Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 71 | Onion service | Up checked 2h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 2h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 2h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 2h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 2h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 63 | Onion service | Up checked 2h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 65 | Onion service | Up checked 2h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 2h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 61 | Onion service | Up checked 2h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 2h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 2h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 60 | Onion service | Up checked 2h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 55 | Onion service | Up checked 2h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 57 | Onion service | Up checked 2h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 2h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 2h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 2h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 2h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 2h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 2h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 2h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 2h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Down checked 2h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 62 | Onion service | Down checked 2h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 2h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 2h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 2h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 2h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 2h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 2h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 2h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 2h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 2h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 2h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 2h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 2h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 2h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 2h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 2h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 2h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 29 | Onion service | Down checked 2h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 31 | Onion service | Down checked 2h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 2h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 2h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 2h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 28 | Onion service | Down checked 2h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 2h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 2h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 25 | Onion service | Down checked 2h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 22 | Onion service | Down checked 2h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 2h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 2h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 2h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 2h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 2h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 2h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 2h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 2h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 2h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 2h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 2h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 2h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 8 | Onion service | Down checked 2h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 2h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 2h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 2h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 2h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 2h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 2h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 13901–14000 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and digital infrastructure domains. Its domain represents an official or affiliated public institution whose online presence and systems fall under the public sector classification. Within the threat-intelligence index, the entity is cataloged specifically as a ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity community's documentation of the entity's relationship to this threat actor within the ransomware incident context. The description remains neutral and factual, avoiding speculation regarding breach details or recovery specifics. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity providing government services and digital infrastructure functions. Its domain operates within the public administration and municipal services sector, supporting official organizational operations. This listing identifies stpaul.gov as a ransomware victim associated with the threat actor interlock. The entry reflects threat-intelligence indexing without confirming specific breach details, data exfiltration, or operational impact. Context includes the entity's sector, geographic location, and the attributed threat actor for catalog purposes. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a public sector domain based in the United States, representing government or public-facing services and administrative functions within the broader public sector domain. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim, with the associated threat actor or source identified as interlock. This listing type indicates the domain's documented connection to a ransomware-related security event within the indexed dataset. The description remains factual and neutral, focusing on the entity's classification, geographic context, sector alignment, and the verified association with the interlock threat actor without elaborating on unconfirmed incident details. This entry supports threat-intelligence professionals analyzing public sector exposure to ransomware campaigns. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings, providing digital infrastructure and public-facing resources for community and organizational needs. Within the threat-intelligence catalog, this domain is classified as a ransomware victim associated with the interlock threat actor. The listing reflects observed security event correlation without disclosing unverified incident details such as stolen data, ransom terms, or specific breach confirmation. This entry supports cyber threat monitoring for public sector entities in the United States and aids analysts tracking ransomware campaigns linked to interlock. The description remains neutral and factual per catalog standards. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, representing a government domain providing official services and administrative functions. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event correlations without disclosing confirmed breach details, data exfiltration specifics, or financial impact. This entry serves to document the relationship between public sector infrastructure and identified cyber threats for defense and intelligence purposes. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within governmental or civic services, providing official digital infrastructure and public-facing services. As a public sector organization, its security posture and digital exposure are closely monitored within threat intelligence frameworks. This listing type identifies stpaul.gov as a ransomware victim linked to the interlock threat actor group. The entry reflects documented intelligence associating the entity with this specific threat actor within cybersecurity databases. No incident specifics such as breach confirmation details, data exfiltration scope, or financial impact are included per strict factual reporting guidelines. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing governmental services and resources for its community. The entity has been cataloged as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This designation reflects the cybersecurity event where interlock activity impacted the organization's digital infrastructure. The listing type identifies stpaul.gov as a ransomware victim associated with interlock, contributing critical context for threat analysts tracking public sector security incidents and evolving cyber threats. |
||||||
