Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 71 | Onion service | Up checked 2h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 2h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 2h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 2h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 2h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 63 | Onion service | Up checked 2h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 65 | Onion service | Up checked 2h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 2h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 61 | Onion service | Up checked 2h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 2h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 2h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 60 | Onion service | Up checked 2h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 55 | Onion service | Up checked 2h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 57 | Onion service | Up checked 2h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 2h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 2h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 2h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 2h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 2h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 2h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 2h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 2h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Down checked 2h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 62 | Onion service | Down checked 2h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 2h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 2h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 2h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 2h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 2h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 2h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 2h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 2h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 2h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 2h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 2h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 2h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 2h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 2h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 2h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 2h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 29 | Onion service | Down checked 2h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 31 | Onion service | Down checked 2h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 2h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 2h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 2h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 28 | Onion service | Down checked 2h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 2h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 2h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 25 | Onion service | Down checked 2h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 22 | Onion service | Down checked 2h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 2h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 2h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 2h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 2h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 2h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 2h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 2h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 2h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 2h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 2h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 2h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 2h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 8 | Onion service | Down checked 2h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 2h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 2h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 2h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 2h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 2h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 2h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 13801–13900 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | MBM Intellectual Property Law id32856 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged within the threat-intelligence index as a ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records documenting ransomware-related incidents and associated actors. The description maintains neutrality regarding incident details, focusing on the verified classification and contextual metadata provided by the intelligence source. The association with interlock identifies the threat actor connection under which mbm.com was recorded in this ransomware victim index. |
||||||
| Ransomware | MBM Intellectual Property Law id32857 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity functions as a technology services provider, offering infrastructure, software solutions, or managed IT services typical of organizations within this industry. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cybersecurity incidents involving this actor. The description remains factual and neutral, focusing solely on the entity's sector, geographic context, and its association with the indexed threat actor without elaborating on unverified incident details. |
||||||
| Ransomware | MBM Intellectual Property Law id32858 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is associated with the threat actor interlock in the threat-intelligence index. The entity is cataloged specifically as a ransomware victim, reflecting its inclusion in intelligence records tied to this adversary group. Publicly available information does not confirm specific breach details, such as data stolen, affected systems, or ransom demands. The listing type and associated actor provide context for threat-aware monitoring and risk assessment within cybersecurity operations. This description remains neutral and avoids speculative claims about the incident itself. |
||||||
| Ransomware | MBM Intellectual Property Law id32859 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada. The entity represents a business organization whose infrastructure was impacted by a ransomware incident. According to the threat-intelligence index, mbm.com was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the observed relationship between the entity and the identified malicious actor within the catalog. The listing provides context for security teams monitoring ransomware activity across regional service-sector organizations. |
||||||
| Ransomware | MBM Intellectual Property Law id32859 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This profile contributes verified intelligence regarding compromised organizations and their connections to identified cyber threats. The entry serves as a reference point for threat analysts tracking ransomware campaigns and associated actors across sectors and geographies. It reflects the index's commitment to cataloging entities affected by cyber incidents with neutral, factual reporting. |
||||||
| Ransomware | MBM Intellectual Property Law id32860 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada. The entity appears in the threat-intelligence catalog under the listing type ransomware victim, associated with threat actor interlock. This designation reflects its inclusion in monitored incident data concerning cyber threats targeting service-oriented organizations. The description adheres to neutral reporting standards without disclosing unverified details regarding attack methods, data exposure, or operational impact. It serves as a reference point for threat analysts tracking ransomware activity and associated actors. |
||||||
| Ransomware | MBM Intellectual Property Law id32860 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This classification reflects the cybersecurity context surrounding the organization's inclusion in the index, highlighting its relevance to threat tracking and defense analysis. The description maintains neutrality regarding the nature of the incident, focusing solely on the verified association and sector profile. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32860 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity functions as a technology provider or service organization within the information technology domain. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity threat records concerning ransomware activity. The description remains factual and neutral, focusing on the entity's sector, geographic context, and verified association with the identified threat actor without elaborating on unconfirmed incident details. |
