational institution providing various academic programs. As part of the education sector, it offers courses and services to students. Laurel University was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Laurel Institutes id31254 View details | United States | Education | ||
|
About Laurel Institutes Laurel Institutes offers focused education and professional certifications across various fields, including business, healthcare, trades, cosmetology, and culinary arts. The institution emphasizes hands-on training and small class sizes to foster student engagement and skill development. Their programs are designed to prepare students for successful careers in industries they are passionate about. With multiple campuses and online options, Laurel Institutes aims to connect students with local employers and provide resources for career advancement. A "Laurel Institutes" company suffered a cyberattack that led to the theft of approximately 50+ GB of sensitive data. Exposed files include financial confidential papers, bank records and medical personal information. Personal data of more than 1,000 students and staff members was leaked Download here: http://tjaaioz32salcoj63ttxra6nfqggwbcezkzpwnhyoiwq5tuimzmsb3qd.onion |
|||||
| Ransomware | Ohio Living Home Health & Hospice id31257 View details | United States | Healthcare / Pharma | ||
|
Ohio Living is a not-for-profit healthcare organization based in the United States, providing a range of services including senior living communities, home health, and hospice care. The organization operates in the state of Ohio, offering various healthcare and medical services to its community. Ohio Living was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Ohio Living Home Health & Hospice id31257 View details | United States | Healthcare / Pharma | ||
|
About Ohio Living Founded in 1922, Ohio Living is an experienced not-for-profit provider of life plan communities and services in Ohio. Due to cyberattack at least 600Gb of sensitive data leaked in "Ohio Living Home Health & Hospice" in April 2026. It known that at least 5000 files with personal data were stolen, among whole it contained employee records, driver licenses, patient personal documents including photos, medical records, social security numbers, insurance information, also files with confidential company financial information and bank records covering period for 2022-2026. Download here: http://3i5px2hibsyityv6jixnqba35yz25jekbwwumjdxjqzt3euqsygjx5id.onion/ |
|||||
| Ransomware | Labpharma id31259 View details | Mexico | Healthcare / Pharma | ||
|
Labpharmacorp.com operates in the healthcare and pharmaceutical sector, providing services in Mexico. The company is involved in various activities related to pharmaceuticals and healthcare. Labpharmacorp.com was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Labpharma id31259 View details | Mexico | Healthcare / Pharma | ||
|
Labpharmacorp Labpharma is a Clinical Laboratory in Miami dedicated to delivering dependable, high-quality laboratory services for clinical trials and research. About Labpharma Labpharma is a laboratory data company supporting clinical research trials. Company offers Local and Central Laboratory testing and data management. Standard Services: Laboratory Manual (electronic and hardcopy), kit production, door to door shipping (IATA certified), research trained and certified (CGP certified), while testing menu includes the following disciplines: Hematology, Clinical Chemistry, Immunochemistry, Infectious Disease, Hemostasis, and Toxicology. From end to end all samples are barcode, tracked and managed to ensure reliable laboratory services for research studies. Download here: http://t2ru74fbgut26xnagtrl4ajeh5vqytrl6cpr6cubmr6sqdxk5guh5mqd.onion/ |
|||||
| Ransomware | Ruhrpumpen id31261 View details | Germany | Manufacturing / Engineering | ||
|
Ruhrpumpen is a German-based company operating in the manufacturing and engineering sector, specializing in the design and production of pumps and related systems. The company offers a range of products and services to various industries, including oil and gas, power generation, and water treatment. Ruhrpumpen is headquartered in Germany and serves a global customer base. It was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Ruhrpumpen id31261 View details | Germany | Manufacturing / Engineering | ||
|
About Ruhrpumpen Ruhrpumpen is a leading global manufacturer of highly engineered centrifugal and reciprocating pumps. A sophisticated cyberattack in the company's network led to a massive data breach. As a result of the incident, approximately 1 TB of data was leaked, including confidential personal and financial information. |
|||||