| Ransomware | City of St Paul id32718 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity offering administrative, informational, or operational services online. Within the threat-intelligence index catalog, this entity is formally listed as a ransomware victim, with the associated threat actor or source identified as interlock. This classification reflects the entity's documented relationship to this specific cyber threat actor within the index's ransomware incident tracking framework. The entry provides contextual metadata for analysts monitoring public-sector cybersecurity risks and threat actor activity across the US. It neutrally states that stpaul.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of St Paul id32719 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing digital infrastructure and administrative offerings for community and public functions. As categorized within this threat-intelligence index, it is formally listed as a ransomware victim linked to the interlock threat actor. This designation reflects the entity's inclusion in cybersecurity threat databases where ransomware incidents involving public sector organizations are documented and analyzed for defensive intelligence. The entry serves to inform security professionals and stakeholders about potential attack vectors and associated threat activity targeting this specific domain and sector. |
||||||
| Ransomware | City of St Paul id32719 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity providing governmental services, digital infrastructure, and administrative functions within the public sector. As a domain associated with this listing type, it represents a ransomware victim identified within the threat-intelligence index. The entity operates within the US government context, reflecting vulnerabilities relevant to public infrastructure cybersecurity assessments. This entry documents the association with threat actor interlock without disclosing confirmed breach details or speculative claims. The catalog description adheres to neutral, authoritative reporting standards for threat-intelligence indexing. |
||||||
| Ransomware | City of St Paul id32720 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital services and resources for its designated community. Its domain functions as a representative public institution within the US Public Sector landscape, contributing to governmental operations and citizen-facing services. According to the threat-intelligence index catalog, this entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity intelligence records documenting attack patterns and actor-entity relationships. The entry provides neutral context for researchers analyzing ransomware impacts across public infrastructure. |
||||||
| Ransomware | City of St Paul id32721 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing government or public service operations. The domain serves as the primary identifier within threat-intelligence indexing for entities impacted by malicious cyber activity. In this catalog listing, stpaul.gov is formally categorized as a ransomware victim, with the associated threat actor and source designated as interlock. This classification reflects the entity's documented presence within threat-actor attribution frameworks and ransomware incident databases. The entry provides neutral context for researchers and defenders monitoring public-sector exposure to coordinated cyber threats. |
||||||
| Ransomware | City of St Paul id32722 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a United States public sector entity, providing government-related services and digital infrastructure. Its classification within this threat-intelligence index reflects its status as a ransomware victim linked to the interlock threat actor. Public sector entities like stpaul.gov are frequent targets due to critical operational continuity requirements and complex network environments. This listing documents the association neutrally without disclosing unverified incident details, preserving factual integrity for cybersecurity professionals. The entry serves catalog and intelligence purposes within the threat-intelligence framework. |
||||||
| Ransomware | City of St Paul id32723 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the public sector and United States government context, representing a service or organizational presence within that sector. As cataloged in this threat-intelligence index, it is listed as a ransomware victim connected to the interlock threat actor. The entry contributes contextual intelligence for analysts tracking public-sector cybersecurity events, ransomware targeting patterns, and entity exposure within national security monitoring frameworks. This description avoids inventing unconfirmed incident details such as data stolen, records compromised, ransom demands, or precise breach timelines. It neutrally records the indexed classification for operational and research use. |
||||||
| Ransomware | City of St Paul id32723 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions typical of municipal or public administration domains. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects observed security intelligence linking the domain to malicious activity targeting public-sector environments. The description maintains neutrality regarding specific incident details, avoiding assertions about confirmed breach scope, data handling, or operational impact. St paul government services remain subject to ongoing cyber defense scrutiny and threat monitoring. |
||||||
| Ransomware | City of St Paul id32725 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US Public Sector, representing a government or public-service entity whose online presence provides administrative, informational, and operational services to the public. Within the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type identifies the relationship between the domain, the sector context, and the associated cyber threat actor without disclosing unverified incident details. This entry supports threat-intelligence analysis by documenting the entity's sector classification, geographic origin, and its association with interlock as a ransomware victim. The description remains neutral and factual, focusing on the indexed classification rather than speculative claims about breach specifics. |
||||||
| Ransomware | City of St Paul id32726 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States Public Sector entity providing government-related digital services and online resources. Its domain operates within the public administration context, serving official functions and stakeholder access under the US federal and municipal framework. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity monitoring records tied to interlock activity in the Public Sector domain. No specific breach details, stolen data, ransom terms, or confirmed incident specifics are asserted here. |
||||||
| Ransomware | City of St Paul id32727 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity whose digital infrastructure and online presence are relevant to threat monitoring. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim. The association links the entity to interlock, a threat actor identified in cyber threat intelligence databases. This listing type indicates observed or attributed ransomware activity involving the domain within the public sector context. The description remains factual and neutral, reflecting the index classification without elaborating on unconfirmed incident details. This entry supports security teams in tracking ransomware exposure across US public sector environments. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government or public administrative services, providing domain-based services and resources aligned with public-sector functions. As cataloged in the threat-intelligence index, it is classified as a ransomware victim associated with threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to public-sector organizations. The description remains factual and neutral, focusing on the entity's sector, geographic context, and verified association with the specified threat actor without speculating on breach details. Such entries support threat-intelligence workflows for monitoring ransomware exposure across government and public infrastructure. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States Public Sector entity operating within government services and digital infrastructure. Its domain represents an official government presence focused on public administration and service delivery. Within the threat-intelligence index, this entity is specifically listed as a ransomware victim associated with the threat actor interlock. This classification reflects cybersecurity monitoring data identifying the organization's involvement in this threat actor's activity. The description remains factual and neutral regarding the nature of the incident, adhering to verified intelligence sources without speculative claims. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and civic infrastructure, providing official digital functions and public-facing resources for its jurisdiction. As categorized in this threat-intelligence index, it is listed as a ransomware victim associated with the interlock threat actor. This designation reflects its inclusion within cybersecurity intelligence records documenting adversary activity targeting public-sector environments. The entity's classification emphasizes the importance of monitoring ransomware threats across US government and public-sector networks, where coordinated defense and intelligence sharing are critical to operational resilience and stakeholder protection. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing digital infrastructure and administrative functions for its community. As a public sector organization, it handles sensitive operational data and government services, making it a potential target for cyber threats. This entity is cataloged within the threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. The inclusion reflects its documented relationship to this threat actor in cybersecurity records. No specific incident details, such as stolen data types or ransom amounts, are claimed in this description, maintaining factual neutrality. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. It functions as a domain representing official public functions, likely supporting citizen services, operational transparency, and public resource management within the US government framework. This listing type identifies stpaul.gov as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence indexing for cybersecurity monitoring and risk assessment. The description remains neutral regarding specific incident details such as data exposure scope, recovery status, or confirmed breach elements. This catalog entry provides structured context for analysts tracking public-sector ransomware incidents and affiliated threat actor activity across the US. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States government domain operating within the Public Sector, providing official digital services and infrastructure functions for its associated public institution. As a ransomware victim, this entity's inclusion in the threat-intelligence index reflects a security incident linked to the interlock threat actor group. The listing type identifies the relationship between the domain and the associated cyber threat without disclosing unverified technical details such as data stolen, ransom demands, or breach confirmation. This catalog entry serves threat analysts tracking Public Sector exposure and interlock activity across government infrastructure in the US. |
||||||
| Ransomware | City of St Paul id32730 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related civic offerings. Its domain functions as an official government presence, supporting public access to services, information, and administrative functions typical of US public sector infrastructure. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in ransomware-related intelligence records tied to interlock activity in the US public sector context. The description remains neutral and avoids unsupported claims regarding breach details, stolen data, or financial impact. |
||||||
| Ransomware | City of St Paul id32731 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and digital infrastructure domains. Its domain represents an official or affiliated public-sector presence in the United States, associated with governmental functions and public service offerings. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim entity tied to the interlock threat actor. This listing reflects the entity's association with an active cyber threat campaign rather than confirmed breach details. The entry supports threat-intelligence research, sector-focused risk assessment, and monitoring of public-sector exposure to ransomware activity linked to interlock. |
||||||
| Ransomware | City of St Paul id32731 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related public-facing offerings. Its domain functions as an official organizational presence for a public institution, reflecting standard public sector digital infrastructure and service delivery activities. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in intelligence records connecting the entity to interlock activity without confirming specific breach details. The entry provides neutral context for researchers and defenders analyzing public-sector exposure and interlock-related threat patterns. |
||||||
| Ransomware | City of St Paul id32732 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity representing municipal or governmental services, with offerings centered on public administration, digital services, and civic infrastructure. Within the threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cyber incidents affecting public-sector organizations in the United States. The description remains factual and neutral, avoiding unsupported claims regarding breach scope, stolen information, financial impact, or operational details. The record serves to inform threat analysts and security professionals about ransomware exposure linked to interlock within this indexed context. |
||||||
| Ransomware | City of St Paul id32734 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a government-related entity providing public services and administrative functions. Within the threat-intelligence index, this listing identifies stpaul.gov as a ransomware victim connected to the interlock threat actor. The designation reflects observed cybersecurity events or indicators correlated to malicious activity targeting public infrastructure. This catalog entry documents the association without disclosing unverified incident details such as data exfiltration scope, ransom demands, or specific breach confirmation. The record serves to inform stakeholders about compromised public-sector assets and associated threat actor activity for monitoring and defense purposes. |
||||||
| Ransomware | City of St Paul id32734 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. Its domain and institutional profile align with public sector digital infrastructure, where cybersecurity resilience and incident transparency are critical. Within the threat-intelligence index, stpaul.gov is categorized as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in intelligence records linking public-sector entities to identified cyber threat activity. The description remains factual and neutral, focusing on sector classification, geographic context, and the specified association without alleging unconfirmed breach details. |
||||||
| Ransomware | City of St Paul id32734 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a United States public sector entity, providing government-related services and digital infrastructure within its jurisdiction. The domain functions within the public administration sector, supporting official functions and citizen-facing services typical of government institutions. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This classification reflects the cybersecurity event documented in the intelligence database without disclosing unverified technical or operational details. The entry serves to inform defenders and analysts about this incident's association with interlock within the public sector landscape. |
||||||
| Ransomware | City of St Paul id32734 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions. The domain represents a public administration entity whose cybersecurity posture is relevant within threat-intelligence frameworks. It has been cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing reflects the entity's association with this threat actor within the intelligence index, highlighting its role in tracking public sector security incidents. The description remains factual and neutral, focusing solely on the verified association without extrapolating unconfirmed details about the attack itself. |
||||||
| Ransomware | City of St Paul id32735 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a governmental or public service entity. Its primary functions typically encompass public records, administrative services, and community-facing government operations within its designated jurisdiction. Within the threat-intelligence index, stpaul.gov is formally cataloged as a ransomware victim linked to the interlock threat actor. This classification reflects documented cyber incidents where the entity was compromised by ransomware activity attributable to interlock. The entry serves to inform security analysts and stakeholders about this specific public sector exposure and its associated threat context. |
||||||
| Ransomware | City of St Paul id32735 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related civic offerings, reflecting its role in public administration and service delivery. The domain functions as an official government presence, supporting public information, services, and organizational communications consistent with US public sector infrastructure. Within this threat-intelligence index, stpaul.gov is cataloged as a ransomware victim linked to the interlock threat actor or source. This listing type identifies the entity’s relationship to the associated cyber threat without disclosing unconfirmed incident details, stolen data, financial impact, or specific breach evidence. The description maintains a neutral, encyclopedic tone for catalog and intelligence-index purposes. |
||||||
| Ransomware | City of St Paul id32735 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US Public Sector, representing government or public-service operations and the types of services it provides within that context. Within the threat-intelligence index, this entity is formally listed as a ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects the cybersecurity intelligence assessment linking the domain to ransomware activity under interlock attribution. The description remains factual and neutral, focusing on the entity's sector classification, geographic context, listing type, and attributed actor without adding unverified incident details. Such catalog entries support monitoring of public-sector exposure and threat actor progression. |