||||||
| Ransomware | MBM Intellectual Property Law id32860 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology service provider, offering digital infrastructure and related solutions to clients. Within the threat-intelligence catalog, mbm.com is formally categorized as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's documented association with this specific cyber threat actor in the intelligence record. The classification serves to inform stakeholders about potential exposure within the IT sector and underscores ongoing vigilance against ransomware activity. |
||||||
| Ransomware | MBM Intellectual Property Law id32860 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is associated with Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects the cybersecurity context in which mbm.com was documented, emphasizing its role as an affected organization rather than detailing unverified incident specifics. The entry supports threat-intelligence analysis by linking the entity to a known actor within the ransomware landscape. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32861 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity provides various service-oriented offerings, though specific operational details are not disclosed in this catalog context. According to the threat-intelligence index, mbm.com was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity threat records for monitoring and defensive intelligence purposes. The listing type underscores its status within the ransomware incident database connected to interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32861 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is located in Canada. The entity functions as a technology-focused organization providing digital services or infrastructure within its industry domain. Within the threat-intelligence index, mbm.com is formally cataloged as a ransomware victim linked to the threat actor interlock. This listing type identifies the entity's relationship to a specific cyber threat actor within the indexed data. The entry reflects the cybersecurity context in which the organization was documented, emphasizing its association with interlock without disclosing unverified incident details or confirming breach specifics. |
||||||
| Ransomware | MBM Intellectual Property Law id32861 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity provides services aligned with its sector classification, though specific operational details remain part of proprietary business information within the threat-intelligence context. This listing categorizes mbm.com as a ransomware victim associated with the threat actor interlock. The designation reflects inclusion within a curated threat-intelligence index designed to support defensive analysis and risk assessment. Neutral documentation ensures clarity for security professionals monitoring adversary-related incidents across sectors and geographies. |
||||||
| Ransomware | MBM Intellectual Property Law id32861 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector based in Canada. The organization's public role and specific functions are not detailed beyond its sector classification in available threat-intelligence records. This listing categorizes mbm.com as a ransomware victim associated with the threat actor interlock. The entry reflects the entity's documented relationship within cybersecurity incident databases without disclosing unverified technical details or operational specifics of the attack. Neutral documentation supports threat analysts tracking adversary-victim correlations across sectors and geographies. |
||||||
| Ransomware | MBM Intellectual Property Law id32861 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity serves as a ransomware victim entry within the threat-intelligence index, explicitly linked to the threat actor interlock. This listing reflects the cybersecurity context in which mbm.com was identified, highlighting its status as a compromised organization under interlock's activity profile. The description avoids speculative details regarding breach specifics, data exposure, or financial impact, maintaining a neutral and factual perspective consistent with threat-intelligence catalog standards. The inclusion underscores the importance of monitoring ransomware incidents across IT sectors for defensive awareness and threat tracking. |
||||||
| Ransomware | MBM Intellectual Property Law id32862 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector and headquartered in Canada. The organization's specific services and offerings are not publicly detailed in available threat-intelligence records; therefore, this description focuses on its classification within the cybersecurity landscape. This entity has been formally cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects its inclusion in a threat-intelligence index designed to track adversary activity and victim profiles across sectors. This entry serves as a reference point for analysts monitoring cyber incidents in the IT domain. |
||||||
| Ransomware | MBM Intellectual Property Law id32862 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada, providing technology-focused services and solutions. Within the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing type identifies its role in the cybersecurity landscape as a reported incident target. This description reflects the indexed classification without confirming specific breach details, data impacts, or operational outcomes. The association with interlock is documented neutrally within the intelligence framework for monitoring and analysis purposes. |
||||||
| Ransomware | MBM Intellectual Property Law id32863 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is associated with the country Canada. The entity is described here within a threat-intelligence index as a ransomware victim connected to the threat actor interlock. Catalog copy focuses on factual entity context, sector classification, geographic origin, and the specific threat-intelligence listing type rather than speculative incident details. No breach confirmation, stolen data claims, ransom terms, or unverified incident specifics are included. This neutral description supports authorized threat-intelligence referencing and indexing workflows for security analysts. |
||||||
| Ransomware | MBM Intellectual Property Law id32863 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector and associated with the country of Canada. The organization is cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects inclusion within cybersecurity intelligence frameworks tracking ransomware incidents and their connected actors. The description remains factual and neutral, focusing on the entity's classification, sector context, geographic location, and the specific threat actor linkage without elaborating on unverified incident details. Such indexing supports threat analysts in monitoring patterns and understanding ransomware victim profiles across sectors and regions. |
||||||
| Ransomware | MBM Intellectual Property Law id32864 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada, providing technology-focused services or infrastructure relevant to enterprise digital environments. As part of the threat-intelligence index, it is formally listed as a ransomware victim associated with threat actor interlock. This designation reflects the entity's inclusion in cybersecurity records documenting adversarial activity and impacted organizations. The catalog entry serves to inform defenders and analysts about potential exposure pathways and threat actor connections without disclosing unverified incident details. Neutral documentation supports ongoing risk assessment and intelligence aggregation for stakeholders monitoring cyber threats in the technology sector. |
||||||
| Ransomware | MBM Intellectual Property Law id32865 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and serves entities requiring technology infrastructure, services, or managed solutions. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects its inclusion in cybersecurity intelligence records for monitoring adversary activity and contextualizing incident patterns across affected organizations. This entry supports defenders in understanding entity exposure within known threat actor campaigns. The description remains factual and neutral, focusing solely on the indexed classification without elaborating unverified incident details. |
