Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 22715 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 22715 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 72 | Onion service | Up checked 2h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 2h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 68 | Onion service | Up checked 2h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 2h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 2h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 2h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 2h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 2h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 2h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 2h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 60 | Onion service | Up checked 2h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Up checked 2h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 2h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 2h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Up checked 2h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 2h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 2h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 2h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 51 | Onion service | Up checked 2h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 45 | Onion service | Up checked 2h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 2h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 71 | Onion service | Down checked 2h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 61 | Onion service | Down checked 2h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Down checked 2h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 48 | Onion service | Down checked 2h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 2h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 46 | Onion service | Down checked 2h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 47 | Onion service | Down checked 2h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 2h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 2h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 2h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 2h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 2h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 2h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 2h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 2h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 34 | Onion service | Down checked 2h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 35 | Onion service | Down checked 2h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 33 | Onion service | Down checked 2h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 31 | Onion service | Down checked 2h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 2h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 30 | Onion service | Down checked 2h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 2h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 28 | Onion service | Down checked 2h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 2h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 27 | Onion service | Down checked 2h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 25 | Onion service | Down checked 2h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 2h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 2h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 2h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 2h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 19 | Onion service | Down checked 2h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 2h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 2h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 2h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 2h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 16 | Onion service | Down checked 2h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 13 | Onion service | Down checked 2h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 2h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 2h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 2h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 2h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 2h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 2h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 2h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 2h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 2h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 2h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 2h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 1 | Onion service | Down checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Down checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Down checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
Top Activity Sectors (15)
- Education 48
- Services 22
- Communication / Marketing 21
- Manufacturing / Engineering 20
- IT 19
- Finance / Legal / Insurance 17
- Public Sector 17
- Healthcare / Pharma 16
- Retail / E-commerce 13
- Construction / Real Estate 11
- NGOs / Associations 6
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (22715)
Search, filter and paginate the victim timeline for Interlock. Showing 1–100 of 22715.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | NFM Lending id32638 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a ransomware victim entry in this threat-intelligence index. The entity is associated with the threat actor interlock, with operational context tied to the United States. Catalog copy describes the listing type and associated actor without asserting unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This entry provides neutral, authoritative context for researchers tracking ransomware activity across sensitive financial and legal service sectors. |
||||||
| Ransomware | NFM Lending id32643 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, serving as a commercial entity referenced in threat-intelligence catalog records. The domain is cataloged specifically as a ransomware victim, with the associated threat actor and source identified as interlock. This listing type indicates inclusion in threat-intelligence datasets tracking adversary activity and victim profiles relevant to cybersecurity monitoring and risk assessment. The description remains neutral and factual, focusing on the entity's sector context, geographic origin, listing classification, and attributed actor without asserting unverified breach details. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32648 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending-related services and administrative functions. The entity is cataloged as a ransomware victim within the threat-intelligence index, linked to the threat actor interlock. This listing type indicates that the organization was identified in relation to a cyber incident associated with interlock, without disclosing confirmed breach specifics such as stolen data, affected records, ransom demands, or operational impact. The description remains neutral and factual, reflecting the entity's sector profile, geographic context, and association with the indexed threat actor. It serves as reference material for analysts monitoring ransomware exposure across regulated financial and legal service environments. |
||||||
| Ransomware | NFM Lending id32649 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association specifically linked to threat actor interlock. This listing type indicates a cybersecurity incident context tied to the identified actor, without disclosing unverified details such as stolen data, ransom terms, or confirmed breach specifics. The description reflects the entity's sector profile, geographic location, and official indexing status for threat-intelligence analysis. |
||||||
| Ransomware | NFM Lending id32650 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States, serving the finance, legal, and insurance sectors. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates documented exposure within threat-intelligence indexing frameworks, highlighting potential security impacts across regulated industries. The description remains neutral regarding specific incident details, as confirmed specifics such as data stolen, ransom demands, or breach validation are not publicly substantiated in available sources. Understanding such listings aids defenders in assessing risks within finance and legal service environments targeted by coordinated cyber threats. |
||||||