||||||
| Ransomware | City of St Paul id32735 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. Its domain functions as an official government resource, providing public-facing services typical of municipal or regional public administration within the sector. Within the threat-intelligence index catalog, this entity is formally listed as a ransomware victim associated with the interlock threat actor. This designation reflects its inclusion in threat-intelligence records documenting cybersecurity incidents affecting public sector infrastructure. The entry provides neutral context for researchers analyzing ransomware campaigns targeting government entities in the United States. |
||||||
| Ransomware | City of St Paul id32739 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public administration entity offering standard digital services and resources for citizens and stakeholders. Within the threat-intelligence index, this entity is specifically listed as a ransomware victim, with the associated threat actor and source identified as interlock. The classification reflects the cybersecurity impact observed in relation to this domain and its connection to the interlock threat actor's activity. This catalog entry documents the relationship neutrally for threat-intelligence purposes without disclosing unverified incident details. The listing type and source attribution provide structured context for analysts tracking ransomware campaigns targeting public sector infrastructure. |
||||||
| Ransomware | City of St Paul id32742 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a public sector entity based in the United States, providing governmental services and digital infrastructure functions typical of municipal or state administrative domains. Within threat-intelligence indexing frameworks, this domain is cataloged specifically as a ransomware victim associated with the interlock threat actor group. The listing type identifies the entity's involvement in a cyber incident pattern attributed to interlock, reflecting observed attack behaviors targeting public infrastructure. This description adheres to neutral reporting standards, focusing solely on the verified association without extrapolating unconfirmed incident details such as data exfiltration scope or operational impact. The classification underscores the importance of monitoring public-sector assets for evolving ransomware threats. |
||||||
| Ransomware | City of St Paul id32744 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing governmental services and digital infrastructure functions typical of municipal or public administration domains. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor interlock. The entry documents the observed relationship between stpaul.gov and interlock without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. This neutral record supports cybersecurity professionals in tracking ransomware exposure within public sector environments and monitoring threat actor activity across government-related domains. |
||||||
| Ransomware | City of St Paul id32748 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital offerings and administrative functions for its designated jurisdiction and stakeholders. As a public sector institution based in the US, it serves governmental purposes and maintains online resources aligned with public service delivery and transparency objectives. Within the threat-intelligence index, stpaul.gov is cataloged specifically as a ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to public-sector organizations. The description remains factual and neutral, noting the association without asserting unverified breach details, data impacts, or recovery specifics. |
||||||
| Ransomware | City of St Paul id32750 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital resources and administrative functions for its designated community. The domain represents a government presence focused on public services, information dissemination, and sector-specific operational support. Within threat-intelligence indexing frameworks, stpaul.gov is cataloged as a ransomware victim linked to the interlock threat actor. This classification reflects its inclusion in cybersecurity intelligence datasets documenting adversary activity against public sector infrastructure. The entry serves analysts tracking ransomware incidents, threat actor campaigns, and public sector exposure across the United States. |
||||||
| Ransomware | City of St Paul id32755 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government services and digital infrastructure functions typical of municipal or public administration domains. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, explicitly linked to the threat actor interlock. This designation reflects inclusion within a structured repository of observed cyber incidents targeting public-sector organizations. The description remains neutral and factual, focusing solely on the entity's classification and associated threat actor without extrapolating beyond verified index data. Such listings assist security teams in identifying exposure patterns and contextualizing ransomware activity within specific sectors and geographies. |
||||||
| Ransomware | City of St Paul id32756 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions. As a public sector entity, its systems represent critical infrastructure for community and governmental operations. This listing type identifies stpaul.gov as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. The description remains factual and neutral, focusing on the entity's classification and the verified association without disclosing unconfirmed incident details. This entry supports cybersecurity analysts tracking ransomware impacts across public sector environments. |
||||||
| Ransomware | City of St Paul id32757 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain representing a United States public sector organization, providing government-related services and administrative functions within its designated operational scope. As a public sector entity, it operates within government infrastructure, handling official services and digital resources for community and institutional stakeholders. This listing type identifies stpaul.gov within a threat-intelligence index as a ransomware victim linked to the interlock threat actor group. The association reflects cybersecurity event documentation relevant to public sector defense and threat tracking. This description remains factual and neutral, stating that stpaul.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of St Paul id32758 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing governmental services and digital infrastructure functions for community and administrative needs. As a designated ransomware victim in this threat-intelligence index, the entity is associated with the threat actor interlock. This listing reflects documented cyber incident correlations within public sector environments. The catalog entry serves to contextualize the entity's exposure profile and the specific adversary attribution without disclosing unverified technical details. Understanding such associations aids security professionals in threat modeling and defensive strategy development for public sector assets. |
||||||
| Ransomware | City of St Paul id32779 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector government entity operating within the offerings and services domain of local or municipal administration. Its domain functions as an official web presence for public records, services, communications, and sector-specific governmental functions. Within threat-intelligence indexing, stpaul.gov is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity intelligence datasets tracking public-sector exposure and associated adversary activity. The description remains factual and neutral regarding the nature of any incident, avoiding unverified claims about data handling, breach confirmation, or specific operational impacts. |
||||||
| Ransomware | City of St Paul id32780 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States Public Sector, providing government-related services and digital infrastructure. As a public sector entity, it represents a critical infrastructure component whose security posture is closely monitored by threat intelligence frameworks. This listing identifies stpaul.gov specifically as a ransomware victim linked to the interlock threat actor group. The designation reflects documented threat-intelligence indexing of this entity within the ransomware incident landscape. The entry serves to catalog the association neutrally without disclosing unverified incident details. This description adheres to factual reporting standards for threat-intelligence catalog entries. |
||||||
| Ransomware | City of St Paul id32780 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing government or public service operations. The entity is documented within the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This record catalogs the relationship between the domain, its sector classification, and the ransomware event attributed to interlock without disclosing unverified incident details. The description maintains neutrality and adheres to factual reporting standards for threat-intelligence indexing. |
