Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 4h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 69 | Onion service | Up checked 4h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 71 | Onion service | Up checked 4h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 67 | Onion service | Up checked 4h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 68 | Onion service | Up checked 4h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 4h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 65 | Onion service | Up checked 4h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 4h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 4h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 4h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 4h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 56 | Onion service | Up checked 4h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Up checked 4h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 4h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 4h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 4h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 4h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 4h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 4h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 4h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 64 | Onion service | Down checked 4h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 60 | Onion service | Down checked 4h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 59 | Onion service | Down checked 4h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 57 | Onion service | Down checked 4h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 49 | Onion service | Down checked 4h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 4h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 4h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 4h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 4h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 4h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 4h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 39 | Onion service | Down checked 4h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 4h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 40 | Onion service | Down checked 4h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 4h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 4h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 31 | Onion service | Down checked 4h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 34 | Onion service | Down checked 4h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 35 | Onion service | Down checked 4h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 4h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 4h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 30 | Onion service | Down checked 4h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 26 | Onion service | Down checked 4h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 29 | Onion service | Down checked 4h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 27 | Onion service | Down checked 4h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 4h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 25 | Onion service | Down checked 4h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 4h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 4h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 4h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 4h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 4h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 4h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 4h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 17 | Onion service | Down checked 4h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 11301–11400 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Kearney Public Schools id32860 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, identified in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The domain name suggests affiliation with public school or educational institution services, though specific operational details, infrastructure specifics, or confirmed incident details are not provided in the supplied context. This listing type categorizes the entity based on its relationship to a ransomware threat actor and its sector classification. The entry reflects threat-intelligence indexing practices for organizations affected by cyber incidents, emphasizing neutral, factual categorization without speculative claims regarding data exfiltration, ransom demands, or breach confirmation. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id32860 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, cataloged as a ransomware victim in the threat-intelligence index. Publicly available information does not confirm specific incident details, so the description remains neutral and limited to the entity's classification, sector, geographic context, and associated threat actor interlock. The domain name suggests affiliation with public schools or educational institutions, consistent with the Education sector designation. This listing reflects the entity's inclusion in threat-intelligence reporting tied to interlock, without asserting confirmed breach specifics, stolen data, ransom demands, or operational impact. The catalog entry provides structured context for researchers, defenders, and index users evaluating ransomware exposure patterns across education-focused organizations. |
||||||
| Ransomware | Kearney Public Schools id32860 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity associated with the Education sector located in the United States. Public records and threat-intelligence indexing characterize it as a ransomware victim linked to the threat actor interlock. The domain and associated context indicate involvement within public school environments where cyber incidents can disrupt operations, communications, and institutional services. This listing serves as a neutral catalog entry documenting the entity's classification within a threat-intelligence index, reflecting its association with interlock without asserting unverified breach details. The description adheres to factual, third-person standards for catalog and analytical use. |
||||||
| Ransomware | Kearney Public Schools id32860 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, cataloged as a ransomware victim in the threat-intelligence index. The domain name indicates affiliation with public school or educational institution services, though specific operational details, infrastructure specifics, or confirmed incident evidence are not provided in the listing data. This entry documents the association between kearneypublicschools.org and threat actor interlock within the ransomware victim classification. The description remains neutral and factual, focusing on sector context, geographic location, listing type, and threat actor linkage without asserting unverified breach details. It serves as a reference point for analysts tracking education-sector ransomware incidents and associated threat actor activity. |
||||||
| Ransomware | Kearney Public Schools id32860 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity operating within the United States Education sector, associated with the ransomware victim listing type in the threat-intelligence index. The domain name indicates a public school or educational institution context, and the listing reflects its classification as an affected organization linked to the threat actor interlock. This catalog entry provides neutral, factual context for threat-intelligence researchers and security professionals monitoring ransomware incidents across education environments. The description avoids inventing breach specifics, data details, financial impact, or confirmed incident elements, focusing solely on the entity's sector, location, listing classification, and associated threat actor. |
||||||
| Ransomware | Kearney Public Schools id32861 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and resources aligned with institutional educational needs. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This classification reflects its documented status within cybersecurity intelligence records concerning ransomware incidents affecting educational organizations. The entry serves to inform stakeholders about compromised entities linked to specific threat actors in critical infrastructure sectors. |
||||||
| Ransomware | Kearney Public Schools id32866 View details | United States | Education | — | ||
|
kearneypublicschools.org is a domain associated with public schools within the United States education sector, reflecting institutional digital infrastructure relevant to threat monitoring. The entity is cataloged as a ransomware victim linked to the threat actor interlock within this threat-intelligence index. This listing underscores cybersecurity exposure within educational organizations, where operational continuity and data integrity are critical concerns. The description remains factual and neutral, focusing on the entity's classification and associated threat context without attributing unverified incident details. Such indexing supports security teams in identifying patterns and preparing defensive strategies across vulnerable sectors. |
||||||