| Ransomware | NFM Lending id32651 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in records tracking cybersecurity incidents affecting organizations in sensitive financial and legal service domains. The description remains factual and neutral, focusing on the entity's sector context and its association with the specified threat actor without disclosing unverified incident details. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32672 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a business entity referenced in threat-intelligence indexing under the ransomware victim listing type. Its geographic context is the United States, aligning with the sector and associated threat actor interlock. The entity functions as a catalog entry documenting exposure within a cybersecurity intelligence framework, emphasizing sector relevance and attribution context without disclosing unverified incident details. This description adheres to neutral, factual reporting standards for catalog copy, avoiding invented specifics such as breach scope, data categories, or financial impact. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32673 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The record reflects the entity's classification within cybersecurity intelligence rather than confirming specific incident details such as data stolen, ransom demands, or operational impact. This neutral descriptor supports researchers and defenders in understanding ransomware exposure patterns within critical financial and legal service sectors. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32673 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending-related services and administrative functions. The entity is cataloged as a ransomware victim within a threat-intelligence index, with its associated threat actor identified as interlock. This listing type indicates cybersecurity exposure relevant to sector monitoring and defense intelligence. The description avoids speculative claims regarding data stolen, records compromised, ransom demands, or breach confirmation, adhering strictly to verified index classification. Understanding such entries supports risk assessment for regulated industries facing evolving cyber threats. |
||||||
| Ransomware | NFM Lending id32673 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors based in the United States, providing services aligned with professional and commercial lending and legal frameworks. The entity is documented within a threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This listing reflects observed security event correlations and does not confirm specific breach details, data exposure, or operational impact. The catalog entry serves to contextualize the entity's sector exposure and its documented relationship to identified cyber threats. |
||||||
| Ransomware | NFM Lending id32673 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com is an entity operating within the US Finance, Legal, and Insurance sectors, cataloged as a ransomware victim within a threat-intelligence index. Its listing reflects observed threat-intelligence linkage to the interlock threat actor, contextualizing the organization’s sector profile and cybersecurity exposure without disclosing confirmed breach details. The entity serves as a reference point for analysts assessing ransomware activity patterns across regulated financial and legal service environments. This description maintains neutrality regarding incident specifics, avoiding invented claims about data stolen, records impacted, ransom terms, or confirmed breach evidence. It is formally listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32673 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity has been documented within a threat-intelligence index under the classification of ransomware victim, associated with the threat actor interlock. This listing type indicates a cybersecurity event where ransomware activity was observed or reported in relation to the organization. The context underscores the vulnerability of critical financial and legal infrastructure to cyber threats. For threat intelligence purposes, nfmlending.com serves as a reference point for understanding ransomware exposure within regulated sectors. |
||||||
| Ransomware | NFM Lending id32674 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Services sector and is identified within a threat-intelligence index as a ransomware victim. The entity is geographically associated with the United States. Its inclusion reflects threat-intelligence analysis linking the organization to the interlock threat actor profile. This listing type categorizes nfmlending.com based on observed or attributed ransomware-related activity within the intelligence dataset. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly attributed to the entity in available sources. |
||||||
| Ransomware | NFM Lending id32674 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as an entity cataloged under ransomware victim listings within threat-intelligence indexes. The domain reflects its positioning in regulated commercial services where cybersecurity resilience is critical. As a ransomware victim associated with interlock, nfmlending.com represents a case documented to contextualize threat actor activity across sensitive financial and legal service domains. This listing type records the entity's relationship to the specified threat actor without disclosing unverified incident details, operational specifics, or confirmed breach parameters. The catalog entry supports threat-intelligence analysis by anchoring the entity to its sector, geographic context, and associated adversary profile. |
||||||
| Ransomware | NFM Lending id32675 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with threat actor interlock. This listing type indicates documented exposure or impact linked to this actor group, contributing to broader cybersecurity awareness for organizations in sensitive financial and legal domains. The description remains factual and neutral, focusing on sector classification, geographic location, and the verified association without speculating on incident details. Such entries support threat-intelligence platforms in tracking adversary activity and victim profiles across critical infrastructure sectors. |
||||||
| Ransomware | NFM Lending id32676 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing type indicates documented exposure to cyber threat activity targeting critical financial infrastructure. The description focuses on the entity's sector profile, geographic origin, and its classification within the intelligence framework without disclosing unverified incident details. Such entries support security teams in assessing risks across regulated industries where ransomware incidents can significantly impact operational continuity and stakeholder trust. |
||||||
| Ransomware | NFM Lending id32676 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing type indicates cybersecurity exposure relevant to sector-specific risk analysis and intelligence monitoring. The description avoids speculative claims regarding breach details, data losses, or operational impacts. It serves as a neutral reference point for evaluating threat actor activity, sector vulnerability, and incident context tied to nfmlending.com and interlock. |
||||||
| Ransomware | NFM Lending id32676 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects cybersecurity intelligence concerning an organization impacted by malicious activity linked to this actor, without disclosing confirmed breach specifics such as stolen data, affected records, ransom demands, or resolution details. This entry serves threat analysts and security professionals monitoring ransomware incidents across critical financial and legal service industries. The neutral classification emphasizes verified intelligence sourcing while maintaining factual restraint regarding unconfirmed incident elements. |
||||||
| Ransomware | NFM Lending id32676 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com is an entity operating within the United States across the Finance, Legal, and Insurance sectors. The domain name and contextual data indicate it functions as a lending or financial services provider, with offerings aligned to regulated financial infrastructure. Within this threat-intelligence index, the entity is cataloged specifically as a ransomware victim, associated with the threat actor interlock. This listing reflects the index's role in mapping affected organizations to active cyber threats and their responsible actors for risk intelligence purposes. The description remains factual and neutral, focusing solely on the entity's classification and contextual sector placement without alleging specific breach details. |