||||||
| Ransomware | MBM Intellectual Property Law id32868 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This designation reflects the cybersecurity context surrounding the organization's inclusion in the index, highlighting its role within threat actor activity and potential impact on service-sector infrastructure. The entry provides neutral, factual context for researchers and defenders seeking to understand compromised entities and associated threat patterns without disclosing unverified incident details. |
||||||
| Ransomware | MBM Intellectual Property Law id32869 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is associated with the country of Canada. The entity is cataloged as a ransomware victim within this threat-intelligence index, with interlock identified as the associated threat actor or source. The listing reflects the entity's presence in threat-intelligence records tied to this actor profile and does not confirm specific incident details such as data stolen, records affected, ransom demands, or precise breach timelines. This description provides neutral, authoritative context for catalog users seeking to understand the entity's classification, sector, geographic context, and threat association. |
||||||
| Ransomware | MBM Intellectual Property Law id32869 View details | Canada | IT | — | ||
|
bm.com operates within the IT sector and is located in Canada, providing technology-focused services or infrastructure relevant to enterprise environments. It is cataloged within the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this specific threat actor in cybersecurity records. The description remains neutral regarding incident details, as no confirmed specifics such as data stolen, ransom demands, or breach scope are attributable to this entry. The catalog entry serves to document the relationship between the entity, its sector, location, and the identified threat actor for analytical and defensive purposes. |
||||||
| Ransomware | MBM Intellectual Property Law id32869 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity provides technology-focused services or infrastructure, aligning with the IT classification noted in threat-intelligence records. According to the threat-intelligence index, mbm.com was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity monitoring datasets documenting adversary activity and impacted organizations. The entry serves as a reference point for analysts tracking ransomware campaigns, threat actor methodologies, and sector-specific incident patterns in the technology domain. |
||||||
| Ransomware | MBM Intellectual Property Law id32869 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada. The entity provides professional services aligned with its identified sector profile. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source designated as interlock. This entry documents the relationship between the entity and the identified threat actor without disclosing unverified incident details. The listing serves as a reference point for monitoring cybersecurity risks and attacker activity in the Services sector across Canadian contexts. |
||||||
| Ransomware | MBM Intellectual Property Law id32869 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada. The entity functions as a technology-focused organization providing digital services or infrastructure within its industry context. It has been formally cataloged within this threat-intelligence index under the designation ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's status as a reported target within the cybersecurity threat landscape. The entry provides neutral documentation for threat researchers and security professionals monitoring adversary activity and victim profiles across sectors and geographies. |
||||||
| Ransomware | MBM Intellectual Property Law id32871 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is located in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity community's documentation of the entity's association with this specific malicious actor profile. No further incident details are asserted here, including data scope, ransom terms, or confirmed breach specifics. The entry serves to index the relationship between the organization and the identified threat actor for monitoring and defense purposes. |
||||||
| Ransomware | MBM Intellectual Property Law id32871 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is headquartered in Canada, providing technology-focused services and solutions. The entity is cataloged within this threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. This classification reflects its documented association with malicious activity targeting digital infrastructure. The listing serves to inform security professionals and stakeholders about entities impacted by coordinated cyber threats. It neutrally records the relationship without elaborating on unverified incident details, maintaining factual accuracy and professional objectivity. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada, providing relevant technology services or infrastructure within that domain. In the context of this threat-intelligence catalog, mbm.com is identified as a ransomware victim linked to the threat actor interlock. The listing reflects the entity's association with this actor within indexed threat activity and does not confirm specific incident details such as stolen data, affected systems, or ransom terms. This entry serves as a structured reference for researchers and defenders monitoring ransomware-related indicators tied to interlock and affected entities in Canadian IT environments. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com is an IT sector entity based in Canada, operating within digital infrastructure and technology services. The entity was cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing reflects the cybersecurity intelligence assessment linking the entity to a ransomware incident profile tied to interlock. No specific breach details, stolen data, ransom terms, or confirmed incident specifics are included, as only the entity classification and actor association are provided. The entry supports threat-intelligence monitoring, sector-focused analysis, and structured indexing of ransomware victim relationships. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects inclusion within a structured repository of threat-related entity profiles intended to support security awareness and intelligence workflows. No specific incident details, breach confirmations, stolen data, or financial impact are provided here to maintain factual neutrality. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents involving this actor. The description remains factual and neutral, focusing on the entity's classification and associated threat context without elaborating on unverified incident details. Such listings support threat analysts in tracking adversary activity and victim profiles across sectors. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector and headquartered in Canada. The company provides technology-focused services and solutions relevant to its industry classification. It has been formally cataloged within the threat-intelligence index under the designation ransomware victim, specifically linked to the threat actor interlock. This listing reflects the security event classification without disclosing unverified incident details. The record serves as a reference point for cybersecurity professionals monitoring adversary activity and victim impact across digital infrastructure. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is associated with the threat actor interlock in this threat-intelligence index. The entity represents a ransomware victim entry, providing contextual intelligence for security professionals monitoring cyber incidents across sectors and geographies. Catalog information reflects the observed relationship between mbm.com and interlock without confirming specific breach details, operational impact, or data exposure. This listing supports threat-hunting and defensive awareness within the Canadian IT landscape. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector, based in Canada. The organization is cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This entry documents the relationship between the entity and the identified threat actor within the ransomware incident landscape. The description remains factual and neutral, focusing on the entity's classification and associated threat context without elaborating on unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32872 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is identified as a ransomware victim within the threat-intelligence index. The entity is associated with threat actor interlock, with operational context linked to Canada. Catalog records describe the organization neutrally based on its sector, geographic association, and the threat actor connection. No specific incident details such as data stolen, records impacted, ransom terms, or confirmed breach evidence are included in this description. This listing reflects the entity's status as a ransomware victim tied to interlock in the intelligence index. |