| Ransomware | Thermo King id31263 View details | United States | Manufacturing / Engineering | ||
|
Thermo King is a leading manufacturer of temperature control systems for the transportation industry, based in the United States. The company provides a range of products and services to the manufacturing and engineering sectors. Thermo King was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Thermo King id31263 View details | United States | Manufacturing / Engineering | ||
|
Due to cyberattack on Genesis more than 70 Gb of company data was stolen. Leakage contains big amount of sensitive data such as company's customers data, bank and financial information documents. About 10 000 files are not secured by THERMO KING for now. Download here: http://wjcml4mxpcvsmjxm33zhjb46nzutxk6g3f5w23fopgpwj6pqjcidiyqd.onion |
|||||
| Ransomware | Thermo King id31263 View details | Canada | Manufacturing / Engineering | ||
|
Due to cyberattack on Genesis more than 70 Gb of company data was stolen. Leakage contains big amount of sensitive data such as company's customers data, bank and financial information documents. About 10 000 files are not secured by THERMO KING for now. Download here: http://wjcml4mxpcvsmjxm33zhjb46nzutxk6g3f5w23fopgpwj6pqjcidiyqd.onion |
|||||
| Ransomware | Storer Transportation and Storer Coachways id31265 View details | United States | Transportation / Travel / Logistics | ||
|
Storerbus is a transportation company based in the United States, operating in the sector of Transportation, Travel, and Logistics. The company provides various services related to bus transportation. Storerbus was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Storer Transportation and Storer Coachways id31265 View details | United States | Transportation / Travel / Logistics | ||
|
The company "Storer Transportation" and "Storer Coachways" was attacked, resulting in the theft of more than 50,000 folders (240+ GB) of the company’s confidential information, including more than 1,500 pieces of employee personal data, financial and banking documents, credit card information and a large amount of confidential incident data. Download here: http://pokttabd2hod47ladeeoin22wmq4remyo3wshwvxfuhgqygcbezq2qqd.onion |
|||||
| Ransomware | Genesis Engineering Group id31267 View details | United States | Manufacturing / Engineering | ||
|
Genesis Engineering Group is a US-based company operating in the manufacturing and engineering sector, providing various services and products to its clients. As a key player in its industry, the company focuses on delivering innovative solutions. Genesis Engineering Group was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Genesis Engineering Group id31267 View details | United States | Manufacturing / Engineering | ||
|
Due to cyberattack on Genesis more than 75Gb of company personal data was stolen. Leakage contains big amount of sensitive data such as personal emlpoyes documents, company's customers data, bank and financial information documents. About 50 000 files are not secured by Genesis for now. Download here: http://x2jz63qemhcbhyskzt3pie757oicdkctk2rh5dpykmxsw2yoayeqs5yd.onion/ |
|||||
| Ransomware | Mayco International id31269 View details | United States | Finance / Legal / Insurance | ||
|
Maycoin International is a financial services company based in the US, operating in the finance, legal, and insurance sectors. The company provides various financial solutions to its clients. Maycoin International was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Mayco International id31269 View details | United States | Finance / Legal / Insurance | ||
|
About Mayco International At least 2Tb of sensitive data were exfiltrated from the company’s control following a cyberattack. The compromised dataset leaked from Mayco internatioins company infrastructure includes internal organizational documents, proprietary technical schemas, employee personally identifiable information, and a substantial volume of financial records. |
|||||
| Ransomware | Sutherland Packaging id31271 View details | United Kingdom | Manufacturing / Engineering | ||
|
Sutherland Packaging is a company based in the United Kingdom, operating in the manufacturing and engineering sector. The company likely provides packaging solutions to various industries. Sutherland Packaging was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Sutherland Packaging id31271 View details | United Kingdom | Manufacturing / Engineering | ||
|
