Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 23659 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 23659 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 4h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 4h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 4h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 4h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 4h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 4h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 65 | Onion service | Up checked 4h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 4h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 4h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 4h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 4h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 4h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 4h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 4h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 53 | Onion service | Up checked 4h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 54 | Onion service | Up checked 4h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 4h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 4h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 4h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 4h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 4h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 64 | Onion service | Down checked 4h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 60 | Onion service | Down checked 4h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Down checked 4h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 49 | Onion service | Down checked 4h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 4h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 4h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 4h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 4h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 4h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 4h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 40 | Onion service | Down checked 4h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 4h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 4h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 4h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 37 | Onion service | Down checked 4h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 4h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 4h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 4h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 4h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 4h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 4h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 4h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 4h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 4h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 4h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 4h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 4h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 4h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 4h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 4h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 18 | Onion service | Down checked 4h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 4h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 4h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 17 | Onion service | Down checked 4h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 23
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 11
- Construction / Real Estate 11
- NGOs / Associations 6
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (23659)
Search, filter and paginate the victim timeline for Interlock. Showing 19801–19900 of 23659.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Doman id32896 View details | Canada | Services | — | ||
|
domanbm.com operates within the Services sector and is associated with the country Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, with the associated threat actor and source identified as interlock. This listing type indicates the entity was impacted by ransomware activity attributed to interlock within the intelligence dataset. The description focuses on the entity's classification, sector context, geographic location, and verified association with the specified threat actor without disclosing unconfirmed incident details. The entry serves as a structured reference for threat-intelligence researchers tracking ransomware victims and actor relationships. |
||||||
| Ransomware | Doman id32896 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. As a ransomware victim indexed in the threat-intelligence catalog, it represents an entity impacted by malicious cyber activity linked to the interlock threat actor. The listing type identifies domanbm.com specifically as a ransomware victim within this intelligence framework. This designation contributes contextual data for analysts tracking threat actor behavior, victim profiles, and sector-specific cybersecurity risks. The entry reflects the association without disclosing unverified incident details, maintaining factual neutrality regarding the nature or scope of the event. |
||||||
| Ransomware | Doman id32897 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects observed threat-intelligence data concerning the entity and its association with this actor. No specific incident details, such as stolen data types, record counts, ransom amounts, or confirmed breach evidence, are included in this description. This entry provides neutral context for researchers and defenders monitoring ransomware activity in the IT sector across Canadian entities. |
||||||
| Ransomware | Doman id32898 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence indexing. The entity is cataloged specifically as a ransomware victim, reflecting its inclusion in intelligence records tied to this adversary group. Details regarding the nature, scope, or resolution of the incident are not disclosed in the listing and must not be inferred beyond the indexed classification. This entry provides neutral context for researchers and defenders tracking ransomware activity linked to interlock within Canadian IT environments. The listing type and associated actor serve as the authoritative basis for catalog representation. |
||||||
| Ransomware | Doman id32901 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a Canadian organization whose exposure is indexed within a threat-intelligence framework focused on identifying ransomware incidents and linked adversary activity. This listing type documents the relationship between domanbm.com and interlock without disclosing unverified incident details, such as stolen data, ransom terms, or confirmed breach specifics. The catalog entry serves as a structured reference for security analysts tracking ransomware victims, actor provenance, and sector-relevant threat intelligence. |