||||||
| Ransomware | NFM Lending id32677 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects observed security intelligence concerning the organization's exposure profile within this threat landscape. No specific incident details, data exfiltration claims, or financial impact metrics are stated here, maintaining strict neutrality per cataloging protocols. This entry serves threat analysts and security professionals seeking verified context on ransomware incidents within critical financial sectors. |
||||||
| Ransomware | NFM Lending id32677 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing services aligned with these regulated industries. It is cataloged within this threat-intelligence index under the designation of ransomware victim, linked to the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and associated adversary activity. The description remains neutral, focusing solely on the verified association and sector context without extrapolating beyond confirmed intelligence data. |
||||||
| Ransomware | NFM Lending id32682 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the finance, legal, and insurance sectors and is based in the United States. The entity is cataloged as a ransomware victim in this threat-intelligence index, with the associated threat actor or source identified as interlock. The listing reflects the cybersecurity event in which nfmlending.com was affected, contextualized by its industry exposure and geographic location. No specific incident details such as data stolen, record counts, ransom demands, or breach confirmation are provided here, maintaining factual neutrality. This entry serves to document the relationship between nfmlending.com and the interlock threat actor within the ransomware victim classification. |
||||||
| Ransomware | NFM Lending id32683 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com identifies an organization operating within the United States across Finance, Legal, and Insurance sectors. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Its inclusion reflects observed incident attribution and sector exposure relevant to cybersecurity monitoring and risk intelligence. No specific breach details, data scope, or confirmed incident specifics are stated here, preserving factual neutrality per catalog standards. This entry serves researchers and defenders seeking context on ransomware activity within regulated financial and legal service environments. |
||||||
| Ransomware | NFM Lending id32687 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and is located in the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, with an associated threat actor and source identified as interlock. Catalog entries of this nature provide structured context regarding organizational exposure categories, sector relevance, geographic scope, and linked adversary activity for analysts and security professionals. The description remains neutral and avoids confirming unverified incident details such as stolen data, ransom terms, or specific breach metrics. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32690 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, where operational continuity and regulatory compliance are critical. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association to the interlock threat actor documented for analytical reference. This listing provides context for security teams assessing potential exposure vectors, sector-specific risks, and correlated threat activity in financial and legal services environments. The description remains factual and neutral, focusing on the entity's classification, geographic and sectoral positioning, and its linkage to the identified threat actor without asserting unverified incident details. |
||||||
| Ransomware | NFM Lending id32691 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity referenced in threat-intelligence indexing. Its inclusion as a ransomware victim associated with the interlock threat actor underscores ongoing cybersecurity risks within sensitive financial and legal service environments. The entity's profile contributes contextual intelligence for defenders assessing attack patterns, sector-specific vulnerabilities, and correlated threat activity across U.S.-based organizations. This listing reflects documented intelligence linking nfmlending.com to an incident attributed to interlock without disclosing unverified technical or operational details of the event itself. |
||||||
| Ransomware | NFM Lending id32693 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, serving sectors including finance, legal services, and insurance. The entity provides lending-related services and functions within this specialized industry context. According to the threat-intelligence index, nfmlending.com was formally listed as a ransomware victim associated with the interlock threat actor group. This listing reflects the entity's documented involvement within cyber threat intelligence records, highlighting its exposure to ransomware activity within its operational sector. The classification serves to inform security professionals and stakeholders about potential risks facing organizations within similar sectors. |
||||||
| Ransomware | NFM Lending id32701 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in threat-intelligence resources, this entity is classified as a ransomware victim associated with the interlock threat actor. The listing type identifies nfmlending.com within cybersecurity incident databases tracking compromised organizations and their linked threat groups. This description reflects the entity's sector profile and its placement in ransomware victim records tied to interlock, without asserting unverified incident details. The presence of nfmlending.com underscores risks within critical financial and legal infrastructure facing ransomware threats. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity threat records documenting potential security incidents affecting organizations in sensitive financial and legal domains. The description remains neutral and factual, focusing on the entity's sector, geographic location, and verified association without speculating on breach details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending-related services and operational infrastructure. The entity is cataloged as a ransomware victim within a threat-intelligence index, explicitly associated with the threat actor interlock. This listing type indicates documented exposure to ransomware activity within its operational environment, contextualized by its critical industry focus. The description adheres strictly to verified index metadata without extrapolating breach details, data impacts, or unconfirmed incident specifics. It serves as a reference point for threat analysts tracking cyber incidents across regulated financial and legal domains. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. The domain represents an organization cataloged within a threat-intelligence index under the designation of ransomware victim. This listing type identifies nfmlending.com as an entity associated with the threat actor interlock, providing contextual intelligence for security professionals monitoring financial and legal sector exposures. The description focuses strictly on the entity's classification and sector profile without elaborating on unverified incident details. This neutral overview supports threat-intelligence cataloging while maintaining factual boundaries regarding specific breach characteristics. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves financial services, legal practice, and insurance-related functions. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects its inclusion in intelligence records tracking cybersecurity incidents affecting organizations in its sector and geographic region. No specific incident details such as data stolen, ransom demands, or breach confirmation are included per strict factual constraints. The listing neutrally records nfmlending.com as a ransomware victim associated with interlock within this intelligence framework. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States financial services ecosystem, specifically serving sectors including Finance, Legal, and Insurance. The entity provides lending and related financial services, positioning it within critical infrastructure domains vulnerable to cyber threats. As documented in the threat-intelligence index, nfmlending.com is classified as a ransomware victim linked to the interlock threat actor group. This listing type indicates a cybersecurity event where ransomware activity was associated with the organization, contributing valuable intelligence for defenders monitoring threat patterns across regulated industries. The entry serves as a reference point for understanding ransomware targeting finance and legal sectors in the US. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically spanning Finance, Legal, and Insurance sectors. The entity functions as a catalog entry documenting a ransomware victim within a threat-intelligence index, providing structured context on the organization's sector, geographic location, and associated cyber threat activity. This listing type identifies nfmlending.com as a victim of ransomware activity tied to the interlock threat actor group. The entry serves threat-intelligence professionals by contextualizing the entity's exposure within high-value sectors where security incidents carry significant operational and regulatory implications. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com identifies an organization operating within the United States across the Finance, Legal, and Insurance sectors. The entity is cataloged as a ransomware victim in the threat-intelligence index, with its association to the threat actor interlock documented as a key security classification. This listing provides context for monitoring cyber incidents affecting critical professional service industries where operational continuity and data integrity are paramount. The description remains factual and neutral, reflecting the indexed relationship without extrapolating beyond verified intelligence. It serves threat analysts and security professionals seeking to understand ransomware exposure patterns within regulated financial and legal service environments. |
||||||
| Ransomware | NFM Lending id32703 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, serving sectors including finance, legal services, and insurance. The domain name and associated profile indicate commercial activity in regulated professional services, where cybersecurity resilience is critical. Within the threat-intelligence index, nfmlending.com is cataloged as a ransomware victim entity associated with the threat actor interlock. This listing reflects its documented relationship to this actor within the intelligence dataset without disclosing unverified incident details, breach specifics, or operational losses. The entry supports threat-aware monitoring and context for entities operating in sensitive financial and legal infrastructure. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity in the United States. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cyber incidents involving this specific adversary group. The entry provides contextual awareness of the organization's exposure profile within cybersecurity threat landscapes. No incident specifics, such as data stolen, ransom demands, or breach confirmation details, are asserted here; the listing solely records the association. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident of interest within this sector. This entry serves as a reference point for monitoring threat actor activity and sector-specific vulnerability patterns. No specific incident details, such as data stolen or ransom demands, are included here, maintaining factual neutrality per catalog standards. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Its inclusion reflects observed cybersecurity intelligence concerning organizational exposure within sensitive financial and legal service domains. The description remains neutral regarding specific incident details, as confirmed specifics such as data scope, breach confirmation, or financial impact are not provided in the available listing context. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States in the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim in the threat-intelligence index, with its association to the threat actor interlock documented for cyber-risk intelligence purposes. This listing type indicates a security incident classification relevant to monitoring organizational exposure and threat actor activity across regulated industries. The description avoids speculative details regarding data stolen, ransom demands, or breach confirmation, maintaining factual and neutral reporting aligned with threat-intelligence catalog standards. It serves to inform security professionals assessing risk profiles for entities in sensitive financial and legal service domains. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident context relevant to sector-specific threat monitoring and risk intelligence. The description adheres strictly to verified index metadata without inferring breach details, data scope, or operational impact. It neutrally documents the entity's classification for analytical and catalog purposes. |
||||||
| Ransomware | NFM Lending id32704 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity noted in threat-intelligence databases. Its inclusion as a ransomware victim associated with the interlock threat actor reflects observed security event correlations within the index. The entity's sector profile underscores high-value operational environments where cyber incidents carry significant compliance and reputational implications. This listing type documents the relationship without disclosing confirmed breach details, operational impact, or unverified claims. The association is presented neutrally within the threat-intelligence catalog for analytical and defensive reference purposes. |
||||||
| Ransomware | NFM Lending id32708 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. Its profile within the threat-intelligence index identifies it specifically as a ransomware victim associated with the threat actor interlock. This listing type contextualizes the entity's exposure within cybercrime activity affecting sensitive financial and legal service sectors. The description remains factual and neutral, reflecting the index's classification without asserting unverified breach details such as data stolen, records compromised, ransom demands, or confirmed incident timelines. Understanding such victim profiles supports defenders in Finance, Legal, and Insurance sectors when assessing interlock-related ransomware risks and developing sector-specific defensive strategies. |
||||||
| Ransomware | NFM Lending id32710 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. The domain reflects lending-related activity, aligning with the sector classifications provided for this listing. Within the threat-intelligence index, nfmlending.com is categorized specifically as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in cyber-threat intelligence records documenting adversary targeting patterns and incident associations. The description adheres to neutral, factual reporting without extrapolating unconfirmed breach details, operational impacts, or unverified claims regarding the incident. |
||||||
| Ransomware | NFM Lending id32713 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the US Finance, Legal, and Insurance sectors, providing threat-intelligence catalog information for entities identified as ransomware victims. The domain serves as a reference point within a threat-intelligence index documenting security incidents and associated actors. Its listing type explicitly categorizes it as a ransomware victim, with interlock cited as the associated threat actor or source. This entry contributes structured intelligence for analysts tracking cyber threats across sensitive financial and legal infrastructure. The record neutrally states that nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32716 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. Its presence in this threat-intelligence index identifies it as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity incident data relevant to sector-specific risk monitoring and intelligence aggregation. This catalog entry provides neutral context regarding entity classification, geographic scope, industry relevance, and the associated threat actor without confirming breach details or inventing incident specifics. It supports researchers and defenders in tracking ransomware activity across critical financial and legal service domains. |
||||||
| Ransomware | NFM Lending id32717 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves US-based clients requiring specialized lending and legal services. The entity is cataloged as a ransomware victim within the threat-intelligence index, linked to the threat actor interlock. This listing reflects observed security posture and incident association data relevant to sector risk assessment. No specific breach details, data exfiltration claims, or financial impact are included here, adhering to strict factual neutrality. Users of this intelligence resource may reference nfmlending.com for context on ransomware exposure patterns across regulated financial sectors. |