||||||
| Ransomware | City of St Paul id32780 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, serving governmental functions and providing official services for its designated locality or administrative scope. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity targeting public-sector infrastructure, underscoring vulnerabilities within government digital environments. This entry contributes contextual intelligence for defenders monitoring ransomware campaigns and public-sector exposure. The designation remains neutral, documenting the association without asserting unverified breach details or operational specifics. |
||||||
| Ransomware | City of St Paul id32780 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a government or public institution providing official services and resources. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index, linked to the threat actor interlock. This listing type indicates documented intelligence connecting the domain to malicious activity targeting public infrastructure. The description adheres strictly to verified index metadata without extrapolating breach details, data compromises, or unconfirmed claims. It serves to inform analysts of the entity's classification, sector context, geographic origin, and associated threat actor profile for security monitoring and response planning. |
||||||
| Ransomware | City of St Paul id32780 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure functions. As a public sector entity, its security posture and availability are critical to service delivery and civic operations. This listing identifies stpaul.gov within the ransomware victim category of the threat-intelligence index, specifically associated with the threat actor interlock. The catalog entry reflects observed threat-intelligence linkages without confirming specific breach details, data exfiltration, or operational impact. It serves as a reference point for security professionals assessing public-sector ransomware exposure and associated adversary activity. |
||||||
| Ransomware | City of St Paul id32781 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public administration entity whose online presence provides official services, information, and resources for citizens and stakeholders. As a public sector organization, it operates within domains requiring stringent cybersecurity protocols and continuous threat monitoring. This listing type identifies stpaul.gov as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. The entry documents the association neutrally without disclosing unverified details regarding the incident, attack vector, or operational impact. This catalog description serves to contextualize the entity within broader cyber threat analysis frameworks for public sector defenders and intelligence researchers. |
||||||
| Ransomware | City of St Paul id32781 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US Public Sector, representing government or public service operations. Its role within the threat-intelligence index is documented as a ransomware victim linked to the interlock threat actor. The entity serves as a reference point for analyzing ransomware activity targeting public infrastructure in the United States. This listing type categorizes stpaul.gov within the scope of incidents attributed to interlock, providing contextual data for security professionals monitoring sector-specific cyber threats. No further incident specifics, such as breach confirmation details or operational impacts, are included per strict factual guidelines. |
||||||
| Ransomware | City of St Paul id32782 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US Public Sector, representing government or public service infrastructure. The entity's specific operational scope and public-facing offerings are not detailed in available threat-intelligence records; its classification is derived from its domain context, geographic location, and sector designation. Within this threat-intelligence index, stpaul.gov is formally listed as a ransomware victim linked to the interlock threat actor. This designation reflects the entity's inclusion in an index tracking ransomware-related incidents and associated actors across public-sector environments. The listing serves as a neutral reference point for analysts monitoring cyber threats in government sectors. |
||||||
| Ransomware | City of St Paul id32783 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector as a government domain providing official services and administrative functions. Its inclusion in this threat-intelligence index is specifically categorized as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects cybersecurity intelligence analysis concerning entities impacted by malicious activity targeting public infrastructure. The description remains neutral and factual, focusing on the entity's sector classification, geographic context, and the verified association with interlock within the ransomware victim classification. No incident specifics such as data stolen, breach confirmation details, or financial impact are included per strict factual constraints. |
||||||
| Ransomware | City of St Paul id32783 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, serving government-related functions and digital services for its designated community. As a public sector entity, it represents infrastructure subject to cyber threats targeting governmental systems, data integrity, and service continuity. This listing identifies stpaul.gov as a ransomware victim linked to the interlock threat actor, reflecting observed threat intelligence correlation within the index. The description remains neutral and factual, focusing on the entity's sector classification, geographic context, and the verified association with interlock as the ransomware incident source. No specific breach details, data loss metrics, or recovery outcomes are included per strict factual constraints. |
||||||
| Ransomware | City of St Paul id32783 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a United States Public Sector entity, providing government-related services and functions within the public infrastructure domain. The domain represents an official or affiliated public institution whose cybersecurity posture is relevant to broader sector-wide threat analysis. Within this threat-intelligence index, the entity is specifically listed as a ransomware victim associated with the threat actor interlock. This classification contributes contextual intelligence for defenders monitoring Public Sector exposure and ransomware activity linked to identified actors. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its documented association within the catalog without elaborating on unverified incident details. |
||||||
| Ransomware | City of St Paul id32783 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with a United States public sector organization, providing governmental services and digital infrastructure functions within its operational scope. As a public sector entity, its systems represent critical infrastructure serving community and administrative needs. This listing type identifies stpaul.gov as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. The description reflects the verified classification without disclosing unconfirmed incident details such as breach specifics or operational impacts. This entry supports cybersecurity professionals in tracking ransomware exposure across public sector environments. |
||||||
| Ransomware | City of St Paul id32784 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with a United States public sector organization, providing government-related services and digital infrastructure. As categorized within this threat-intelligence index, it is specifically listed as a ransomware victim linked to the interlock threat actor group. Public sector entities like stpaul.gov are critical infrastructure components whose security posture is closely monitored by threat intelligence analysts. The designation reflects verified intelligence correlating the entity with malicious activity attributed to interlock, supporting proactive defense and risk assessment efforts across government networks. This entry documents the association neutrally without disclosing unconfirmed incident details. |
||||||
| Ransomware | City of St Paul id32784 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing government or public administrative services. Its role encompasses standard public sector functionalities such as providing official information, digital services, and administrative resources to stakeholders within its jurisdiction. Within threat-intelligence indexing frameworks, this entity is specifically cataloged as a ransomware victim, with the associated threat actor identified as interlock. This classification reflects the cybersecurity context in which the domain was documented, highlighting exposure to ransomware-related activity without disclosing unverified incident details. The entry serves to inform analysts of the entity's sector profile, geographic origin, and confirmed threat linkage for monitoring and defense purposes. |
||||||