||||||
| Ransomware | MBM Intellectual Property Law id32873 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada, providing business and service-oriented offerings. The entity is documented within this threat-intelligence index specifically as a ransomware victim associated with the threat actor interlock. This listing type indicates a security incident where interlock demonstrated capability or activity targeting organizations within this sector and geographic region. The entry serves as a reference point for analysts tracking threat actor behavior, victim profiles, and sector-specific ransomware campaigns. No further incident details, such as data exfiltration specifics or confirmed breach metrics, are included per strict factual reporting guidelines. |
||||||
| Ransomware | MBM Intellectual Property Law id32878 View details | Canada | IT | — | ||
|
mbm.com is a Canadian services-sector entity operating within the broader professional and service industries. The domain represents an organization whose infrastructure was identified within a threat-intelligence index as a ransomware victim. This listing type indicates that the entity was associated with malicious activity targeting its systems, with the specific threat actor or source attributed to interlock. The entry provides neutral catalog context for security analysts tracking ransomware incidents across sectors and geographies. It documents the relationship between the entity and the identified threat actor without disclosing unverified technical or operational specifics of the incident. |
||||||
| Ransomware | MBM Intellectual Property Law id32891 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada, providing business and professional services. The entity is documented within this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This classification reflects the cybersecurity context in which the organization was identified, contributing to broader monitoring of potential attack patterns and actor methodologies. The description remains neutral and factual, focusing on the entity's profile and its verified association without disclosing unconfirmed incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id32891 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the threat actor interlock. This listing type indicates the entity's association with a cyber threat actor identified as interlock, contributing contextual intelligence for security professionals monitoring ransomware campaigns across IT environments. The description remains neutral, focusing solely on the indexed association without elaborating on unverified incident details. This entry supports threat-intelligence workflows by documenting victim-actor relationships for sector-specific risk assessment. |
||||||
| Ransomware | MBM Intellectual Property Law id32892 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The description reflects the entity's classification and contextual threat linkage without disclosing unverified incident details, such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This entry provides a neutral, authoritative overview for analysts monitoring ransomware activity and threat actor repercussions across service-sector organizations. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records concerning cybersecurity incidents targeting IT infrastructure. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly attributed to this listing. mbm.com serves as a reference point for monitoring threat actor interlock activity within Canadian IT environments. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com is a Canadian organization operating within the Services sector, providing business and professional services to clients. It has been formally cataloged within this threat-intelligence index under the listing type ransomware victim. The entity is associated with threat actor interlock, indicating a cyber incident where this adversary was identified in relation to the organization. This entry provides neutral, factual context for threat researchers and security professionals monitoring ransomware activity across sectors and geographies. The description avoids speculation regarding breach details, data handling, or financial impact, focusing solely on the verified listing and associated threat actor. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is associated with the threat actor interlock in the ransomware victim index. The entity represents a Canadian organization whose security posture and incident history are cataloged for threat-intelligence analysis. This listing type identifies mbm.com as a ransomware victim connected to interlock, providing context for cybersecurity professionals monitoring adversary activity and potential impact across IT infrastructure. The description remains factual and neutral, focusing on the entity's classification and associated threat actor without elaborating on unverified breach specifics. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity provides professional and service-oriented offerings, though specific business functions remain detailed within the threat intelligence index context. This listing identifies mbm.com as a ransomware victim associated with the threat actor interlock. The designation reflects its inclusion in cyber threat datasets where entity exposure to ransomware activity is cataloged for analytical and defensive intelligence purposes. No further incident specifics, such as breach confirmation details, data exposure metrics, or ransom terms, are asserted within this description. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is based in Canada. The entity represents a business organization that has been identified within our threat-intelligence catalog as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat activity in our indexed records. The description focuses on the verified relationship between mbm.com and interlock without disclosing unconfirmed incident details. Our catalog maintains this association for threat researchers and security professionals monitoring ransomware incidents across sectors and geographies. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada, providing business and service-oriented offerings. This entity is documented within the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The record reflects the cybersecurity context surrounding this organization's inclusion in the index without disclosing specific technical or operational details of any alleged incident. Neutral cataloging ensures transparency for researchers and defenders monitoring threat actor activity and victim profiles across sectors and geographies. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com is a company operating within the Services sector based in Canada. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records correlating the organization with this specific cyber threat activity. The description focuses on the entity's sector, geographic location, and its classification within the ransomware victim index without disclosing unverified incident details. Its listing serves to inform stakeholders of the observed threat-actor association for risk assessment and monitoring purposes. |
||||||
| Ransomware | MBM Intellectual Property Law id32894 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity provides professional services aligned with its sector classification, though specific operational details remain limited to its categorization within this threat-intelligence catalog. As cataloged in the ransomware victim index, mbm.com is associated with the threat actor interlock, reflecting a documented security event linkage for analytical purposes. This listing serves to inform defenders and security researchers about the entity's exposure profile within the identified threat landscape. The description adheres strictly to verified index data without extrapolating incident specifics. |