||||||
| Ransomware | NFM Lending id32717 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. Its inclusion in the threat-intelligence index identifies it as a ransomware victim associated with the threat actor interlock. The listing type reflects observed cybersecurity incident classification rather than confirmed breach details, intentionally avoiding speculation about data exfiltration, ransom demands, or specific compromise indicators. This catalog entry supports analysts tracking ransomware exposure across critical financial and legal service sectors, with neutral documentation focused on entity profile, sector context, geographic origin, and the interlock attribution. The description adheres to factual reporting standards, emphasizing the association without inventing incident specifics. |
||||||
| Ransomware | NFM Lending id32720 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing type identifies nfmlending.com within incident records where cyber activity was attributed to interlock, reflecting sector-relevant exposure patterns. This description adheres to neutral, factual reporting without inventing breach details, data specifics, financial impact, or confirmation beyond the indexed association. The entity remains contextualized by its geographic location, industry focus, and the ransomware victim classification tied to interlock. |
||||||
| Ransomware | NFM Lending id32720 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, with its association to the threat actor interlock documented for cyber-threat analysis and security intelligence purposes. This listing type indicates a security incident context relevant to sector-specific risk assessment and defensive monitoring. The description remains factual and neutral, reflecting the index classification without asserting unverified incident details such as data loss, ransom demands, or breach confirmation. Understanding this association supports threat-aware cataloging for cybersecurity professionals and intelligence consumers. |
||||||
| Ransomware | NFM Lending id32720 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial ecosystem, specifically serving sectors including finance, legal services, and insurance. The domain functions as a commercial entity providing lending and related financial services, making it a relevant case within cybersecurity threat analysis. According to the threat-intelligence index, nfmlending.com has been formally categorized as a ransomware victim associated with the interlock threat actor group. This listing reflects documented security incidents impacting the organization's digital infrastructure. The classification underscores vulnerabilities within finance and legal sectors that remain critical targets for cyber threats. |
||||||
| Ransomware | NFM Lending id32721 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States, serving the Finance, Legal, and Insurance sectors. The entity provides lending and related financial services, positioning it within high-value operational domains frequently targeted by cyber threats. It is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the entity's classification in cybersecurity threat databases, highlighting exposure to ransomware activity within its sector and geographic context. The description remains factual and neutral, focusing solely on the entity's sector profile, location, and verified association with the interlock threat actor group. |
||||||
| Ransomware | NFM Lending id32724 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing type indicates a cybersecurity incident involving unauthorized access or encryption activity targeting organizational systems, consistent with ransomware attack patterns affecting critical financial and legal infrastructure. The description focuses on the entity's classification, sector context, geographic origin, and verified threat association without disclosing unconfirmed technical or operational details. Neutral documentation supports researchers and defenders in understanding exposure patterns within regulated industries. |
||||||
| Ransomware | NFM Lending id32726 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. The domain is cataloged within this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry documents the relationship between the entity and the threat actor without disclosing unverified incident details such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This neutral description supports threat-intelligence analysis by providing sector context, geographic scope, and the verified association with interlock as the ransomware victim. The listing reflects the entity's inclusion in the index based on available threat-intelligence data. |
||||||
| Ransomware | NFM Lending id32728 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity based in the United States. The domain is cataloged within a threat-intelligence index under the listing type ransomware victim. This classification associates the entity with the threat actor interlock, reflecting observed cyber activity targeting organizations within these sensitive sectors. The entry provides context for security teams assessing ransomware exposure across regulated industries. It neutrally documents the association without confirming specific incident details, data handling practices, or breach specifics. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically spanning Finance, Legal, and Insurance sectors. The entity provides lending and related financial services, positioning it within critical infrastructure domains frequently targeted by cyber threats. As cataloged in the threat-intelligence index, nfmlending.com is formally listed as a ransomware victim associated with the interlock threat actor. This designation reflects its inclusion in records documenting cybersecurity incidents and adversary activity within its sector. The listing serves as a reference point for threat analysts monitoring ransomware campaigns and their impact across regulated industries. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with threat actor interlock. This listing type indicates observed or reported security-related activity tied to the organization's operational environment. The description remains factual and neutral, focusing on the entity's sector profile, geographic location, and its classification within the intelligence dataset. No specific incident details such as data stolen, ransom demands, or breach confirmation are included per strict factual constraints. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing services or functions relevant to regulated commercial activity. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the threat actor interlock. This listing reflects an assessed cybersecurity event where the organization was impacted by ransomware activity, consistent with threats targeting sensitive financial and legal data. The description avoids speculative details regarding data exfiltration, ransom demands, or operational impact, maintaining factual neutrality based on the indexed classification. It serves as a reference point for threat analysts monitoring actor behavior and sector-specific vulnerability patterns. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim in the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing contextualizes the organization's exposure within a cybersecurity threat landscape affecting regulated and critical service industries. The description avoids speculative claims regarding data stolen, ransom demands, or breach confirmation, focusing solely on the verified indexing classification and sector profile. Such entries support threat analysts in mapping adversary activity and victim typologies across sensitive commercial sectors. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. Its inclusion in this threat-intelligence index reflects its status as a ransomware victim associated with the threat actor interlock. The entity's sector positioning underscores the heightened sensitivity of financial, legal, and insurance data within cyber threat landscapes. This listing provides catalog context for analysts tracking ransomware incidents across critical business domains. The association with interlock documents the threat actor's potential targeting profile while maintaining neutral reporting standards regarding the incident specifics. |
||||||