| Ransomware | City of St Paul id32789 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a public sector entity based in the United States, providing government-related services and digital infrastructure. It is cataloged in this threat-intelligence index under the classification ransomware victim, with the associated threat actor and source identified as interlock. The listing reflects the entity's documented connection to this threat actor within cybersecurity intelligence records. This entry serves to inform analysts and defenders about the public sector exposure and the specific adversary profile associated with the domain. The description remains neutral and factual, focusing solely on the indexed relationship without speculating on unconfirmed incident details. |
||||||
| Ransomware | City of St Paul id32790 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. Its domain and organizational context align with public infrastructure serving community and governmental functions. Within the threat-intelligence index, stpaul.gov is cataloged as a ransomware victim associated with the interlock threat actor. This listing reflects the entity's inclusion in ransomware incident records tied to interlock, providing context for cyber-threat analysis and sector-focused monitoring. The description remains neutral and avoids unsupported claims regarding breach details, data exposure, or financial impact. |
||||||
| Ransomware | City of St Paul id32794 View details | United States | Public Sector | — | ||
|
stpaul.gov represents a domain operating within the United States public sector, providing government-related services and digital infrastructure functions typical of municipal or public administration entities. As cataloged in the threat-intelligence index, this entity is designated specifically as a ransomware victim linked to the interlock threat actor. The listing type identifies the relationship between the domain and the cyber threat, highlighting exposure within critical public infrastructure without detailing unverified incident specifics. This entry supports security teams monitoring public-sector endpoints for indicators associated with interlock activity and broader ransomware campaign patterns. The record remains neutral regarding confirmed breach details, focusing solely on the indexed classification and associated actor attribution. |
||||||
| Ransomware | City of St Paul id32797 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity. Its role encompasses standard public-sector functions such as providing services, resources, and administrative support within its designated jurisdiction. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim. The association connects stpaul.gov to the threat actor interlock, indicating a cybersecurity incident classification tied to this adversary group. This listing reflects the index's documentation of compromised or affected public infrastructure linked to interlock activity. |
||||||
| Ransomware | City of St Paul id32798 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital offerings and administrative functions for its community. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor interlock. The designation reflects its inclusion in intelligence records documenting ransomware incidents within public infrastructure contexts. This entry serves as a reference point for monitoring cyber threats targeting government-related domains and sectors in the United States. Neutral documentation emphasizes the association without speculating on unconfirmed incident details. |
||||||
| Ransomware | City of St Paul id32800 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, serving governmental functions and public service offerings. As a government domain, its infrastructure and digital services fall under stringent regulatory and security oversight. Within threat-intelligence indexing frameworks, stpaul.gov is specifically listed as a ransomware victim associated with the threat actor interlock. This classification reflects the entity's inclusion in threat datasets documenting cyber incidents involving this actor. The entry provides context for security analysts monitoring public-sector exposure to identified threat campaigns without disclosing unverified incident details. |
||||||
| Ransomware | City of St Paul id32808 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related services and digital infrastructure. As a public sector entity, it represents organizational assets within critical infrastructure frameworks. This listing identifies stpaul.gov specifically as a ransomware victim associated with the threat actor interlock. The designation reflects inclusion in a threat-intelligence index catalog documenting cybersecurity incidents and actor-victim relationships. This description maintains factual neutrality regarding the incident without extrapolating unconfirmed technical or operational details. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing governmental services and infrastructure functions typical of municipal or civil administrative domains. As a ransomware victim listed in this threat-intelligence index, the entity is documented in relation to the threat actor interlock, contributing actionable intelligence for defenders monitoring public-sector cybersecurity threats. This listing type captures the association without disclosing confirmed breach details, operational impacts, or unverified claims. The catalog entry supports security teams in tracking adversary activity against critical public infrastructure and enhancing resilience across government networks. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing government-related digital services and infrastructure functions. As a public sector entity, it represents a critical infrastructure component subject to evolving cyber threats targeting government systems and citizen-facing services. This listing identifies stpaul.gov within our threat-intelligence index under the ransomware victim category, associated with threat actor interlock. The catalog entry reflects observed threat intelligence linkage without confirming specific breach details, data exfiltration metrics, or operational impact. Stakeholders monitor this record to understand potential risks, contextualize security postures, and support proactive defense strategies across public sector environments. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity providing government-related services and digital infrastructure functions. As a public sector organization, it represents administrative and civic operational domains within the broader governmental ecosystem. Within the threat-intelligence index, this entity is formally cataloged as a ransomware victim associated with the interlock threat actor group. This listing reflects its inclusion in cybersecurity threat reporting for monitoring public sector exposure and incident correlation. The designation serves analytical purposes for defenders assessing risks across government-facing infrastructure. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative functions, providing digital resources and services aligned with public sector infrastructure. The domain is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the entity's inclusion in ransomware incident records linked to interlock's activity, without confirming specific breach details such as stolen data, affected systems, or financial impact. The entry serves threat-intelligence analysts by documenting the relationship between this public sector entity, its geographic context, and the ransomware threat actor interlock. Neutral and authoritative context is provided for catalog indexing and security monitoring purposes. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a United States Public Sector entity, providing government-related services and digital infrastructure within its jurisdiction. The domain represents an official public institution focused on administrative and civic functions characteristic of the public sector. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity assessment linking the domain to malicious activity under interlock's operational profile. The description maintains factual neutrality regarding the incident without speculating on unconfirmed technical details or disclosure specifics. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services or public administration offerings, reflecting its classification within the Public Sector domain. The domain functions as a government-facing presence associated with official services, infrastructure, or organizational operations under US jurisdiction. Within the threat-intelligence index catalog, this entity is formally listed as a ransomware victim, with the associated threat actor and source identified as interlock. This designation contributes structured intelligence for analysts tracking public-sector cyber incidents and adversary activity. The entry provides neutral catalog context without asserting unverified breach details, data impacts, or operational consequences. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a governmental or public administration entity offering standard digital services and infrastructure. As cataloged in the threat-intelligence index, this entity is listed specifically as a ransomware victim connected to the threat actor interlock. The designation reflects its inclusion within cybersecurity records documenting adversary activity targeting public sector infrastructure. This description maintains factual neutrality regarding the incident details while contextualizing the entity within broader cyber threat monitoring frameworks. |