| Ransomware | Kearney Public Schools id32879 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, associated with public schools and related institutional services. The entity serves as a ransomware victim in the threat-intelligence index, where its presence reflects an incident linked to the threat actor interlock. This listing provides context for security teams assessing education-sector exposure, attacker targeting patterns, and institutional resilience requirements. The description remains neutral regarding unconfirmed technical or operational details, focusing solely on the entity's classification and its association with interlock. |
||||||
| Ransomware | Kearney Public Schools id32879 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and institutional resources. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor group. The listing reflects its association with this cybersecurity incident within the education domain, contributing contextual data for threat monitoring and sector-specific risk analysis. No specific incident details, such as data stolen or ransom demands, are included here, maintaining factual neutrality per catalog standards. This entry supports comprehensive visibility into ransomware impacts affecting educational institutions and their connections to identified threat actors. |
||||||
| Ransomware | Kearney Public Schools id32880 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and resources. As a ransomware victim entity indexed in the threat-intelligence catalog, it is formally associated with the threat actor Interlock. The listing type identifies this organization as having experienced ransomware activity linked to Interlock's campaign, contextualized within the broader cybersecurity landscape affecting educational institutions. This entry contributes to awareness of threats targeting US education entities and supports monitoring of associated threat actor behavior. The description remains neutral and factual, reflecting the indexed association without speculating on unconfirmed technical details or incident specifics. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and information resources. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor interlock. The description reflects the organization's sector classification and its inclusion in intelligence records linking it to this specific cyber threat actor. No further incident specifics, such as data stolen, ransom demands, or breach confirmation details, are included per strict factual constraints. This entry serves to document the entity's presence within the ransomware victim classification tied to interlock for analytical and catalog purposes. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States education sector, operating under a public schools domain name. Its catalog listing identifies it as a ransomware victim associated with the threat actor Interlock. The description contextualizes the entity by sector, geographic region, and its classification within threat-intelligence indexing frameworks. No specific incident details, breach confirmations, stolen data types, or operational claims are included, maintaining factual neutrality. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity identified within the Education sector in the United States, operating as a public school domain associated with threat-intelligence indexing. The domain name indicates an institutional or educational context, consistent with the specified sector and geographic location. In the threat-intelligence catalog, this entity is listed as a ransomware victim linked to the threat actor interlock. This classification reflects its inclusion in intelligence records documenting adversary activity and affected organizations. The description remains neutral regarding specific incident details, as no confirmed breach specifics are provided in the supplied data. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States education sector, operating under a public schools domain. Its role is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. The listing type identifies this entity as having experienced ransomware-related impact within the monitored intelligence framework. This description reflects the neutral classification of the domain and its sector context without asserting unverified incident details. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, associated with public school contexts and institutional learning services. The domain name indicates an entity linked to public schools, with listings reflecting cybersecurity exposure within educational infrastructure. As cataloged in the threat-intelligence index, kearneypublicschools.org is classified as a ransomware victim connected to the interlock threat actor group. This entry documents the entity’s affiliation, sector, geographic context, and attacker association without disclosing unverified breach details. The record serves threat analysts tracking ransomware incidents across education-focused organizations in the US. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, operating as a public school domain associated with threat-intelligence indexing. Its classification as a ransomware victim reflects documented exposure within cybersecurity threat databases, where interlock is identified as the associated threat actor or source. The domain aligns with public educational institutions, indicating potential operational impact in academic environments. This listing serves to catalog verified threat relationships for defenders and analysts monitoring Education sector security posture. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, operating under a public schools domain. Its role and specific offerings are contextualized within threat-intelligence indexing as a ransomware victim associated with the threat actor interlock. The entity represents an organization whose security posture and incident status are documented for analytical and defensive reference within cybersecurity threat databases. This listing type identifies the relationship between the entity, the threat actor interlock, and the sector classification without disclosing unverified incident details. The catalog entry provides neutral background context for researchers and defenders monitoring ransomware activity in education infrastructure. |
||||||
| Ransomware | Kearney Public Schools id32882 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and institutional resources. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security-related activity linking the domain or organization to this actor within educational infrastructure contexts. This description adheres to neutral, factual reporting standards for catalog entries, avoiding speculative claims about data exposure or operational impact. The entity remains documented as part of the ransomware victim classification tied to interlock for analytical and defensive reference. |
||||||
| Ransomware | Kearney Public Schools id32904 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the education sector and serves public school communities in the United States, providing institutional resources and services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The description reflects the entity's sector, geographic location, and its classification within the ransomware victim index without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or specific breach timelines. This entry supports threat-intelligence analysis for education sector organizations facing cyber threats. |
||||||
| Ransomware | Kearney Public Schools id33090 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the United States Education sector, operating under a domain name suggesting public school or educational institution services. The domain aligns with organizations serving educational communities, though specific operational details or services are not publicly confirmed in available threat intelligence records. This listing identifies kearneypublicschools.org as a ransomware victim associated with threat actor interlock within the threat-intelligence index. The categorization reflects observed security incident linkages and sector classification rather than confirmed breach details. Official incident specifics remain undisclosed by the entity itself. |
||||||