||||||
| Ransomware | MBM Intellectual Property Law id32919 View details | Canada | IT | — | ||
|
bm.com operates within the IT sector and is associated with Canada as its country of origin. The entity is documented within this threat-intelligence index as a ransomware victim connected to the threat actor interlock. Catalog entries of this nature compile verified indicators and contextual metadata relevant to cyber incident tracking and defense intelligence. This listing reflects the observed relationship between the entity and the identified threat actor without disclosing unconfirmed breach details or operational specifics. The record supports security professionals in monitoring adversary activity and assessing potential exposure across targeted sectors. |
||||||
| Ransomware | MBM Intellectual Property Law id33102 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector based in Canada, providing technology-focused services and solutions to clients or users. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. This classification reflects the cybersecurity context in which the entity appears in aggregated threat data. The entry serves to inform security professionals about potential exposure vectors and adversary connections relevant to monitoring and defense strategies in the technology sector. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id33103 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada, where it provides technology-focused services or infrastructure relevant to enterprise digital environments. Within the threat-intelligence index, mbm.com is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cyber incidents and adversary activity. The description avoids speculative claims regarding breach details, data exposure, financial impact, or specific attack mechanics. It neutrally records the association with interlock as the attributed threat actor for this ransomware victim entry. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector and associated with the country Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This entry provides context for security teams assessing indicators tied to the organization, its sector exposure, and the actor relationship. The description remains factual and neutral, avoiding speculation about breach details, stolen data, ransom terms, or confirmed incident specifics. mbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbm.com operates within the Services sector and is headquartered in Canada. The entity provides professional services aligned with its industry classification, serving clients and stakeholders within that domain. According to the threat-intelligence index, mbm.com was formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in cyber threat records concerning malicious activity targeting service-oriented organizations. The description remains factual and neutral, focusing solely on the entity's sector, location, and verified association without extrapolating incident details. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within the threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects the intelligence assessment associating mbm.com with this actor's activity profile. No additional incident specifics, such as data stolen, record counts, ransom amounts, or breach confirmation details, are provided in this listing. The entry serves as a neutral reference point for threat analysts monitoring ransomware-related entities and associated actors. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, with the associated threat actor or source identified as interlock. The description focuses on the entity's classification and contextual linkage to the threat actor without asserting unverified incident details such as stolen data, ransom demands, or confirmed breach specifics. This entry provides neutral, authoritative catalog context for threat-intelligence researchers and security professionals monitoring ransomware activity across IT sectors in Canadian jurisdictions. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbeam.com operates within the IT sector and is associated with Canada. The entity functions as a technology services provider, offering infrastructure, software solutions, or managed IT services typical of organizations in this sector. According to the threat-intelligence index, mbeam.com has been categorized as a ransomware victim connected to the threat actor interlock. This listing reflects the entity's inclusion in the ransomware incident dataset tied to interlock's activity. The description avoids speculative claims regarding breach details, data exposure, or financial impact, focusing solely on the verified classification within the intelligence catalog. |
||||||
| Ransomware | MBM Intellectual Property Law id33104 View details | Canada | IT | — | ||
|
mbeam.com operates within the IT sector and is associated with Canada. The entity functions as a technology services provider, offering infrastructure, software solutions, or managed IT services typical of organizations in this sector. According to the threat-intelligence index, mbeam.com has been categorized as a ransomware victim connected to the threat actor interlock. This listing reflects the entity's inclusion in the ransomware incident dataset tied to interlock's activity. The description avoids speculative claims regarding breach details, data exposure, or financial impact, focusing solely on the verified classification within the intelligence catalog. |
||||||
| Ransomware | MBM Intellectual Property Law id32901 View details | Canada | IT | — | ||
|
mbm.com is an entity operating within the IT sector, registered within Canada. The organization's specific services and offerings are not publicly detailed in available threat-intelligence records; the catalog entry contextualizes its identity within the IT landscape. This listing type identifies mbm.com as a ransomware victim associated with the threat actor interlock. The description adheres strictly to verified indexing metadata without extrapolating on unconfirmed incident details, data compromises, or operational specifics. Neutral treatment ensures factual accuracy while fulfilling catalog requirements for threat-intelligence indexing. |
||||||
| Ransomware | MBM Intellectual Property Law id32901 View details | Canada | IT | — | ||
|
MBM is an Intellectual Property (IP) law firm with offices across Canada. MBM's professionals are dedicated solely to IP law, including staff that holds Ph.Ds in a multitude of disciplines including: molecular biology, clinical & organic chemistry, neuroscience, electrical, mechanical and software engineering fields, in addition to highly experienced IP litigators. Their services include obtaining and enforcing all intellectual property rights (patents, trademarks, industrial designs, copyrights, trade secrets), as well as providing strategic IP advice |
||||||
| Ransomware | City of St Paul id21695 View details | United States | Public Sector | leaked | ||
|
The government of the city of Saint Paul, Minnesota, including its representatives and employees, is extremely careless and irresponsible about the security of their city, because of this, a large part of the infrastructure was damaged, brought a lot of losses and damage! Including in the worst position were residents whose data was compromised in the internet! Saint Paul, Minnesota, population is about 310,992 people. The city is part of the Minneapolis - Saint Paul metropolitan area. |
||||||
| Ransomware | City of St Paul id32571 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing official government functions and services under its domain identity. The entity represents a public administration organization whose infrastructure and digital systems fall within the scope of public sector cybersecurity monitoring. Within the threat-intelligence index, stpaul.gov is specifically cataloged as a ransomware victim linked to the interlock threat actor group. This classification reflects the association between the entity and the identified threat actor without disclosing unverified incident details such as breach confirmation, data exfiltration specifics, or ransom terms. The listing serves to document this security event context for researchers and defenders tracking ransomware activity across public sector entities. |