||||||
| Ransomware | City of St Paul id32810 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a governmental or public-service entity offering web-based services, administrative resources, and sector-specific digital infrastructure. As cataloged in the threat-intelligence index under the ransomware victim classification, stpaul.gov is explicitly associated with the interlock threat actor. This listing type identifies the entity as a victim of ransomware activity, contextualized within its public-sector environment and geographic origin in the United States. The description adheres to factual, neutral reporting standards without inventing breach details, incident specifics, or unverified claims regarding data exposure or operational impact. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related digital infrastructure functions. The domain serves organizational purposes consistent with public administration, offering services and resources aligned to the public sector domain in the United States. Within the threat-intelligence index catalog, stpaul.gov is formally listed as a ransomware victim associated with the interlock threat actor. This listing reflects the entity's inclusion in ransomware incident intelligence records tied to interlock activity. The description remains factual and neutral, focusing on sector classification, geographic context, and the specified threat-intelligence listing type without asserting unconfirmed breach details. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity, operating within government or public-service domains and providing official web presence and digital services. The domain and associated organization fall under the public sector classification, with operational context tied to US government infrastructure and services. Within the threat-intelligence index catalog, stpaul.gov is listed as a ransomware victim entity linked to the interlock threat actor or source identifier. This listing type records the relationship between the entity and the associated threat actor without disclosing unverified incident details, breach specifics, or confirmed loss data. The entry supports neutral monitoring, sector-based threat mapping, and intelligence indexing for public-sector cybersecurity awareness. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, providing standard governmental services and infrastructure functions. As a domain under a public sector entity, its inclusion in this threat-intelligence index reflects cybersecurity monitoring activities. The listing type identifies stpaul.gov specifically as a ransomware victim, with interlock cited as the associated threat actor or source. This designation indicates that the entity was documented within the index due to ransomware-related activity. The entry serves as a reference point for threat actors, defenders, and researchers analyzing public sector cybersecurity incidents and adversary methodologies. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public institution whose online presence and services fall under public administration frameworks. Within the threat-intelligence index, this entity is specifically listed as a ransomware victim, with the associated threat actor identified as interlock. The classification reflects cybersecurity monitoring efforts documenting adversary activity targeting public-sector infrastructure. This entry serves catalog and analytical purposes for threat researchers, defenders, and compliance stakeholders assessing ransomware exposure across government entities in the US. The designation remains neutral, indicating association without confirming specific incident details such as breach scope or data impact. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public institution providing official services and administrative functions. As a ransomware victim, this entity appears in the threat-intelligence index under the association with the threat actor interlock. The listing type identifies the relationship between the entity and the identified threat actor within the cybersecurity context. This description maintains neutrality regarding specific incident details, as confirmed specifics such as breach confirmation, data exposure, or ransom terms are not established facts for this entry. The catalog copy documents the entity's classification for analytical and informational purposes within the threat-intelligence framework. |
||||||
| Ransomware | City of St Paul id32811 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital offerings and administrative functions for its community. As categorized within this threat-intelligence index, it is listed as a ransomware victim associated with the interlock threat actor. This designation reflects the entity's exposure within cybersecurity threat landscapes targeting public infrastructure. The entry documents the relationship between the domain, its sector classification, and the identified threat actor without disclosing unverified breach specifics. Such catalog entries support defenders in monitoring public sector exposure and contextualizing ransomware incidents across government domains. |
||||||
| Ransomware | City of St Paul id32815 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, representing a governmental or public service entity whose online presence provides official services, information dissemination, and administrative functions typical of public sector web properties. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This classification reflects the observed relationship between the domain and the identified threat actor within cybersecurity intelligence datasets. The description remains neutral and factual, focusing on the entity's sector classification, geographic context, and the specific association noted in the index without elaborating on unverified incident details such as breach confirmation, data exfiltration specifics, or ransom terms. |
||||||
| Ransomware | City of St Paul id32817 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing official digital offerings and administrative functions for its jurisdiction. As a public sector organization based in the US, it represents critical infrastructure within the government domain. This entity is cataloged in the threat-intelligence index as a ransomware victim associated with the interlock threat actor. The listing reflects the observed relationship between the domain and the identified malicious actor within cybersecurity threat reporting frameworks. This entry documents the association for analytical and defensive purposes without disclosing unverified incident details. |
||||||
| Ransomware | City of St Paul id32820 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a public sector entity based in the United States, providing government-related services and digital infrastructure. The domain represents a government or public administration presence within the sector classification. Within threat-intelligence indexing frameworks, this entity is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing type indicates documented association with malicious activity targeting public sector infrastructure. The entry serves to inform analysts about compromised or affected government assets tied to identified cyber threats. |
||||||
| Ransomware | City of St Paul id32823 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public administration entity. Its domain serves organizational functions within public services and infrastructure, though specific operational details remain outside verified incident documentation. Within the threat-intelligence index, stpaul.gov is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing type indicates an association with ransomware activity targeting public sector environments, reflecting broader cybersecurity risks facing government domains. The entry provides neutral context for researchers analyzing threat actor campaigns and public sector exposure. |
||||||
| Ransomware | City of St Paul id32824 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a government or public service entity. It provides standard public sector offerings including administrative services, information dissemination, and civic resources for its designated community. Within the threat-intelligence index, this entity is formally cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the cybersecurity community's documentation of the entity's involvement in a ransomware incident tied to interlock. The entry serves to inform defenders and analysts about potential exposure within the public sector infrastructure. |
||||||
| Ransomware | City of St Paul id32824 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government or civic services, providing official digital functions and resources for its designated community. The domain serves as a representative public institution within the US public sector landscape. This listing identifies stpaul.gov as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. The entry reflects the cybersecurity classification without disclosing unverified incident details, operational specifics, or confirmed breach evidence. The neutral classification supports threat-intelligence cataloging and sector-focused risk awareness. |