| Ransomware | Kearney Public Schools id33091 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and information resources. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in cybersecurity records documenting malicious activity targeting education infrastructure. This description maintains neutrality regarding specific incident details while accurately representing the entity's sector, geographic context, and verified association with interlock in the ransomware victim classification. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the education sector based in the United States, operating in the public school domain and associated with threat-intelligence indexing. Its listing identifies it as a ransomware victim linked to the threat actor interlock within the catalog. The entity reflects an organization whose infrastructure or records may have been targeted by ransomware activity, contributing to cybersecurity awareness and sector-specific threat analysis. This description remains factual and neutral, focusing on the entity's classification, sector context, geographic location, and the threat actor association without asserting unverified incident details. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity within the US Education sector, operating under a public schools domain name and associated with the ransomware victim listing type. Its inclusion reflects threat-intelligence indexing practices focused on identifying organizations impacted by cyber incidents, particularly those linked to the interlock threat actor. The entity represents a public education institution whose domain is cataloged within this threat-intelligence index to support security awareness and incident correlation across monitored sectors. This description maintains neutrality regarding specific incident details, as confirmed specifics are not publicly attributable to the entity. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services or resources under its domain name. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking kearneypublicschools.org to an incident involving ransomware activity within the education industry. No specific technical details, data exfiltration specifics, ransom demands, or confirmed breach evidence are included per strict factual constraints. This entry serves to document the relationship between the entity, its sector context, and the attributed threat actor for catalog and intelligence purposes. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org operates within the United States education sector, providing public school-related services and information. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor interlock. The entry documents the cybersecurity impact observed across educational institutions, reflecting vulnerabilities within public education infrastructure. This listing serves to inform stakeholders about potential threats targeting US educational organizations and the specific actor connection. The catalog maintains factual, neutral representation of the incident classification without speculative details. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity identified within the Education sector based in the United States. Its domain name and context indicate public school or educational institution affiliation, providing relevant context for threat-intelligence indexing and sector-specific analysis. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type signals its inclusion in a ransomware incident index tied to interlock activity, supporting cyber threat monitoring and analytical workflows. The description remains factual and neutral, reflecting the entity's classification without inventing technical breach details or unconfirmed claims. |
||||||
| Ransomware | Kearney Public Schools id33092 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity identified within the Education sector based in the United States. Its domain name and context indicate public school or educational institution affiliation, providing relevant context for threat-intelligence indexing and sector-specific analysis. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type signals its inclusion in a ransomware incident index tied to interlock activity, supporting cyber threat monitoring and analytical workflows. The description remains factual and neutral, reflecting the entity's classification without inventing technical breach details or unconfirmed claims. |
||||||
| Ransomware | Kearney Public Schools id32889 View details | United States | Education | — | ||
|
kearneypublicschools.org is an entity identified within the Education sector in the United States, associated with threat-intelligence indexing as a ransomware victim linked to the threat actor interlock. The domain name indicates a public school or educational institution context, though specific operational details, services, or infrastructure specifics are not disclosed in the provided entity profile. In ransomware-victim listings, such entries document organizational exposure within cyber threat intelligence frameworks, emphasizing sector relevance and attacker attribution for risk assessment and defense planning. This description remains factual and neutral, avoiding assumptions about breach confirmation, data scope, financial impact, or recovery status. kearneypublicschools.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kearney Public Schools id32889 View details | United States | Education | — | ||
|
Kearney Public Schools is a school district comprised of 18 schools of various ages! This school has significant financial and other resources and the ability to protect itself and its students! However, it chose a poor path and is now paying for its irresponsibility! A large amount of confidential and classified information of various kinds was leaked into the public domain! This included personal security data, financial documents, and even information belonging to third parties, such as students' relatives and parents. |
||||||
| Ransomware | The North Stonington School District id23104 View details | United States | Education | leaked | ||
|
North Stonington Public Schools have two public schools and 736 students, strives to create a safe environment for themselves, their school, and their students. However, their "Safety First" slogan has recently changed! Despite having extensive resources and support, North Stonington Public Schools has a very poor IT security team that is doing a poor job! With our help, over 3 TB of confidential data was exposed, meaning all student data, including the entire history and documentation, is now in our hands! |
||||||
| Ransomware | The North Stonington School District id32559 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education sector institution located in the United States. The entity represents a school or educational organization within Connecticut, reflecting its .k12.ct.us domain structure and sector classification. Within the threat-intelligence index, this listing type identifies the entity as a ransomware victim linked to the interlock threat actor. The catalog entry provides neutral documentation of this association for security analysts tracking cyber incidents across sectors and geographic regions. The record neutrally states it was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32559 View details | United States | Education | — | ||
|
North Stonington Public Schools have two public schools and 736 students, strives to create a safe environment for themselves, their school, and their students. However, their "Safety First" slogan has recently changed! Despite having extensive resources and support, North Stonington Public Schools has a very poor IT security team that is doing a poor job! With our help, over 3 TB of confidential data was exposed, meaning all student data, including the entire history and documentation, is now in our hands! |
||||||
| Ransomware | The North Stonington School District id32665 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain and entity associated with an educational institution located in the United States, specifically within Connecticut's K-12 school district sector. This listing type identifies the entity as a ransomware victim within the threat-intelligence index. The association with the threat actor interlock contextualizes the cybersecurity risk profile linked to this educational infrastructure. The description focuses on the entity's classification and its documented relationship to this specific threat actor without disclosing unverified incident details. This catalog entry serves to inform stakeholders about cybersecurity exposures within the Education sector related to identified threat actors. |
||||||
| Ransomware | The North Stonington School District id32666 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an educational institution located in the United States, operating within the K-12 education sector. The entity functions as a web presence for an organization serving students and school administration, reflecting the sector's critical infrastructure and data sensitivity. Within threat-intelligence indexing frameworks, this listing type identifies the entity as a ransomware victim linked to the interlock threat actor group. The catalog entry documents the association neutrally, focusing on the verified linkage between the domain, its educational context, and the identified threat actor without disclosing unconfirmed operational details. This record supports defenders and analysts monitoring Education sector threats in the US. |
||||||
| Ransomware | The North Stonington School District id32666 View details | United States | Education | — | ||
|
northstonington.k12.ct.us operates within the United States education sector, identified as a ransomware victim in the threat-intelligence index. The domain reflects a public school or educational institution context based in Connecticut, serving K-12 community resources and administrative services. This listing type documents the entity's association with the threat actor interlock within the ransomware incident catalog. The description remains neutral and factual, focusing on sector, geographic location, and the verified association without elaborating on unconfirmed technical details or incident specifics. It serves as a reference point for threat analysts monitoring education sector cybersecurity exposures. |
||||||