||||||
| Ransomware | City of St Paul id32571 View details | United States | Public Sector | — | ||
|
The government of the city of Saint Paul, Minnesota, including its representatives and employees, is extremely careless and irresponsible about the security of their city, because of this, a large part of the infrastructure was damaged, brought a lot of losses and damage! Including in the worst position were residents whose data was compromised in the internet! Saint Paul, Minnesota, population is about 310,992 people. The city is part of the Minneapolis - Saint Paul metropolitan area. |
||||||
| Ransomware | City of St Paul id32677 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and digital infrastructure domains, providing official resources and online services aligned with public administration functions. As a ransomware victim listed in this threat-intelligence index, it is associated with the threat actor interlock, reflecting a cybersecurity incident within the public sector context. This entry documents the entity’s classification without confirming specific breach details, data exposure, or operational impact. The listing serves to contextualize the relationship between stpaul.gov and interlock within broader ransomware threat monitoring frameworks. Neutral reporting ensures factual alignment with verified intelligence sources while maintaining authoritative coverage of the incident profile. |
||||||
| Ransomware | City of St Paul id32678 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital infrastructure and administrative resources for its designated jurisdiction. Its domain functions as a representative channel for public records, citizen services, and institutional communications within the broader governmental framework. This entity has been formally cataloged within the threat-intelligence index under the classification of ransomware victim. The association identifies interlock as the linked threat actor or source connected to this listing. This description reflects the verified indexing status without asserting unconfirmed breach details. The inclusion emphasizes the entity's sector context and the specific threat actor attribution within the intelligence framework. |
||||||
| Ransomware | City of St Paul id32678 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings, reflecting its classification within the public sector domain. The domain functions as an official government presence, providing public-facing services aligned with public sector infrastructure responsibilities. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim, with the associated threat actor and source identified as interlock. This listing serves to document the cybersecurity impact and attribution context for monitoring and defense purposes. The designation remains neutral, reflecting the index's role in tracking threat actor relationships to affected organizations without inventing incident details. |
||||||
| Ransomware | City of St Paul id32679 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing governmental services and infrastructure functions consistent with a municipal or public administrative domain. As a ransomware victim indexed by interlock, this entry documents the entity's association with the specified threat actor within the threat-intelligence catalog. The description remains neutral and factual, focusing on the entity's sector classification, geographic context, and the nature of its listing without attributing unverified incident details. This record supports researchers and defenders in understanding public-sector exposure patterns linked to interlock activity. |
||||||
| Ransomware | City of St Paul id32683 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions. As a public sector entity, it represents critical infrastructure requiring robust cybersecurity defenses and incident response protocols. This listing identifies stpaul.gov specifically as a ransomware victim within the threat-intelligence index, linked to the interlock threat actor. The classification reflects observed security event associations without disclosing unverified breach details, operational impacts, or unconfirmed incident specifics. This entry serves threat analysts seeking contextual understanding of public sector exposure patterns and associated adversary activity. |
||||||
| Ransomware | City of St Paul id32683 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government or civic services, providing web-based resources and public-facing offerings for its community and stakeholders. Its inclusion in this threat-intelligence catalog reflects documented ransomware-victim classification linked to the interlock threat actor. The listing type identifies stpaul.gov as a ransomware victim associated with interlock within the index framework. This description avoids speculative claims regarding stolen data, ransom terms, or confirmed breach details, maintaining factual neutrality based on the entity profile and attribution provided. |
||||||
| Ransomware | City of St Paul id32691 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative functions. Its domain and associated infrastructure fall under the public sector classification, reflecting typical government service offerings including digital portals, citizen resources, and operational support functions. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim. The listing type explicitly associates this entity with the threat actor interlock, indicating its inclusion in intelligence records tied to that actor's activity. This description relies solely on the provided entity classification, sector context, geographic location, and the ransomware victim association with interlock without inventing breach details. |
||||||
| Ransomware | City of St Paul id32693 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector domain associated with government or public-service functions, providing digital services and infrastructure relevant to civic operations. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing reflects observed threat-intelligence data without confirming specific incident details such as data exfiltration scope, ransom demands, or breach validation. This entry supports security teams monitoring public-sector exposure to ransomware campaigns originating from interlock. The categorization emphasizes sector context, geographic origin, and the association with the identified threat actor for analytical and defensive use. |
||||||
| Ransomware | City of St Paul id32693 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing governmental services and infrastructure functions typical of municipal or public administration platforms. As cataloged in this threat-intelligence index, the entity is classified specifically as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between this domain and malicious activity without disclosing unconfirmed incident details, stolen data categories, or operational specifics. This description maintains a neutral, authoritative stance suitable for security professionals monitoring public-sector exposure and threat actor targeting patterns. The inclusion reflects verified intelligence mapping the entity to the interlock campaign within the US public sector landscape. |
||||||