About SPI Sutherland Packaging LLC is a leading manufacturer specializing in creative digitally printed full-color point-of-purchase displays for brands worldwide. The company offers a range of services including digital printing, retail packaging, and turnkey fulfillment, focusing on delivering custom-blended solutions that meet client demands. With over 50 years of experience, Sutherland Packaging is trusted by global brands for its high-quality and cost-effective solutions. Due to cyberattack on Sutherland Packaging more than "200" Gb of company data was stolen. Leakage contains big amount of sensitive data such as company's customers data, bank and financial information documents. About 250 000 files are not secured by Sutherland Packaging for now. |
|||||
| Ransomware | Brainhunter Companies LLC. and Brainhunter Systems Ltd. id31273 View details | United States | IT | ||
|
Brainhunter is an IT company based in the US, offering various services. The company operates in the information technology sector, providing solutions to its clients. Brainhunter was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Brainhunter Companies LLC. and Brainhunter Systems Ltd. id31273 View details | United States | IT | ||
|
About Brainhunter Companies LLC. and Brainhunter Systems Ltd. Founded in 1995, Brainhunter is an employment agency providing staffing and recruiting services to engineers, information technology, healthcare, and industrial sectors. Brainhunter also offers workplace management products, solutions and consulting, payroll and compliance services, and more. Brainhunter is headquartered in Toronto, Ontario. As a result of the attack on Brainhunter, more than 160 GB of the company's confidential data was stolen, including banking and financial documents, as well as the personal data of employees and customers. At this time, approximately 320,000 files remain unprotected by Brainhunter Foundation. |
|||||
| Ransomware | Leviton id31275 View details | United States | Manufacturing / Engineering | ||
|
Leviton is a US-based company operating in the manufacturing and engineering sector, offering a range of products and solutions. The company is headquartered in the United States and provides various electrical and networking components. Leviton was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Leviton id31275 View details | United States | Manufacturing / Engineering | ||
|
About Leviton Founded in 1906 and headquartered in Melville, New York, Leviton is a privately held global provider of electrical wiring devices, data center connectivity solutions, and lighting energy management systems. A major cyber attack has resulted in the Leviton company losing control over its entire repository of sensitive data, totaling approximately 1.4 terabytes. The massive breach exposed a wide range of highly confidential information, including internal financial records, proprietary project schematics and working documents, as well as the personal data of employees. Additionally, a significant quantity of other unclassified but highly sensitive information was exfiltrated in the breach, painting a stark picture of a total system compromise. |
|||||
| Ransomware | The Family Medicine Clinic id31277 View details | United States | Healthcare / Pharma | ||
|
Family Medicine Clinic New Iberia is a healthcare provider based in the US, offering medical services to patients in the region. As a healthcare provider, the clinic is likely to handle sensitive patient information. It was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | The Family Medicine Clinic id31277 View details | United States | Healthcare / Pharma | ||
|
About FMC The Family Medicine Clinic (Louisiana) suffered a serious cyberattack, which resulted in the encryption of a vast data archive and left the company without access to its own online systems. The leak of more then 250Gb FMC medical data encompasses a wide range of document types, including patient registration forms, lab test results, treatment plans, prescription records, and personal insurance information. In addition, employee personnel files were leaked, along with the full names, home addresses, and Social Security numbers of hundreds of customers. Download here: http://x4emye5homuwkrvrfaoql53hc5spbazkvcw3m4pv6jaj5tjqmjizleqd.onion |
|||||
| Ransomware | Rocky Mount Recyclers id31279 View details | United States | Other | ||
|
Rmrnc.com is an online presence in the other sector, operating in the United States. The entity provides various offerings, although specific details are not readily available. Rmrnc.com was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Rocky Mount Recyclers id31279 View details | United States | Other | ||
|
Due to cyberattack on Rocky Mount Recyclers more than 40Gb of company personal data was stolen. Leakage contains big amount of sensitive data such as personal emlpoyes documents, company's customers data, bank and financial information documents. About 12,000 files are not secured by RMR for now. Download here: http://2zl5qc3mqap7vziqfis65oyjcgdiedigoequxbqsn6uwian7ieozvoqd.onion/ |