| Ransomware | The North Stonington School District id32667 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an Education sector institution located in the United States. The domain reflects a school or educational entity within Connecticut, operating within the K-12 public education framework. Within the threat-intelligence index, this listing type identifies the entity as a ransomware victim linked to the threat actor interlock. The description provides neutral catalog context based on publicly associated metadata, sector classification, geographic location, and the confirmed threat actor attribution. This entry documents the relationship without speculating on incident details, data compromises, or operational impacts. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32671 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is an entity within the Education sector located in the United States, operating under the domain structure indicative of a school or educational institution in Connecticut. The listing identifies this entity as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in a threat-intelligence index where cybersecurity data is cataloged to support threat analysis and defense strategies across sectors. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope or operational impact are not provided here. Understanding entities like northstonington.k12.ct.us aids security professionals in contextualizing ransomware activity within educational infrastructure. |
||||||
| Ransomware | The North Stonington School District id32671 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The entity operates within the K-12 educational context, reflecting its role in providing services or infrastructure relevant to school-based systems. In the threat-intelligence index, this listing type identifies it as a ransomware victim connected to the Interlock threat actor. This designation reflects observed cybersecurity event linkages within the indexed dataset without confirming specific technical details, data exfiltration, or operational impact. The entry serves to catalog the entity's association with a recognized threat actor within the education sector landscape. |
||||||
| Ransomware | The North Stonington School District id32679 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education sector institution located in the United States. The domain reflects a school or educational organization operating within Connecticut (CT), serving K-12 educational services and infrastructure. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type indicates observed or attributed ransomware activity targeting this educational infrastructure, contributing to broader awareness of cyber threats in the education sector. This entry documents the association neutrally without disclosing unverified incident details, operational specifics, or unconfirmed claims regarding data handling or breach outcomes. |
||||||
| Ransomware | The North Stonington School District id32681 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The domain reflects typical public web infrastructure for a school or educational administration context within Connecticut. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. This listing type indicates association with malicious activity targeting education infrastructure, without confirming specific stolen data, ransom demands, or incident details. The record serves as a reference point for monitoring cybersecurity risks in educational environments across the country. |
||||||
| Ransomware | The North Stonington School District id32681 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a US-based Education sector institution referenced within a threat-intelligence index as a ransomware victim. The domain structure indicates a school district or educational entity located in Connecticut, reflecting its sector and geographic context. This listing type signals cybersecurity incident classification associated with the interlock threat actor. The description remains factual and neutral, avoiding unverified claims regarding data exposure, operational impact, or specific technical details. It serves as indexed intelligence for monitoring ransomware activity within educational infrastructure targeted by interlock. |
||||||
| Ransomware | The North Stonington School District id32682 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States, specifically within Connecticut. The domain operates within the K12 (kindergarten through secondary education) context, reflecting its role in providing educational services or infrastructure. This entity has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. The listing type indicates the entity's status as a compromised or affected system linked to this specific cyber threat actor. This entry contributes to broader awareness of ransomware activity targeting educational institutions in the US. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an educational institution in the United States, operating within the K-12 education sector. The domain reflects the location and institutional context of the entity, indicating services or infrastructure tied to a Connecticut-based school system. Within the threat-intelligence index, this listing type is designated as a ransomware victim, linking the entity to the cyber threat actor interlock. This classification contributes contextual data for analysts tracking ransomware campaigns in education sectors across the US. The entry neutrally records that northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a U.S.-based educational institution operating within the K-12 sector. The domain serves as a reference point within the threat-intelligence index for cataloging cybersecurity incidents. This listing identifies the entity as a ransomware victim associated with the threat actor interlock. The description maintains neutrality regarding specific incident details, avoiding speculation on data handling, breach confirmation, or operational impacts. It provides context for threat analysts tracking education sector vulnerabilities and associated malicious activity across the United States. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us represents an entity within the United States education sector, specifically associated with K-12 institutions. The domain identifier reflects its role within a threat-intelligence index cataloging cybersecurity incidents. As a ransomware victim entry linked to the interlock threat actor, this listing documents the entity's association with this specific adversary group for analytical and defensive reference. The description maintains neutrality regarding unverified incident details while accurately reflecting the entity's classification. This catalog entry supports threat intelligence workflows by connecting sector-specific entities to identified threat actors for risk assessment and response planning. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain reflects the public web presence of an entity categorized within the K-12 education sector, operating within Connecticut. In the context of threat intelligence indexing, this listing type identifies the entity as a ransomware victim connected to the threat actor interlock. The description focuses on the entity's sector, geographic context, and its classification within ransomware incident records without asserting unverified technical or operational details. This entry serves as a reference point for analysts tracking education-sector cybersecurity incidents and associated threat actor activity. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us represents a U.S.-based education institution within the K-12 sector, identified through its domain structure indicating a school network. The entity serves as a catalog entry documenting an incident where the organization was impacted by ransomware activity linked to the threat actor interlock. This listing type captures verified threat-intelligence data associated with the victim entity, providing context on sector exposure and attacker attribution for analysts. The description remains neutral and factual, focusing solely on the indexed classification without speculating on incident details such as data accessed or operational impact. This entry supports threat-intelligence workflows by clearly associating the domain with its sector, geographic context, and confirmed threat actor. |
||||||
| Ransomware | The North Stonington School District id32685 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a U.S.-based educational institution operating within the K-12 sector, identified through its domain naming convention as a location-specific school or district entity. The domain serves the informational and operational needs of an education organization in Connecticut, reflecting typical public-facing infrastructure for schools and educational services. Within our threat-intelligence catalog, this entity is cataloged specifically as a ransomware victim associated with the interlock threat actor group. This listing type indicates documented threat-intelligence linkage rather than confirmed incident details, preserving neutrality regarding unverified specifics such as data accessed or systems impacted. The record supports security professionals monitoring education sector exposure to coordinated cyber threats. |
||||||