| Ransomware | City of St Paul id32694 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings, serving regional public functions and community needs. As a listed ransomware victim in this threat-intelligence index, its inclusion reflects documented threat activity targeting public sector infrastructure under the interlock threat actor profile. The catalog entry provides neutral context for cybersecurity professionals monitoring ransomware campaigns, entity exposure, and associated adversary activity across government sectors. No specific breach details, data loss metrics, or confirmed incident particulars are included to maintain factual accuracy and avoid speculation regarding this entity's security posture or historical events. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with a United States public sector organization, providing governmental services and administrative functions. Within the threat-intelligence index, this entity is formally classified as a ransomware victim. The association connects it to the threat actor interlock, a known adversary group operating within cyber threat landscapes. This listing serves to document the exposure profile and incident linkage for security researchers, defenders, and sector-specific monitoring frameworks. The entry reflects verified intelligence mapping without disclosing unconfirmed breach details or operational specifics. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure. As a public sector entity, it represents administrative and civic functions typically targeted by cyber threats. This listing identifies stpaul.gov as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence monitoring for public-sector exposure. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly attributable to an official first-party disclosure from the entity itself. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing government services and administrative functions. Its role encompasses public sector offerings typical of municipal or regional government portals, though specific operational details remain limited to the threat-intelligence index classification. Within this catalog, the entity is formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects inclusion in a cyber-threat-intelligence database documenting adversary activity and affected entities without asserting unverified breach details. The record serves as a reference point for monitoring public-sector exposure to interlock-associated ransomware campaigns. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a public sector entity located within the United States, providing governmental services and digital infrastructure functions. The domain represents an official government resource within the public sector framework. Within the threat-intelligence index, this entity is formally cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects its documented association with interlock in cybersecurity threat reporting. The description remains neutral, focusing solely on the entity's classification and its attributed threat relationship without elaborating on unverified incident details. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States Public Sector entity operating within government services and digital infrastructure frameworks, providing official online functions and public-facing resources aligned with municipal or state administrative responsibilities. Its inclusion in this threat-intelligence index as a ransomware victim associates the domain with the threat actor interlock, reflecting observed cyber activity targeting public-sector environments. This listing serves threat analysts to contextualize potential compromise vectors within US government infrastructure sectors without disclosing unverified incident specifics such as data exfiltration details or financial impact. The entry emphasizes the entity's sector classification, geographic origin, and its documented relationship to interlock within the ransomware victim catalog. |
||||||
| Ransomware | City of St Paul id32697 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital infrastructure and public-facing offerings for community and administrative functions. The domain represents a governmental institution whose systems were identified within threat-intelligence indexing as a ransomware victim. This listing type indicates documented association with the threat actor interlock, reflecting cyber incident intelligence compiled for security analysis and monitoring purposes. The description adheres strictly to verified categorical data: entity name, geographic origin, organizational sector, and the ransomware victim classification linked to interlock. No unverified details regarding breach scope, data handling, or financial impact are included. |
||||||
| Ransomware | City of St Paul id32698 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector web presence associated with governmental or civic services. Public sector entities such as this typically provide official resources, administrative services, and information portals for community stakeholders. Within threat-intelligence indexing, stpaul.gov is cataloged as a ransomware victim connected to the interlock threat actor. This listing reflects the entity's association with interlock within cybersecurity intelligence datasets, without confirming specific incident details. The designation serves to document exposure context for researchers, defenders, and security professionals monitoring public-sector ransomware activity. |
||||||
| Ransomware | City of St Paul id32698 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital functions and public resources for its jurisdiction. As categorized within this threat-intelligence index, it is specifically listed as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity records documenting malicious activity targeting public infrastructure. The description adheres to neutral, encyclopedic standards without speculating on unconfirmed incident details such as data exfiltration scope or operational impact. The listing serves to inform security professionals and stakeholders about exposure patterns within public sector environments. |
||||||
| Ransomware | City of St Paul id32701 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a government or public service entity. Its role encompasses typical public sector offerings such as administrative services, digital infrastructure, and citizen-facing resources. Within the threat-intelligence index, stpaul.gov is cataloged specifically as a ransomware victim linked to the interlock threat actor. This listing type indicates documented exposure or impact related to ransomware activity attributed to interlock. The entry provides neutral context for researchers and defenders analyzing public sector cybersecurity incidents and associated threat actor footprints. |
||||||
| Ransomware | City of St Paul id32701 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within municipal or governmental services, providing official online functions and public-facing resources for its jurisdiction. As a public sector organization, it handles citizen-facing services, administrative operations, and digital infrastructure typical of government systems. This listing identifies stpaul.gov as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description reflects the entity's sector, geographic context, and the assessed relationship to the specified threat actor without disclosing unverified technical or operational details. This catalog entry supports threat-aware analysis of public-sector exposure linked to interlock activity. |
||||||
| Ransomware | City of St Paul id32702 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, representing a government or public service domain entity. Its domain functions as an official online presence for public administrative services, communications, and sector-specific offerings. Within the threat-intelligence index, this entity is specifically listed as a ransomware victim associated with the threat actor interlock. This classification contributes contextual intelligence for security analysts tracking public sector exposure to coordinated cyber threats. The entry provides neutral catalog information for monitoring purposes without disclosing unverified incident details. |
||||||
| Ransomware | City of St Paul id32702 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and online offerings, reflecting the broader public administration domain. As cataloged in this threat-intelligence index, it is identified as a ransomware victim associated with the threat actor interlock. The listing type indicates that the entity was documented within the ransomware incident profile linked to interlock, providing context for threat researchers and security stakeholders monitoring public-sector exposure. This description maintains factual neutrality regarding the nature of the incident while preserving the indexed association. The entry supports analysis of ransomware targeting public-sector environments across the United States. |
||||||
| Ransomware | City of St Paul id32703 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. It serves as a catalog entry within a threat-intelligence index documenting cybersecurity incidents. The listing identifies stpaul.gov specifically as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's inclusion in intelligence records concerning malicious cyber activity targeting public infrastructure. The description remains factual and neutral, focusing solely on the indexed classification without elaborating on unverified technical details or confirmed breach specifics. |
||||||