||||||
| Ransomware | City of St Paul id32827 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings, commonly associated with municipal or public-facing digital infrastructure. As a ransomware victim indexed in the threat-intelligence catalog, it is documented in relation to the threat actor interlock, reflecting the entity's exposure within the observed cyber incident landscape. The description remains neutral and avoids speculative claims regarding data theft, ransom demands, or breach confirmation. This listing type identifies stpaul.gov as a ransomware victim tied to interlock within the US public sector context, supporting threat-intelligence analysis and catalog enrichment. |
||||||
| Ransomware | City of St Paul id32827 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the US public sector, representing a government or public service entity. Its role within this threat-intelligence index is specifically categorized as a ransomware victim linked to the interlock threat actor. Public sector entities like stpaul.gov are critical infrastructure components whose security posture is closely monitored by threat intelligence analysts. The listing type identifies this domain within the ransomware victim category tied to interlock, providing structured context for security professionals assessing associated risks and potential attack patterns. This description adheres strictly to documented classification without inferring unverified incident details. |
||||||
| Ransomware | City of St Paul id32827 View details | United States | Public Sector | — | ||
|
stpaul.gov operates as a United States public sector entity, providing government services and digital infrastructure functions within its designated locality. The domain represents an official government presence focused on public administration and service delivery. Within the threat-intelligence index, this entity is formally cataloged as a ransomware victim associated with the interlock threat actor. This classification reflects the cybersecurity assessment linking the domain to malicious activity targeting public sector infrastructure. The entry serves to inform defenders and analysts about potential exposure vectors within the US public sector landscape. |
||||||
| Ransomware | City of St Paul id32828 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity providing official online offerings and administrative functions. The domain operates within the public sector framework, serving roles typical of municipal or governmental digital presence. In the threat-intelligence index, stpaul.gov is cataloged specifically as a ransomware victim linked to the interlock threat actor. This listing type indicates documented correlation between the entity and interlock's malicious activity within the intelligence dataset. The entry provides neutral context for researchers analyzing public-sector cybersecurity incidents and associated threat actor footprints. |
||||||
| Ransomware | City of St Paul id32831 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services, providing digital infrastructure and administrative functions for local or regional public operations. As a public sector institution, its digital environment is a recognized target for cyber threats, including ransomware campaigns that seek to disrupt critical government services and compromise sensitive information. This entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects verified intelligence linking stpaul.gov to interlock's ransomware activity within the US public sector landscape. This entry supports security professionals in tracking adversary campaigns and assessing public sector vulnerability patterns. |
||||||
| Ransomware | City of St Paul id32833 View details | United States | Public Sector | — | ||
|
stpaul.gov operates within the United States public sector, representing a government or public-facing domain whose infrastructure and services are relevant to official administrative functions. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the interlock threat actor. This listing type indicates that the domain or associated infrastructure was targeted by ransomware activity connected to interlock, contributing to broader awareness of public-sector cyber incidents. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and associated threat actor without speculating on unverified breach details, data impacts, or recovery outcomes. |
||||||
| Ransomware | City of St Paul id32835 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing a government or public-service entity. Its role encompasses official public-sector offerings, administrative functions, and online presence within the government domain. Within the threat-intelligence index, this entity is cataloged as a ransomware victim connected to the interlock threat actor. The listing reflects the cybersecurity event classification without disclosing unverified incident details. This entry supports researchers analyzing public-sector exposure to interlock-associated ransomware activity. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing government-related services and administrative functions. As cataloged in this threat-intelligence index, it is classified as a ransomware victim linked to the interlock threat actor group. The listing reflects observed or attributed threat activity against this entity without disclosing unverified incident details such as data exfiltration scope, ransom demands, or internal forensic findings. This entry serves cybersecurity professionals by contextualizing the domain within public-sector risk landscapes and identifying associated malicious actor relationships for monitoring and defense planning. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing government-related services and digital infrastructure. As a public sector entity, it represents administrative and civic functions typical of municipal or governmental online presence. This listing type identifies stpaul.gov specifically as a ransomware victim within the threat-intelligence index. The association with interlock denotes the threat actor or source linked to this classification in the index records. The description remains factual and neutral, reflecting the indexed status without elaborating on unconfirmed incident details. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and administrative offerings. The domain functions as an official government presence, providing public-facing resources aligned with its sector classification. Within this threat-intelligence index, the entity is cataloged as a ransomware victim associated with the interlock threat actor. This listing reflects the security classification and attribution context documented in the index without confirming specific breach details or operational specifics of the incident. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain operating within the United States public sector, providing governmental services and infrastructure functions typical of municipal or regional public administration entities. The domain represents an organization whose digital environment was impacted under the classification of ransomware victim within the threat-intelligence index. This listing type identifies the entity's relationship to the specific threat actor interlock, highlighting the cybersecurity event documented in the index without disclosing unverified technical or operational details. The entry serves to catalog this association for analytical and defensive intelligence purposes within the ransomware victim index. It neutrally states that stpaul.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a domain associated with the United States public sector, representing government or public service operations. Its role within the threat-intelligence index is specifically categorized as a ransomware victim linked to the interlock threat actor. This listing reflects observed security event attribution and domain association data compiled for monitoring purposes. The description remains neutral regarding incident details, avoiding speculation on compromised assets, data exposure, or operational impact. Official disclosure specifics are documented separately where verifiable first-party notifications exist. |
||||||
| Ransomware | City of St Paul id32836 View details | United States | Public Sector | — | ||
|
stpaul.gov is a United States public sector entity operating within government services and related civic offerings. Its domain functions as an official or representative presence for public administration activities, reflecting the broader public sector infrastructure targeted by cyber threats. This listing type identifies stpaul.gov as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. The description remains neutral and avoids inventing breach specifics, data details, financial impact, or confirmation beyond the indexed classification. The entry supports threat-intelligence cataloging by linking entity identity, sector context, geographic origin, and associated adversarial attribution. |
||||||