| Ransomware | The North Stonington School District id32686 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a Northstonington school district entity operating within the United States education sector. The domain and listing context indicate institutional infrastructure relevant to K-12 administrative services, student records, and educational operations. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The description reflects the entity's sector, geographic context, and the nature of its inclusion without asserting unverified incident details such as data exfiltration, ransom demands, or confirmed breach scope. This entry provides neutral reference information for threat analysts tracking ransomware activity within US education environments. |
||||||
| Ransomware | The North Stonington School District id32686 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an Education sector entity located in the United States. The domain reflects institutional activity within the K-12 school system of Connecticut, representing a public education organization whose infrastructure was identified within a threat-intelligence catalog. This listing is categorized as a ransomware victim, indicating its inclusion in records tied to cyber incidents involving malicious software deployment. The association with the threat actor interlock contextualizes the entity within broader cyber threat intelligence analysis. This description avoids unsupported claims regarding data stolen, ransom demands, or confirmed breach details, focusing solely on the entity's classification and contextual association. |
||||||
| Ransomware | The North Stonington School District id32689 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents an institution within the United States education sector identified in threat-intelligence indexing as a ransomware victim. The domain structure and sector designation indicate a school or educational organization located in Connecticut, with services focused on academic and student support infrastructure. This listing type categorizes the entity within cybersecurity threat databases to track associated malicious activity and actor attribution. The association with the interlock threat actor provides context for ongoing cyber risk assessment within educational technology environments. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32689 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The domain reflects a school or educational organization within Connecticut, operating within the K-12 public education framework. In the context of threat-intelligence indexing, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type indicates observed or attributed ransomware activity affecting this sector-specific entity in the US. This entry serves as a reference point within the threat-intelligence index for monitoring security implications across education infrastructure. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32690 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a school or education institution located in Connecticut, United States, operating within the K-12 education sector. The entity is cataloged as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. Its inclusion reflects observed or documented threat activity relevant to education infrastructure and the specific actor interlock. No incident specifics such as data stolen, records affected, ransom amounts, or confirmed breach details are provided here, per strict factual neutrality requirements. This listing serves as a neutral reference point for threat-intelligence professionals monitoring ransomware exposure across education sectors in the United States. |
||||||
| Ransomware | The North Stonington School District id32690 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a Northstonington school district entity within the United States education sector, operating under a .k12 domain structure typical of public K-12 institutions. The domain serves administrative, student, and educational services for the associated school community in Connecticut. Within the threat-intelligence catalog, this entity is classified as a ransomware victim linked to the interlock threat actor group. The listing reflects observed cybersecurity intelligence associating the domain with ransomware activity without disclosing confirmed breach details, data exfiltration specifics, or operational impact metrics. This record supports threat-index analysis for education sector defenders monitoring interlock-related campaigns. |
||||||
| Ransomware | The North Stonington School District id32691 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an Education sector institution located in the United States. The domain reflects the operational identity of an entity within the K-12 educational context in Connecticut. In the threat-intelligence index, this listing type identifies it as a ransomware victim linked to the threat actor interlock. The catalog entry provides neutral classification based on sector, geographic context, and verified threat association without disclosing unconfirmed incident details. It serves as a reference point for threat researchers monitoring Education sector exposure. |
||||||
| Ransomware | The North Stonington School District id32691 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is an entity identified within a threat-intelligence index under the ransomware victim listing type. Its domain structure and associated metadata indicate a location in the United States within the education sector, suggesting institutional or academic infrastructure relevant to cybersecurity monitoring. The listing type categorizes this entity as a ransomware victim associated with the threat actor interlock. This designation supports threat-intelligence cataloging, enabling analysts to track affected entities, contextualize attack patterns, and assess sector-specific risks within educational environments. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32696 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The entity operates within the K-12 public education context, reflecting its geographic and organizational positioning. In the threat-intelligence index, it is cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates documented intelligence concerning potential ransomware activity associated with this entity. The description remains factual and neutral, focusing on sector classification, geographic context, and the verified association with the interlock threat actor without speculating on unconfirmed technical or operational details. |
||||||
| Ransomware | The North Stonington School District id32696 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States, operating within the K12 public school context in Connecticut. The entity serves as a catalog entry identifying an organization listed as a ransomware victim within the threat-intelligence index. This listing reflects cybersecurity risk intelligence concerning the affected sector and geographic location, contextualized by its association with the interlock threat actor. The description maintains neutrality regarding unconfirmed incident details, focusing solely on the entity's classification and threat attribution within the index. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32698 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with a US-based Education sector institution, specifically a school district in Connecticut. The listing identifies this entity as a ransomware victim within a threat-intelligence index, linked to the threat actor interlock. The domain reflects the operational identity of the affected organization in cybersecurity reporting. This entry documents the association between the entity, the ransomware context, and the identified threat actor without disclosing unverified incident details. The classification supports threat-intel cataloging for monitoring Education sector security events. |
||||||
| Ransomware | The North Stonington School District id32698 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies an educational institution or service operating within the K-12 sector in Connecticut, United States. The domain serves as an identifier for an entity cataloged as a ransomware victim in threat-intelligence indexing, reflecting cybersecurity exposure within the education sector. This listing type indicates association with the threat actor interlock, a group documented in cyber threat intelligence databases. The entry provides context for monitoring ransomware activity affecting educational infrastructure and public-sector entities. It neutrally states that northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32699 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain reflects the operational identity of a school or educational entity within Connecticut, serving its administrative, student, or institutional functions within the K-12 education sector. This listing identifies the entity as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description provides neutral catalog context for researchers analyzing ransomware incidents in education infrastructure across the US. It states neutrally that northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32699 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an educational institution located in the United States, operating within the K-12 education sector. The entity represents an organization whose infrastructure was impacted by ransomware activity, documented within threat-intelligence indexing frameworks. This listing type categorizes the entity as a ransomware victim linked to the threat actor interlock, providing context for security researchers and defenders monitoring education sector threats in the US. The description focuses solely on the entity's classification, sector, geographic context, and verified association with the specified threat actor without elaborating on unconfirmed incident details. This entry supports risk assessment and awareness of cybersecurity events affecting educational systems. |