| Ransomware | City of St Paul id32703 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity offering web-based services and administrative functions. As cataloged in the threat-intelligence index, this listing type identifies stpaul.gov as a ransomware victim linked to the threat actor interlock. The entry provides context for monitoring public-sector exposure to cyber threats, emphasizing the importance of sector-specific defense and incident tracking within threat actor frameworks. This description remains factual and neutral, focusing solely on the entity's classification and its association without speculating on breach details or operational impacts. |
||||||
| Ransomware | City of St Paul id32708 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related digital infrastructure. Its domain serves governmental functions and represents a public-sector organization within the United States. In the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects its classification within the ransomware victim category for interlock-linked activity. The description remains factual and neutral, avoiding unverified claims regarding breach details, data exposure, or financial impact. |
||||||
| Ransomware | City of St Paul id32708 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions typical of municipal or public administration domains. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat-intelligence linkages without confirming specific breach details, data exfiltration scope, or operational impact. This designation supports security teams in tracking public-sector exposure patterns and correlating ransomware activity across government entities. The record emphasizes neutral monitoring and contextual awareness for defenders assessing risks within critical infrastructure sectors. |
||||||
| Ransomware | City of St Paul id32710 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings, commonly associated with municipal or regional public functions. As a ransomware victim in the threat-intelligence index, it is documented under the associated threat actor interlock, reflecting cybersecurity exposure within the public sector context. This listing serves to catalog the entity's relationship to the identified threat actor without disclosing unverified incident details. The record supports threat-intelligence analysis for monitoring public-sector vulnerabilities and adversary activity across government infrastructure. |
||||||
| Ransomware | City of St Paul id32710 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector web presence associated with government services and administrative offerings. Its inclusion in the threat-intelligence index identifies it as a ransomware victim connected to the interlock threat actor group. This listing reflects observed cyber-threat intelligence data concerning entity exposure and adversary activity within public infrastructure sectors. No specific breach details, data exfiltration specifics, or financial impact are asserted here, maintaining neutrality and factual restraint. The catalog entry serves to document this association for security professionals monitoring ransomware campaigns against public-sector entities. |
||||||
| Ransomware | City of St Paul id32711 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing government or public service operations and offerings. As cataloged in this threat-intelligence index under the ransomware victim listing type, it is linked to the interlock threat actor. Public sector entities like stpaul.gov are critical infrastructure components requiring vigilant monitoring for cyber threats, with ransomware incidents posing significant operational and reputational risks. This entry reflects the association between the entity and interlock within the ransomware victim classification. No specific breach details, data loss metrics, or ransom terms are included per strict factual constraints. |
||||||
| Ransomware | City of St Paul id32711 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a public sector entity within the United States, providing government-related services and digital infrastructure. The domain functions within the public administration sector, supporting official functions and citizen-facing services typical of government domains. Within threat-intelligence indexing frameworks, this entity is specifically cataloged as a ransomware victim linked to the interlock threat actor group. This listing type identifies the domain's association with malicious activity targeting public infrastructure. The entry reflects verified intelligence linking stpaul.gov to interlock's ransomware campaigns without disclosing unconfirmed technical details or operational specifics. |
||||||
| Ransomware | City of St Paul id32712 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative functions. Public sector organizations such as this provide essential civic, operational, and service-delivery infrastructure across the nation. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records tied to this actor's activity and related ransomware targeting patterns. The description remains factual and neutral, focusing on the entity's sector, geographic context, and the nature of its listing without adding unverified incident details. |
||||||
| Ransomware | City of St Paul id32716 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and digital infrastructure domains, providing online resources, administrative functions, and public-facing services for community and organizational needs. The domain represents a government-linked presence in the public sector, with typical offerings including information dissemination, service portals, and institutional communications. Within the threat-intelligence index catalog, this entity is formally listed as a ransomware victim associated with the interlock threat actor group. This designation reflects its inclusion in cyber threat intelligence records for monitoring public-sector exposure and adversary activity patterns. The entry provides neutral context for security professionals assessing ransomware incidents and threat actor relationships across government sectors. |
||||||
| Ransomware | City of St Paul id32716 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and digital infrastructure domains. Its domain functions as an official or representative public institution, providing sector-specific resources and services aligned with public administration objectives. Within the threat-intelligence catalog, stpaul.gov is listed as a ransomware victim associated with the interlock threat actor. This classification reflects its inclusion in intelligence records documenting cyber incidents affecting public-sector environments and entities under active threat monitoring. The entry provides neutral context for researchers and defenders assessing ransomware exposure across US public-sector assets. |
||||||
| Ransomware | City of St Paul id32716 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital infrastructure and public-facing offerings for community and administrative functions. The domain represents a government service presence under the US public sector classification. Within this threat-intelligence index, stpaul.gov is formally cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cyber incidents linked to interlock activity. The description remains factual and neutral, focusing on sector context, geographic origin, and the specific association without extrapolating unverified incident details. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing governmental services and administrative functions. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented in relation to the threat actor interlock. The listing type identifies the domain's status within the ransomware incident landscape for public sector organizations. This entry serves to catalog the association neutrally, reflecting the threat actor attribution without disclosing unconfirmed incident details or operational specifics. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government or civic services, providing digital infrastructure and online services for public administration and citizen engagement. As a public sector organization, it falls within a critical infrastructure category where cyber incidents carry heightened national and operational significance. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in intelligence records tied to interlock activity without confirming specific breach details, data exposure, or operational impact. The entry supports threat-mapping, sector risk analysis, and defensive awareness for public-sector environments. |
||||||