|||||
| Ransomware | The Miller Group id31281 View details | United Kingdom | Construction / Real Estate | ||
|
Miller Group is a construction and real estate company based in the United Kingdom, operating in the sector of construction and property development. The company offers various services including construction, property development, and management. Miller Group is listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | The Miller Group id31281 View details | United Kingdom | Construction / Real Estate | ||
|
About The Miller Group The Miller Group refers to The Miller Group - Multiplex Division, a retail display manufacturer with operations spanning Dupo, Illinois and Richmond, Virginia As a result of the cyberattack, the company lost control of 500 GB of confidential data, including: employees’ Social Security numbers, email addresses, home addresses, and ZIP codes—plain Excel spreadsheets; financial documents in PDF format—budgets, transactions, and internal reports; complete project drawings—working diagrams and perspective sketches. |
|||||
| Ransomware | TSC Logistics id31283 View details | Philippines | Transportation / Travel / Logistics | ||
|
TSC Logistics is a logistics and transportation services provider based in the Philippines, offering a range of services to support the movement of goods. The company operates within the transportation and logistics sector, catering to various industries. TSC Logistics was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | TSC Logistics id31283 View details | Philippines | Transportation / Travel / Logistics | ||
|
About TSC Logistics TSC Logistics specializes in providing advanced transportation solutions that prioritize speed and cost-effectiveness for their clients. A cyberattack has resulted in the exfiltration of nearly 600 gigabytes of highly sensitive data, exposing a vast trove of internal records. The compromised material includes personal employee documents, confidential company financial records, invoices, taxpayer statements, and extensive client information. More than 10,000 PDF files have been leaked, containing unredacted Social Security numbers, driver’s licenses, payroll records, and other protected identifiers, raising the spectre of widespread identity theft and regulatory scrutiny. |
|||||
| Ransomware | Reid Electric Service, Inc id31285 View details | United States | Construction / Real Estate | ||
|
Reidelectricservice.com is a company operating in the construction and real estate sector in the United States. The company likely provides electrical services, given its name. Reidelectricservice.com was listed as a ransomware victim associated with Dark Project |
|||||
| Ransomware | Reid Electric Service, Inc id31285 View details | United States | Construction / Real Estate | ||
|
About Reid Electric Service, Inc At Reid Electric Service, Inc. we realize the safety, and reliability of your electrical system is important to you. We take pride in exceeding your expectations to perform work on your electrical system on time, safely and on budget. Reid Electric Service, Inc has suffered a cyberattack on its service systems, resulting in the theft of approximately 50 GB of sensitive data. The breached information includes employees' personal data and detailed architectural plans of clients' buildings. |
|||||
| Ransomware | Mile Bluff Medical Center id31286 View details | United States | Healthcare / Pharma | ||
|
Mile Bluff is a healthcare provider based in the United States, offering medical services to patients. As a part of the healthcare sector, Mile Bluff plays a crucial role in providing medical care and support. Mile Bluff was listed as a ransomware victim associated with Dark Project. |
|||||
| Ransomware | Mile Bluff Medical Center id31286 View details | United States | Healthcare / Pharma | ||
|
About Mile Bluff Medical Center Located in Mauston, Wisconsin, Mile Bluff Medical center has been in operation since 1912. Its services include acute emergency care, as well as long term nursing and rehabilitation A "Mile Bluff Medical Center" company suffered a cyberattack leading to the theft of over 550 GB of sensitive data. Exposed files include a full SQL database backup, employee records, confidential company financial information, bank records, patients' personal documents, Social Security numbers, medical records, medical histories, and surgical records. As a result, the personal data of more than 25,000 patients and staff members was leaked. Download here: http://7iphetz64a7iihcpwr3nirjioghyt6lrku62gu4z7f3zo7rcz5qrgvad.onion/ |
|||||