||||||
| Ransomware | The North Stonington School District id32700 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with the US education sector, reflecting institutional activity within a K-12 school network. The entity functions as a catalog entry identifying an organization categorized as a ransomware victim within the threat-intelligence index. Its classification highlights exposure to cyber threats targeting educational infrastructure, emphasizing the sector-specific risks faced by public and private school systems. The listing explicitly associates this entity with the threat actor interlock, providing context for its inclusion in the ransomware victim index. This description maintains neutrality regarding incident details while accurately reflecting the entity's categorization and threat linkage. |
||||||
| Ransomware | The North Stonington School District id32704 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a US-based education institution within the K-12 sector. The domain reflects a public web presence serving local educational services in Connecticut. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor group. The listing type indicates observed or attributed ransomware activity against this sector entity. No specific incident details such as data stolen, records compromised, ransom demands, or confirmed breach evidence are included per strict factual constraints. This entry provides neutral context for threat researchers tracking ransomware incidents across educational infrastructure. |
||||||
| Ransomware | The North Stonington School District id32704 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a Northstonington public school district in Connecticut, United States, operating within the Education sector. The domain serves as an administrative or institutional web presence for the school community, supporting standard educational services and communications. Within the threat-intelligence catalog, this entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects observed cybersecurity intelligence linking the institution to malicious activity under interlock's operational footprint. The entry provides context for threat researchers tracking education sector exposure and attacker targeting patterns. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. |
||||||
| Ransomware | The North Stonington School District id32704 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a domain associated with an educational institution located in the United States, operating within the K-12 education sector. The entity is cataloged as a ransomware victim within this threat-intelligence index, reflecting documented cybersecurity activity linked to the threat actor interlock. This listing type indicates the entity was impacted by ransomware-related malicious activity, consistent with threats targeting education infrastructure. The description focuses on the entity's sector, geographic context, and verified association with the interlock threat actor without speculating on unconfirmed technical details or disclosure specifics. The entry provides neutral, authoritative context for threat analysts monitoring education sector incidents. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a US-based entity within the Education sector, cataloged as a ransomware victim in the threat-intelligence index. The domain name indicates a connection to a Northstonington school district in Connecticut, reflecting its public-sector educational context and typical services such as student records, administrative systems, and digital infrastructure. This listing type identifies the entity as having been affected by ransomware activity associated with the interlock threat actor group, providing contextual intelligence for security professionals monitoring Education sector threats. The description remains neutral regarding specific incident details, as confirmed specifics such as data exposure or recovery actions are not publicly established for this entity. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents an educational institution operating within the United States, identified within the K-12 education sector. The domain name and context indicate a school or educational organization serving the Northstonington community in Connecticut. Within threat-intelligence cataloging frameworks, this entity is specifically categorized as a ransomware victim linked to the interlock threat actor. The listing type captures the cybersecurity event classification associated with this organization, reflecting its documented exposure within threat intelligence databases. This entry serves as a reference point for analysts tracking ransomware incidents within educational infrastructure across the United States, providing neutral context on the entity's sector, location, and confirmed threat association with interlock. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents an education-sector institution located in the United States, operating within the K-12 public school domain. The domain functions as an identifier for a system or organizational unit within this sector. According to threat-intelligence indexing records, this entity has been cataloged specifically as a ransomware victim linked to the interlock threat actor group. This classification reflects the security event attributed to the interlock campaign within the affected environment. The entry documents the association without disclosing unverified incident details such as data exfiltration specifics or financial demands. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an Education sector entity located in the United States. The domain reflects the institutional identity of a school or educational organization within the Connecticut K-12 system, serving students and administrative functions within that geographic and sector context. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates documented exposure or association with malicious activity targeting educational infrastructure. The entry provides neutral context for analysts tracking ransomware incidents across US education sectors and threat actor attribution. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us is a domain identifier associated with an education sector entity located in the United States, operating within the K12 (kindergarten through secondary education) context. The entity represents a school or educational institution within Connecticut, reflecting its public web presence tied to the k12.ct.us domain structure. Within threat-intelligence indexing frameworks, this listing type categorizes the entity as a ransomware victim linked to the interlock threat actor group. This designation reflects observed cybersecurity event correlation rather than confirmed breach details, maintaining neutrality regarding specific attack vectors or impact specifics. The record serves to document the association between the education sector entity and the interlock threat actor for analytical and defensive reference purposes. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with a US-based Education sector institution operating within the K-12 school system of Connecticut. The entity functions as a catalog entry representing a ransomware victim within the threat-intelligence index, reflecting observed network activity linked to the threat actor interlock. This listing type documents the incident context for defenders monitoring Education sector threats in the United States. The description remains factual and neutral, focusing on the entity’s classification without disclosing unverified details such as data accessed, ransom demands, or specific breach timelines. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a US-based education sector institution cataloged as a ransomware victim within a threat-intelligence index. The domain structure and sector designation indicate its role within the K-12 educational context in Connecticut, reflecting operational scope relevant to educational infrastructure resilience. This listing type identifies the entity as having experienced ransomware activity associated with the threat actor interlock, as documented in the intelligence source. The description remains neutral regarding specific incident details, avoiding assumptions about data accessed, encryption methods, or recovery outcomes. The entry serves as a reference point for threat actors, defenders, and researchers monitoring education sector vulnerabilities tied to interlock activity. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The entity operates within the K-12 educational context, reflecting typical infrastructure and service offerings for public school systems in Connecticut. It is cataloged in this threat-intelligence index under the listing type ransomware victim, linked to the threat actor interlock. This designation contributes to broader awareness of attack patterns targeting education sectors and helps security professionals contextualize potential risks. The record neutrally states that northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents an educational institution located in Connecticut, United States, operating within the K-12 education sector. The domain serves as a catalog entry within a threat-intelligence index, specifically categorized as a ransomware victim listing. This classification reflects the entity's documented association with the threat actor interlock in cybersecurity threat databases. The entry provides contextual information about the organization's sector, geographic location, and its classification within cybersecurity threat reporting frameworks. It neutrally states this entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32706 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies an entity within the United States education sector, associated with a ransomware incident in the threat-intelligence index. The domain notation indicates a school or educational institution context in Connecticut, reflecting its sector and geographic location. This listing type records the entity as a ransomware victim linked to the interlock threat actor. The description avoids speculative claims regarding data stolen, affected records, ransom demands, or technical attack details, maintaining factual neutrality. It serves as authoritative catalog copy for threat-intelligence professionals tracking education-sector ransomware exposure and interlock-associated incidents. |