| Ransomware | NFM Lending id32729 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with threat actor interlock. This listing type indicates a cybersecurity incident context tied to the identified actor, reflecting the organization's exposure within the monitored threat landscape. The description avoids speculative details regarding data theft, ransom demands, or breach confirmation, focusing solely on the verified classification and sector attributes. It serves as a structured reference point for security analysts tracking ransomware activity in sensitive financial and legal domains. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across the finance, legal, and insurance sectors, providing lending and related financial services. As a ransomware victim entity, it has been cataloged in threat-intelligence indexes to document exposure patterns and associated adversary activity. The listing type identifies its status within cybersecurity threat databases, linking the entity to the interlock threat actor profile for analytical tracking and risk assessment. This description maintains a neutral, encyclopedic tone focused on sector, location, and verified listing context without speculating on unconfirmed incident details. The entity remains referenced as a ransomware victim associated with interlock within the threat-intelligence index framework. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States financial services ecosystem, specifically spanning Finance, Legal, and Insurance sectors. The entity provides lending and related financial services, positioning it within a high-value target category for cyber threats. As cataloged in this threat-intelligence index, nfmlending.com is officially listed as a ransomware victim associated with the threat actor interlock. This designation reflects the organization's inclusion in cybersecurity records documenting adversary activity and impacted entities. The listing serves to inform stakeholders about potential security exposures within regulated and critical business sectors. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, serving as a catalog entry for threat-intelligence indexing. The entity is documented as a ransomware victim associated with the threat actor interlock. This listing type indicates its inclusion in a ransomware victim index to support cyber threat analysis, sector risk assessment, and intelligence correlation for organizations monitoring financial and legal infrastructure threats. The description relies solely on the provided entity classification, sector context, geographic location, listing type, and associated threat actor without asserting unverified incident details such as breach confirmation, data exposure, or financial impact. Its presence in the index contributes to a structured view of ransomware activity affecting regulated and sensitive business sectors. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and is situated in the United States. Its inclusion in the threat-intelligence index identifies it as a ransomware victim associated with the threat actor interlock. This listing provides context regarding the entity's sector exposure, geographic location, and documented relationship to a specific cyber threat actor. The description maintains neutrality by referencing the index classification without asserting unverified incident details such as data stolen, ransom demands, or breach confirmation. It serves to inform catalog users of nfmlending.com's role within the ransomware victim category and its attributed threat actor profile. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a ransomware victim entry within this threat-intelligence index. The entity is associated with the threat actor interlock, reflecting a cybersecurity incident relevant to financial and legal service providers operating in the United States. Catalog copy for this listing emphasizes the sector alignment, geographic context, and the specific threat actor linkage without speculating on unverified details such as data stolen, ransom demands, or breach confirmation. This description provides neutral, authoritative context for researchers and defenders assessing ransomware activity across critical business sectors. |
||||||
| Ransomware | NFM Lending id32730 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity located in the United States. Its presence in this threat-intelligence index is categorized specifically as a ransomware victim, with the associated threat actor or source identified as interlock. The entity reflects vulnerabilities within regulated and high-value service sectors where ransomware activity poses significant operational and reputational risk. This listing provides context for security professionals monitoring adversary tactics, target environments, and sector-specific threat exposure. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32733 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending-related services and administrative functions. As cataloged in threat-intelligence indexing, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies nfmlending.com within cybersecurity intelligence records focused on ransomware incidents and their connected actors. The description reflects the entity's sector profile, geographic context, and official association without asserting unverified breach details. This entry supports threat-intelligence analysis for monitoring ransomware exposure across critical financial and legal service domains. |
||||||
| Ransomware | NFM Lending id32740 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across finance, legal, and insurance sectors, offering services aligned with institutional client needs. As cataloged in the threat-intelligence index, it is classified as a ransomware victim associated with threat actor interlock. The listing type indicates cybersecurity exposure within a regulated industry where operational continuity and data integrity are critical concerns. This entry contributes contextual intelligence for analysts tracking ransomware activity, actor relationships, and sector-specific victimization patterns. No confirmed breach details, data scope, or financial impact are attributed solely from this listing. |
||||||
| Ransomware | NFM Lending id32740 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and is situated in the United States. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the entity's inclusion in records documenting cybersecurity incidents involving ransomware activity in sensitive financial and legal service domains. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and verified association with the specified threat actor without elaborating on unconfirmed incident details. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32743 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents involving this specific actor within high-value financial and legal service domains. The description maintains neutrality regarding incident details, focusing solely on the entity's sector profile, geographic context, listing classification, and verified threat-actor association for catalog purposes. |
||||||
| Ransomware | NFM Lending id32745 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing services aligned with financial and legal service delivery. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type reflects observed cyber incident correlation rather than confirmed breach details, maintaining neutrality regarding specific attack vectors, data exposure, or operational impact. This catalog entry serves to contextualize nfmlending.com within broader cyber threat intelligence frameworks for sector-specific risk assessment and monitoring. |
||||||
| Ransomware | NFM Lending id32750 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically spanning Finance, Legal, and Insurance sectors where regulatory sensitivity and operational continuity are critical. The entity functions as a designated ransomware victim within a threat-intelligence index, associated with the threat actor interlock. This listing type documents the relationship between the organization and the identified malicious actor without disclosing unverified incident details such as data stolen, records affected, ransom demands, or confirmed breach specifics. Its inclusion provides catalog analysts with contextual metadata for monitoring sector-relevant threat patterns and attacker targeting behavior across high-value industries. The description remains neutral and factual, reflecting the entity's classification and sector alignment only. |
||||||
| Ransomware | NFM Lending id32751 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged within a threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects observed security event intelligence relevant to organizational risk assessment in sensitive financial and legal service domains. The entry serves as a reference point for monitoring threat actor activity and sector-specific vulnerability patterns without disclosing unverified incident details. |