||||||
| Ransomware | Doman id32902 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented alongside the associated threat actor interlock for analytical and defensive reference. The listing type identifies domanbm.com specifically as a ransomware victim within this intelligence framework. This entry contributes contextual data regarding the entity's exposure profile, sector classification, geographic origin, and linkage to the interlock threat actor without disclosing unverified incident details. It serves to inform security professionals and analysts monitoring ransomware activity and associated threat actor campaigns. |
||||||
| Ransomware | Doman id32902 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence catalog records. Publicly available information identifies the entity by domain name, sector classification, and geographic origin in Canada, without confirming specific technical attack details or breach specifics. As a ransomware victim listing, the record reflects its inclusion in intelligence indexing tied to interlock's activity profile. This description maintains neutrality regarding incident mechanics, data impact, or recovery status, focusing solely on the entity's classification and association. |
||||||
| Ransomware | Doman id32902 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is identified within the threat-intelligence index as a ransomware victim linked to the threat actor interlock. The entity is associated with Canada as its country of origin and reflects a cybersecurity context where threat actors target organizations across technology infrastructure. This listing type records the relationship between the entity and the specified threat actor without disclosing unverified incident details such as data stolen, ransom demands, or confirmed breach specifics. The catalog entry provides a neutral, authoritative reference for threat-intelligence researchers and security professionals monitoring ransomware activity and associated actor footprints. |
||||||
| Ransomware | Doman id32902 View details | Canada | Services | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization providing services within its designated industry context. Within the threat-intelligence index, domanbm.com is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the observed relationship between the entity and the identified adversary group without disclosing unverified incident details. The entry serves to document the cybersecurity event within the catalog for analytical purposes. |
||||||
| Ransomware | Doman id32902 View details | Canada | Services | — | ||
|
domanbm.com is a Canadian Services sector entity operating within the business services domain, providing offerings aligned with professional service delivery and client support frameworks. As cataloged in the threat-intelligence index, domanbm.com is classified as a ransomware victim linked to the threat actor interlock. The listing reflects observed security event attribution and contextual intelligence regarding the entity's exposure profile within the monitored threat landscape. This entry documents the association for analytical and defensive reference purposes without disclosing unverified incident specifics. The classification supports threat-aware monitoring and sector-focused risk assessment for stakeholders. |
||||||
| Ransomware | Doman id32904 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its identified geographic context. The entity is cataloged as a ransomware victim within a threat-intelligence index, with interlock cited as the associated threat actor or source. Catalog entry reflects the observed relationship between domanbm.com and interlock without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This listing serves threat analysts who track ransomware incidents and actor-entity correlations across sectors and jurisdictions. |
||||||
| Ransomware | Doman id32904 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in the threat-intelligence index catalog. The entity represents a ransomware victim entry, reflecting cybersecurity intelligence compiled regarding its exposure or involvement with this specific adversary group. Details regarding operational scope, infrastructure, or incident specifics remain limited to the index classification to maintain factual accuracy and neutrality. This listing type documents the relationship between domanbm.com and interlock within the ransomware victim category. The catalog entry serves threat analysts seeking structured context on affected entities and associated cyber threats. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its country of origin. The entity appears in the threat-intelligence index under the classification of ransomware victim, with interlock cited as the associated threat actor or source. Catalog records for this listing emphasize its sector context, geographic location, and the cybersecurity relevance of its inclusion as an affected organization. This description maintains factual neutrality regarding the incident details while accurately reflecting the entity's categorization and attribution within the intelligence framework. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. As a ransomware victim entry in the threat-intelligence index, the entity is cataloged alongside threat actor interlock for monitoring and analytical purposes. The listing type identifies domanbm.com specifically as a ransomware victim, reflecting its inclusion in cybersecurity intelligence records concerning malicious activity targeting information technology environments. This description maintains neutrality regarding incident details, focusing on the entity's classification, sector, location, and association with the specified threat actor without speculating on confirmed breach specifics. The record serves as a structured reference point within the threat-intelligence index ecosystem. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization providing service-oriented offerings, though specific operational details remain limited within this threat-intelligence catalog context. As a ransomware victim, domanbm.com is documented in the threat-intelligence index with an association to the threat actor interlock. This listing type indicates a cybersecurity incident classification tied to the identified actor, providing contextual awareness for defenders monitoring active threat campaigns across service-sector environments. The entry emphasizes neutral factual representation without disclosing unverified incident specifics. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is identified in the threat-intelligence index as a ransomware victim entity. The company is associated with the threat actor interlock, indicating its inclusion in intelligence coverage related to cyber incidents affecting IT organizations. This listing reflects the entity's documented relationship with interlock within cybersecurity monitoring and indexing frameworks. The description remains factual and neutral, focusing on the entity's classification, sector context, geographic location, and threat-actor association without asserting unverified breach details. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com is an IT sector entity located in Canada operating within the technology domain. It is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor identified as interlock. The listing type reflects the entity's documented relationship to this specific cyber threat actor in intelligence records. This entry provides structured context for analysts monitoring ransomware incidents and threat actor activity across sectors. The description remains neutral regarding unverified incident details, focusing solely on the entity's classification and associated threat intelligence data. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects the observed relationship between the entity and the identified actor within cybersecurity intelligence records. No specific incident details such as stolen data, ransom demands, or breach confirmation are included, adhering to strict factual neutrality. This entry supports threat-aware analysis for monitoring ransomware activity across sectors and geographies. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed connections between the entity and this specific cyber threat actor profile for defensive and investigative reference. No additional incident details, such as data stolen, ransom demands, or breach confirmation, are provided here to maintain factual neutrality and avoid speculation. This entry serves to document the relationship for threat-intelligence professionals monitoring ransomware activity across IT infrastructure. |
||||||
| Ransomware | Doman id32905 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is identified in the threat-intelligence index as a ransomware victim entity. The domain and associated listing reflect an organization affected by cyber activity linked to the interlock threat actor group. Details regarding specific compromise vectors, data exposure, remediation actions, or operational impact are intentionally not asserted here to avoid inventing unverified incident specifics. This entry serves catalog and intelligence purposes by documenting the entity's sector, geographic association with Canada, listing classification, and attacker attribution context. It neutrally records that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32906 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a Canadian organization whose exposure is documented within the threat-intelligence index. Details regarding specific attack vectors, data handling practices, or confirmed breach outcomes remain limited to the index classification and are not elaborated here to avoid speculation. This entry serves as a reference point for monitoring ransomware activity tied to interlock and related entities in the technology sector. Neutral documentation supports threat analysts and security professionals in tracking incident associations across sectors and geographies. |
||||||
| Ransomware | Doman id32911 View details | Canada | Services | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity is documented within this threat-intelligence index under the classification of ransomware victim, specifically associated with threat actor interlock. This listing reflects intelligence gathered regarding the entity's involvement in a cyber incident tied to interlock's activity. The description adheres to neutral, factual reporting standards without speculating on unverified technical details or impact specifics. It serves to inform stakeholders of the entity's status within the ransomware victim catalog and its connection to the identified threat actor. |
||||||
| Ransomware | Doman id32924 View details | Canada | Services | — | ||
|
domanbm.com operates within the Services sector and is associated with the threat actor interlock in this ransomware victim index. The entity represents a Canadian organization whose security posture and operational environment were documented within threat-intelligence records following its association with interlock. This listing type categorizes domanbm.com as a ransomware victim, reflecting its inclusion in cyber threat intelligence datasets tracking adversary activity and impacted entities. The description remains neutral, focusing on verified index associations without extrapolating unconfirmed incident details. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32924 View details | Canada | Services | — | ||
|
domanbm.com is an IT sector entity based in Canada. The domain operates within the technology sector and represents a business entity referenced within cybersecurity threat intelligence frameworks. This listing identifies domanbm.com as a ransomware victim associated with the interlock threat actor. The catalog entry documents the relationship between this entity and the specified threat actor without disclosing unverified incident details. This record serves to inform threat analysts and security professionals about potential exposure vectors and associated adversary activity. |
||||||
| Ransomware | Doman id32925 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, linked to the threat actor or source identified as interlock. This listing type indicates its inclusion in intelligence records reflecting cybersecurity incident associations and threat actor attribution. The description maintains neutral, encyclopedic tone without inventing incident details, such as stolen data, ransom terms, or confirmed breach specifics. Its classification supports threat-intelligence analysis for monitoring ransomware activity and associated actor exposure in the IT sector. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a catalog entry within a threat-intelligence index, documenting its status as a ransomware victim linked to the threat actor interlock. This listing type identifies the organization as having experienced a ransomware-related security event under interlock's operational scope. The description remains factual and neutral, reflecting the indexed association without extrapolating beyond verified intelligence. The entity serves as a reference point for monitoring threat actor activity and victim impact within the IT landscape. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is based in Canada. The entity is cataloged within a threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates its inclusion in records documenting cybersecurity incidents involving this specific adversary group. The description maintains neutrality regarding unconfirmed details while accurately reflecting the indexed classification. No incident specifics such as data stolen, ransom demands, or breach confirmation are attributed beyond the provided association. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the organization's inclusion in threat-related intelligence records tied to cyber incidents involving interlock's activity. The description avoids speculative claims regarding data exposure, ransom demands, or confirmed breach details, maintaining a neutral and encyclopedic tone consistent with professional threat-intelligence documentation. Publicly available information about domanbm.com does not provide verified specifics of the incident itself. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor or source identified as interlock. This listing reflects threat-intelligence observations linking domanbm.com to interlock's ransomware activity profile. The description avoids speculative claims regarding data stolen, ransom demands, breach confirmation, or operational impact. It provides neutral, authoritative context for catalog users assessing entity risk, sector exposure, geographic location, and attacker association. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The domain is cataloged within a threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing type indicates that the entity was identified in relation to a ransomware-associated incident or threat activity attributed to interlock. The description avoids inventing specific technical details, such as stolen data categories, record counts, ransom terms, or confirmed breach specifics, in accordance with threat-intelligence catalog standards. It provides neutral, encyclopedic context for researchers, defenders, and index consumers evaluating affected entities and associated actors. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged as a ransomware victim within the threat-intelligence index, with interlock identified as the associated threat actor or source. Catalog descriptions for ransomware victims focus on entity identification, sector context, geographic location, and the specific threat actor relationship rather than speculative technical or operational details about the incident. This listing provides neutral, authoritative context for researchers and defenders monitoring cyber threats in the IT landscape. The record reflects the entity's classification and association without confirming unverified breach specifics. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type identifies organizations impacted by ransomware campaigns attributed to interlock, providing context for defenders assessing exposure and developing mitigation strategies. The description reflects the verified association without disclosing unconfirmed incident details, preserving neutrality and factual accuracy for security analysts reviewing indexed threats. |
||||||
| Ransomware | Doman id32927 View details | Canada | Services | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its country of presence. The entity is cataloged as a ransomware victim within a threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects the entity's relationship to a cyber threat event documented in intelligence sources, without disclosing unconfirmed details such as stolen data, ransom terms, or specific breach metrics. The description remains neutral and factual, focusing on the entity's sector, geographic context, listing classification, and the attributed threat actor. It serves as reference material for threat-intelligence professionals monitoring ransomware activity and associated actors. |
||||||
| Ransomware | Doman id32969 View details | Canada | Services | — | ||
|
domanbm.com is a Canadian Services sector entity operating within a professional services context. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects the intelligence assessment connecting domanbm.com to this specific cyber threat actor within the ransomware incident landscape. The entry provides neutral context regarding the entity's sector, geographic location, and its classification within the ransomware victim index alongside interlock. No additional incident specifics, such as data theft details or financial impact, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Cherokee County School District id18942 View details | United States | NGOs / Associations | leaked | ||
|
The school nurse has the expertise to identify, assess, plan, implement, and evaluate the health needs of the individual student and the school community. School nurses, grounded in ethical and evidence-based practice, are leaders who link health and education, provide care coordination, advocate for quality student-centered care, and collaborate to develop systems that enable individuals and communities to reach their full potential. (Adopted by the National Association of School Nurses Board of Directors, February 2017). But Cherokee County School District, for all its talents, is rather negligent about the security of its network. We present to your attention the personal data of employees, financial and tax reports. |
||||||
| Ransomware | Cherokee County School District id32604 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and functions typical of non-profit or association-based initiatives. It has been documented within our threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity monitoring records related to this specific adversary. No additional incident details, such as breach confirmation or operational impact specifics, are provided here to maintain factual neutrality. |
||||||
| Ransomware | Cherokee County School District id32604 View details | United States | NGOs / Associations | — | ||
|
The school nurse has the expertise to identify, assess, plan, implement, and evaluate the health needs of the individual student and the school community. School nurses, grounded in ethical and evidence-based practice, are leaders who link health and education, provide care coordination, advocate for quality student-centered care, and collaborate to develop systems that enable individuals and communities to reach their full potential. (Adopted by the National Association of School Nurses Board of Directors, February 2017). But Cherokee County School District, for all its talents, is rather negligent about the security of its network. We present to your attention the personal data of employees, financial and tax reports. |
||||||
| Ransomware | Cherokee County School District id32710 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States, providing organizational services and public-sector related offerings. It has been cataloged in the threat-intelligence index under the ransomware victim listing type, linked to the interlock threat actor or source. The entry reflects the entity's association with this threat actor without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This classification supports security teams monitoring ransomware activity across non-profit and association sectors in the US. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32711 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is a domain entity operating within the Other sector and located in the United States. It is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. The entity represents an organization or digital presence that has been identified within threat-intelligence records concerning ransomware activity. No additional incident specifics, such as confirmed breach details, data types, record counts, ransom amounts, or independent verification, are provided here to maintain factual neutrality. This listing serves as a reference point for cybersecurity professionals monitoring threat actor behavior and victim exposure. |