||||||
| Ransomware | The North Stonington School District id32707 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The entity represents a school or educational organization within Connecticut, reflecting its .k12.ct.us domain structure and sector classification. Within the threat-intelligence index, it is cataloged as a ransomware victim connected to the interlock threat actor. This listing type indicates documented exposure to ransomware activity within the cybersecurity threat landscape. The entry provides neutral reference information for analysts tracking education sector security incidents and associated threat actor activity across the region. |
||||||
| Ransomware | The North Stonington School District id32707 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us is a domain identifier associated with an educational institution in the United States, operating within the K-12 education sector. The entity represents a ransomware victim listing within the threat-intelligence index, reflecting cybersecurity events impacting educational infrastructure. This catalog entry documents the relationship between the affected organization and the threat actor interlock, providing context for threat researchers and defenders monitoring education sector security incidents. The description remains factual and neutral, focusing on the entity's classification and associated threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This listing serves to inform stakeholders of compromised systems linked to interlock activity in the US education sector. |
||||||
| Ransomware | The North Stonington School District id32708 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain operates within the K-12 public education context, reflecting typical services and infrastructure for educational organizations. In threat-intelligence indexing, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type identifies the relationship between the domain, the sector, the geographic origin, and the associated cyber threat actor without disclosing unverified incident specifics. This entry serves to document the entity within a ransomware victim registry for analytical and defensive reference purposes. |
||||||
| Ransomware | The North Stonington School District id32709 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an Education sector institution located in the United States, operating within the K-12 public school context. The entity is cataloged as a ransomware victim within a threat-intelligence index, linked to threat actor interlock. This listing reflects the entity's inclusion in cybersecurity intelligence records due to its association with this specific threat actor and its role as a ransomware incident victim. The description focuses on the entity's classification, sector, geographic context, and verified threat-actor linkage without asserting unconfirmed breach details. Such catalog entries support threat monitoring, sector-specific risk analysis, and intelligence synthesis for organizations and defenders. |
||||||
| Ransomware | The North Stonington School District id32710 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents a U.S. education institution operating within the K-12 sector, where the domain serves as an identifier for the affected entity. The listing type classifies this entity as a ransomware victim, with the associated threat actor and source identified as interlock. This entry documents the cybersecurity incident within a threat-intelligence index context, reflecting observed connections between the entity, the threat actor interlock, and the education sector environment. The description remains factual and neutral, avoiding speculation regarding breach details, data impacts, or recovery specifics. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32711 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The domain reflects a public web presence within the K-12 school system context, indicating operational activities tied to educational services and infrastructure. Within this threat-intelligence index, the entity is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing type signals that the organization was impacted by ransomware activity connected to interlock, contributing contextual data for security analysts tracking cyber incidents across education sectors in the US. The description remains factual and neutral, focusing on the entity's classification, sector, geographic context, and verified association without speculating on unconfirmed incident details. |
||||||
| Ransomware | The North Stonington School District id32711 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a US-based Education sector entity cataloged as a ransomware victim within a threat-intelligence index. The domain notation indicates a school or educational institution located in Connecticut, reflecting its sector and geographic scope. This listing type documents the entity's association with the interlock threat actor in cyber threat intelligence records. The description remains neutral, focusing on the verified linkage and sector context without asserting unconfirmed incident details such as data exfiltration, ransom demands, or specific breach outcomes. It serves as a reference point for analysts tracking ransomware incidents within educational infrastructure across the United States. |
||||||
| Ransomware | The North Stonington School District id32713 View details | United States | Education | — | ||
|
northstonington.k12.ct.us represents an educational institution located in the United States, operating within the K-12 education sector. The domain identifies a school or educational organization whose infrastructure was targeted as part of a ransomware incident. As documented in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor group. The listing type reflects the confirmed association between the organization and this cyber threat activity within the indexed data. This entry provides neutral context for researchers and defenders analyzing ransomware campaigns affecting educational infrastructure. |
||||||
| Ransomware | The North Stonington School District id32714 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us is an entity identified within a threat-intelligence index under the ransomware victim listing type. The domain name and associated metadata indicate its affiliation with the education sector, specifically a U.S.-based school district context in Connecticut. It represents a publicly cataloged incident reference relevant to cybersecurity monitoring and threat actor tracking. The listing neutrally associates this entity with the threat actor interlock within the ransomware victim classification. This description serves as authoritative catalog copy without asserting unverified incident details. |
||||||