||||||
| Ransomware | NFM Lending id32752 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically spanning finance, legal, and insurance sectors. The entity provides lending and related financial services, positioning it within critical infrastructure domains frequently targeted by cyber threats. As cataloged in our threat-intelligence index, nfmlending.com is classified as a ransomware victim linked to the interlock threat actor group. This listing reflects verified intelligence correlating the entity with interlock's activity without disclosing unconfirmed incident details. The record serves threat analysts and security professionals seeking contextual understanding of ransomware exposure within regulated industry sectors. |
||||||
| Ransomware | NFM Lending id32753 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing services aligned with institutional risk management and client-facing operations. The entity is cataloged as a ransomware victim in the threat-intelligence index, with the associated threat actor identified as interlock. This listing type indicates that nfmlending.com was impacted by ransomware activity connected to the interlock threat actor, reflecting cybersecurity exposure within sensitive financial and legal service domains. The description avoids speculative details regarding data exfiltration, ransom demands, or specific breach mechanics, focusing solely on the verified classification and contextual sector information. This entry serves to inform stakeholders of the incident association and the operational environment affected by the threat actor. |
||||||
| Ransomware | NFM Lending id32753 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and is situated in the United States. The entity is cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates an assessed cybersecurity event where malicious activity was associated with the organization. The description focuses on the entity's sector profile, geographic location, and its status within the threat-intelligence index without disclosing unverified incident details. Such entries support threat-aware decision-making for risk professionals monitoring actor-linked incidents across critical industries. |
||||||
| Ransomware | NFM Lending id32754 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in the threat-intelligence index, it is classified as a ransomware victim entity. The association with threat actor interlock indicates this entity was identified within the operational footprint or impact scope of that specific cyber threat actor. This listing serves as an informational record for defenders and analysts tracking ransomware incidents across critical infrastructure sectors. No specific breach details, data loss metrics, or ransom terms are asserted in this description. |
||||||
| Ransomware | NFM Lending id32754 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within this threat-intelligence index. Its inclusion reflects an association with the threat actor interlock, indicating a cybersecurity event relevant to organizations in regulated financial and legal domains. This listing serves threat analysts and defenders seeking context on ransomware incidents affecting critical service sectors. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly attributed to this entity. |
||||||
| Ransomware | NFM Lending id32754 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a threat-intelligence index entry identifying the entity as a ransomware victim. The listing type reflects the observed relationship between this organization and the threat actor interlock, providing contextual data for analysts tracking cyber incidents across regulated industries. The entity is situated in the United States, aligning with the sector and geographic scope noted in the intelligence record. This description maintains neutrality regarding incident details, avoiding speculation about breach specifics, data exposure, or operational impact. The entry functions as part of a ransomware victim catalog to support threat-aware decision-making across cybersecurity and compliance workflows. |
||||||
| Ransomware | NFM Lending id32754 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within this threat-intelligence index. Its association with the threat actor interlock indicates a cybersecurity incident linked to this specific adversary group. This listing serves as a reference point for threat analysts monitoring sector-relevant ransomware activity and associated actors. The description remains neutral, focusing solely on the entity's classification and contextual sector placement without speculating on unverified incident details. |
||||||
| Ransomware | NFM Lending id32754 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors. The entity functions as a ransomware victim within the threat-intelligence index, with its listing type explicitly associated with threat actor interlock. Catalog copy for this entry emphasizes its sector context, geographic location, and verified linkage to the identified threat actor without speculating on unconfirmed incident details such as data stolen, ransom demands, or breach scope. The description maintains an authoritative and neutral tone suitable for premium threat-intelligence catalog use, focusing on verifiable classification attributes rather than unverified claims or secondary reporting. This entry serves to inform analysts tracking ransomware activity and associated actors within critical financial and legal service industries. |
||||||
| Ransomware | NFM Lending id32755 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock. The listing type identifies nfmlending.com as a ransomware victim, reflecting its exposure profile within a high-value industry where security incidents can carry significant operational and regulatory implications. This catalog description avoids inventing specific breach details, data losses, ransom terms, or confirmed incident specifics, maintaining factual neutrality. nfmlending.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32755 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com identifies an organization operating within the Finance, Legal, and Insurance sectors based in the United States. The entity is cataloged under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects inclusion within a threat-intelligence index focused on documenting cybersecurity incidents and adversary activity across critical business sectors. The description remains factual and neutral, avoiding speculation regarding breach details, data exposure, or operational impact. nfmlending.com serves as a reference point for monitoring threat actor relationships and sector-specific ransomware exposure. |
||||||
| Ransomware | NFM Lending id32755 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity context in which nfmlending.com was documented, highlighting exposure within sensitive financial infrastructure. The entry serves as a reference point for analysts monitoring ransomware activity and threat actor targeting patterns across regulated industries. No specific incident details, such as breach confirmation, data scope, or ransom terms, are included per strict factual boundaries. |
||||||
| Ransomware | NFM Lending id32755 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States and serves the Finance, Legal, and Insurance sectors, offering services aligned with lending, legal, and insurance operations. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock. The listing type identifies nfmlending.com specifically as a ransomware victim linked to this actor profile. This catalog entry provides neutral, factual context for researchers and defenders assessing exposure patterns across regulated financial and legal service domains without confirming unverified incident details. |
||||||
| Ransomware | NFM Lending id32755 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within threat-intelligence databases, specifically associated with the threat actor interlock. This listing type indicates an organization that has experienced or is documented as impacted by ransomware activity, relevant to sector-focused security monitoring and intelligence analysis. The description adheres to neutral, factual reporting without attributing confirmed breach details, stolen data specifics, or financial impact figures. It serves as a reference point for threat actors, defenders, and analysts tracking ransomware incidents in regulated financial environments. |
||||||
| Ransomware | NFM Lending id32756 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity based in the United States. Its profile is cataloged within a threat-intelligence index under the designation of ransomware victim. The association connects this entity to the threat actor interlock, reflecting cybersecurity intelligence compiled regarding potential malicious activity targeting this sector and geographic region. The description maintains neutrality regarding specific incident details, as confirmed specifics remain undisclosed by the entity itself. This listing provides contextual awareness for stakeholders monitoring threats across regulated financial and legal service domains. |
||||||
| Ransomware | NFM Lending id32756 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the interlock threat actor. This listing type indicates observed or attributed cybersecurity incident context relevant to sector-specific threat monitoring. The description avoids speculative details regarding data exposure, operational impact, or confirmed breach specifics, maintaining strict neutrality per threat-intelligence documentation standards. Contextual understanding of its sector and attribution supports risk assessment and intelligence correlation for security professionals. |
||||||
| Ransomware | NFM Lending id32757 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the Finance, Legal, and Insurance sectors and serves as a commercial entity referenced in threat-intelligence indexing. Its inclusion as a ransomware victim associated with the interlock threat actor highlights cybersecurity exposure within sensitive financial and legal service domains. The entity's classification reflects observed threat activity targeting organizations in these regulated industries. This listing provides catalog context for analysts tracking ransomware incidents and affiliated threat actors across the United States. |
||||||
| Ransomware | NFM Lending id32757 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the finance, legal, and insurance sectors, providing lending and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity intelligence records documenting ransomware-related activity within critical financial service domains. The description maintains neutrality regarding incident details, focusing solely on the entity's sector context and its verified association with the identified threat actor in public threat-intelligence databases. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | NFM Lending id32758 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the finance, legal, and insurance sectors and serves as a commercial entity in the United States. It is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entity's inclusion reflects observed security event correlations within the intelligence database, highlighting exposure within critical financial and legal service domains. No specific breach details, data exfiltration metrics, ransom terms, or confirmed incident particulars are asserted here, maintaining strict neutrality. This entry provides structured context for threat researchers assessing ransomware activity patterns across regulated sectors. |
||||||
| Ransomware | NFM Lending id32759 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across Finance, Legal, and Insurance sectors, providing lending-related services and administrative functions. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock, reflecting observed cybersecurity exposure within sensitive commercial domains. The listing type identifies nfmlending.com specifically as a ransomware victim, contextualizing its inclusion for analysts tracking adversary activity and impacted organizations. This description avoids speculative claims regarding data loss, ransom demands, or breach confirmation, maintaining a factual and neutral posture aligned with threat-intelligence catalog standards. The entity serves as a reference point for understanding interlock-linked incidents affecting regulated and service-oriented sectors. |
||||||
| Ransomware | NFM Lending id32762 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects the observed relationship between nfmlending.com and the interlock threat actor within cybersecurity monitoring frameworks. The description adheres strictly to verified index data without extrapolating breach details, data compromises, or unconfirmed claims. Neutral and authoritative context supports threat analysts and defenders in understanding sector-specific ransomware exposure patterns. |
||||||
| Ransomware | NFM Lending id32763 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States finance, legal, and insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim in the threat-intelligence index, associated with the threat actor interlock. This listing type indicates a cybersecurity incident classification without confirming specific breach details, data exfiltration, ransom demands, or operational impact. The description adheres to neutral, authoritative reporting standards for threat-intelligence catalogs, focusing on verified entity attributes, sector context, geographic location, and the documented threat association. |
||||||
| Ransomware | NFM Lending id32763 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States across the Finance, Legal, and Insurance sectors, providing lending and related financial services. As cataloged in the threat-intelligence index, it is classified as a ransomware victim entity associated with the threat actor interlock. The listing type identifies nfmlending.com within a ransomware incident context linked to this specific adversary group. This entry contributes to broader monitoring of cybersecurity threats affecting critical financial and legal service providers. The description remains factual and neutral, reflecting the indexed association without extrapolating beyond verified intelligence. |
||||||
| Ransomware | NFM Lending id32763 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically serving sectors including finance, legal services, and insurance. The entity provides lending-related services and functions within this specialized domain. According to the threat-intelligence index, nfmlending.com was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity event classification within the intelligence database without confirming specific breach details. The listing type identifies nfmlending.com within the ransomware victim category for interlock-related intelligence tracking. |
||||||
| Ransomware | NFM Lending id32763 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com is a digital entity operating within the Finance, Legal, and Insurance sectors and based in the United States. Its presence in the threat-intelligence index identifies it as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence concerning this entity and its exposure within the ransomware threat landscape. No specific incident details, such as stolen data, record counts, ransom amounts, or confirmed breach evidence, are included here, in accordance with strict factual reporting standards. This description provides neutral catalog context for catalogued threat-intelligence records. |
||||||
| Ransomware | NFM Lending id32763 View details | United States | Finance / Legal / Insurance | leaked | ||
|
https://nfmlending.com operates within the United States across finance, legal, and insurance sectors, providing lending and related financial services. The entity is cataloged as a ransomware victim within a threat-intelligence index. Its listing type explicitly associates it with the threat actor interlock, reflecting the cybersecurity context in which the entry is maintained. This description adheres to neutral, factual reporting standards without speculating on breach details, data impacts, or operational specifics. The catalog entry serves threat analysts and security professionals seeking structured intelligence on financially sector ransomware incidents and associated actors. |
||||||
| Ransomware | NFM Lending id32765 View details | United States | Finance / Legal / Insurance | leaked | ||
|
nfmlending.com operates within the United States financial services ecosystem, specifically serving the Finance, Legal, and Insurance sectors. The entity provides lending-related services and maintains operational presence within highly regulated industries where cybersecurity resilience is critical. As cataloged in the threat-intelligence index, nfmlending.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents affecting organizations in this sector. The listing type identifies the entity's relationship to a ransomware event tied to interlock, providing context for security teams monitoring sector-specific threat patterns and defensive strategies. |
||||||