| Ransomware | The North Stonington School District id32715 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with the US Education sector, reflecting institutional infrastructure typical of a K-12 school district context. The entity functions within a threat-intelligence index catalog as a ransomware victim listing, documenting observed security-related activity linked to the threat actor interlock. This entry serves catalog and analytical purposes for monitoring cyber incidents across educational institutions, providing neutral context on the entity's classification and sector relevance. The listing type indicates ransomware victimization without disclosing unverified technical details, breach specifics, or confirmed outcomes. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a US-based Education sector institution referenced within a threat-intelligence index as a ransomware victim. The domain structure (.k12.ct.us) indicates a connection to a Connecticut public school district or educational administration context, reflecting its sector and geographic location. Within the catalog, this entity is cataloged specifically under the ransomware victim classification, associated with the threat actor interlock. This listing serves to document the relationship between the entity, its sector profile, and the identified threat actor without disclosing unverified incident details. The entry provides neutral, factual context for threat analysts tracking ransomware activity within educational infrastructure across the United States. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is an entity within the Education sector located in the United States, operating under a .k12.ct.us domain indicating a public school or educational institution context. The domain reflects services and infrastructure typical of regional education administration, student access systems, and institutional communications. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing type identifies the organization as having experienced ransomware activity associated with interlock, contributing contextual intelligence for defenders monitoring Education sector threats in the US. The description remains factual and neutral, noting the association without speculating on unconfirmed technical details or disclosure specifics. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain reflects a school or educational setting within Connecticut and serves as the identifier for this ransomware victim listing. Threat-intelligence analysis associates this entity with the interlock threat actor, indicating its inclusion in a ransomware incident catalog. The listing type identifies the organization as a ransomware victim within the cyber threat intelligence index. This description remains factual and neutral, focusing on sector, location, entity identification, and the associated threat actor without disclosing unconfirmed incident details. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us identifies a Northstonington school district domain within the United States education sector, reflecting institutional digital infrastructure serving K-12 operations. The domain represents a public-facing entity relevant to cybersecurity monitoring, where threat-intelligence indexes document potential security exposures and adversary associations. This listing type categorizes the entity as a ransomware victim associated with the threat actor interlock, indicating its inclusion in intelligence datasets tracking ransomware-related activity. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its documented association without speculating on unverified incident details. Such catalog entries support threat analysts in assessing education sector vulnerability patterns and adversary targeting behavior. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain operates within the K-12 educational context, reflecting services and infrastructure typical of public or school-based administrative systems. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between the entity and the associated cyber threat without disclosing unverified incident details. This entry serves to document the entity's classification within the ransomware victim index for analytical and defensive reference purposes. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education-sector institution located in the United States. The domain reflects the k12.ct.us structure, indicating a school or educational context within Connecticut. It is cataloged as a ransomware victim within the threat-intelligence index. The listing type identifies its relationship to the threat actor interlock, providing context for cybersecurity monitoring and threat-mapping purposes. This description maintains neutrality regarding specific incident details, as confirmed facts are limited to the entity’s classification and associated threat actor. |
||||||
| Ransomware | The North Stonington School District id32718 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an education-sector institution located in the United States. The entity operates within the K-12 public education sector, reflecting typical infrastructure concerns including student data systems, administrative platforms, and network environments. It is cataloged as a ransomware victim within the threat-intelligence index, linked to the interlock threat actor. This listing provides neutral context for researchers analyzing ransomware incidents involving education-sector entities in the US. The entry documents the association without confirming specific breach details, data exposure, or operational impact. |
||||||
| Ransomware | The North Stonington School District id32719 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an education sector entity operating within the United States. The domain reflects a school or educational institution context, as indicated by its .k12.ct.us designation and sector classification. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type identifies the relationship between the affected entity and the associated cyber threat actor without disclosing unverified incident details. This record serves threat analysts and defenders by documenting the association for monitoring and risk assessment purposes. |
||||||
| Ransomware | The North Stonington School District id32719 View details | United States | Education | — | ||
|
northstonington.k12.ct.us identifies a U.S.-based education institution operating within the K-12 sector, with its domain reflecting its location in Connecticut. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the interlock threat actor. This listing type indicates observed or attributed malicious activity targeting the organization's digital infrastructure within the education sector. The entry provides contextual intelligence for security professionals monitoring ransomware campaigns across educational institutions in the United States. It neutrally records the association with interlock as the attributed threat actor for this ransomware victim listing. |
||||||
| Ransomware | The North Stonington School District id32720 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is an entity within the education sector located in the United States, identified under the domain structure indicating a K12 (elementary to secondary education) context in Connecticut. This listing type categorizes the entity as a ransomware victim, reflecting its status within threat-intelligence indexing. The association with the threat actor Interlock contextualizes the cybersecurity event within broader cybercrime analysis frameworks. This catalog entry serves to document the relationship between the organization, its sector classification, and the identified threat actor for defensive and analytical purposes. The record neutrally states it was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32722 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain associated with an educational institution located in the United States. Operating within the K-12 education sector, the entity represents a school or educational organization whose infrastructure was identified as a ransomware victim. This listing type indicates that the system was compromised by malicious activity linked to the threat actor interlock. The description focuses on the entity's classification within the threat-intelligence index, emphasizing its sector, geographic context, and confirmed association with interlock as a ransomware incident marker. No specific technical details, data loss metrics, or recovery outcomes are included per analytical constraints. |
||||||
| Ransomware | The North Stonington School District id32722 View details | United States | Education | — | ||
|
Northstonington.k12.ct.us identifies a system or entity within the Education sector located in the United States. The domain name indicates a public-facing address associated with a school or educational institution in Connecticut, reflecting its operational focus and geographic context. Within the threat-intelligence catalog, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing provides contextual metadata for security professionals monitoring education infrastructure exposure and active threat campaigns. It neutrally records that Northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The North Stonington School District id32722 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is a domain identifier associated with an educational institution located in the United States, operating within the K-12 education sector. The entity represents a ransomware victim entry within a threat-intelligence index, reflecting cybersecurity exposure relevant to schools and educational infrastructure. Its classification emphasizes sector vulnerability, geographic context, and the nature of the threat event linked to the interlock threat actor. This listing serves as a neutral catalog reference for threat-intelligence professionals monitoring ransomware incidents across educational environments in the US. |
||||||
| Ransomware | The North Stonington School District id32722 View details | United States | Education | — | ||
|
northstonington.k12.ct.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and associated with the United States. The domain and naming convention indicate a public or school-based institution in Connecticut, reflecting the k12 context and CT postal region. The listing type classifies this entity as affected by ransomware activity, with interlock cited as the associated threat actor or source in the intelligence record. This description avoids inventing specific technical details, breach scope, data elements compromised, ransom terms, or confirmed forensic findings, maintaining strict neutrality. northstonington.k12.ct.us was listed as a ransomware victim associated with interlock. |
||||||