||||||
| Ransomware | Cherokee County School District id32711 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an organization associated with non-governmental organizations and associations, providing sector-focused services and public-interest offerings. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented to demonstrate exposure patterns within NGO and association sectors. The listing reflects an association with threat actor interlock, contextualizing the incident within broader cyber threat analysis for defenders and stakeholders. This entry contributes to a neutral, factual record of cybersecurity events without disclosing unverified technical or operational details. The catalog prioritizes authoritative sourcing and clear categorization to support risk assessment and awareness. |
||||||
| Ransomware | Cherokee County School District id32712 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, serving as a US-based organization providing public-interest and association-related services and offerings. As part of our threat-intelligence catalog, it is documented as a ransomware victim linked to the interlock threat actor. The listing reflects the entity's association with this specific cyber threat profile within our indexed data. This entry supports security professionals and defenders in understanding organizational exposure patterns across sectors and geographies. The record remains factual and neutral, noting only the confirmed association with interlock as a ransomware victim without disclosing unverified incident details. |
||||||
| Ransomware | Cherokee County School District id32716 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. Its domain reflects organizational activity in non-profit and association contexts, though specific services or programs are not detailed in available public intelligence. This entity is cataloged as a ransomware victim linked to the threat actor interlock, indicating its inclusion in threat-intelligence monitoring for cybersecurity risk assessment. The listing reflects observed associations and sector context rather than confirmed technical incident details. Neutral documentation supports threat-index analysis and awareness of affected organizational entities. |
||||||
| Ransomware | Cherokee County School District id32716 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States NGO and associations sector, providing public-facing organizational services and mission-driven offerings aligned with non-profit and association activity. As cataloged in the threat-intelligence index, it is classified as a ransomware victim associated with threat actor interlock. This listing reflects the entity's documented exposure within the interlock threat actor's incident footprint without disclosing unverified technical details, breach specifics, or unconfirmed claims. The description maintains neutrality and focuses on the entity's sector context, geographic location, listing classification, and the attributed threat actor for catalog integrity. |
||||||
| Ransomware | Cherokee County School District id32724 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and serves a United States-based community context. Its inclusion in this threat-intelligence index reflects its classification as a ransomware victim associated with the interlock threat actor. The entity represents an organization whose security posture was impacted by this threat activity, highlighting vulnerabilities within non-profit and association infrastructure. This listing underscores the importance of monitoring ransomware incidents across diverse sectors, especially those reliant on public trust and coordinated resources. The record documents the relationship between cherokee1.org and interlock without disclosing unverified technical details or incident specifics. |
||||||
| Ransomware | Cherokee County School District id32726 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO and association organization, providing sector-focused services and public-interest offerings. As a ransomware victim, it appears in this threat-intelligence catalog under association with threat actor interlock. The listing type identifies the entity's relationship to a cyber threat event without disclosing confirmed technical details, data exfiltration specifics, or financial impact. This entry reflects the organization's status within the index for threat-aware stakeholders monitoring NGO and association sector security incidents. Neutral documentation supports cybersecurity researchers and defenders assessing ransomware patterns across non-profit and association environments. |
||||||
| Ransomware | Cherokee County School District id32726 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the Other sector and is associated with the United States. The domain represents an entity cataloged under the ransomware victim listing type, with interlock identified as the associated threat actor or source. This entry reflects the organization's classification within the threat-intelligence index, highlighting its connection to cyber incidents involving ransomware activity. The description remains neutral, focusing solely on the entity's categorization and its verified association with interlock without disclosing unconfirmed incident details. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32727 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States NGO and associations sector, providing organizational services and public-interest offerings aligned with non-profit and association functions. As a ransomware victim, it is documented within this threat-intelligence index under the associated threat actor interlock. The listing reflects the entity's inclusion in cybersecurity records concerning ransomware activity affecting organizations in this sector. This catalog entry supports threat-resilience analysis by mapping victim profiles, sectors, geographic context, and linked adversary activity without disclosing unverified incident details. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and public-interest offerings consistent with its association classification. It has been cataloged in the threat-intelligence index under the designation ransomware victim, linked to the associated threat actor interlock. This listing reflects the entity's inclusion in threat-intelligence records tied to this actor's activity. No specific incident details, such as breach confirmation or operational impact, are asserted in this description. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States, providing public-sector and association-focused services and resources. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the intelligence assessment connecting cherokee1.org to an incident profile tied to interlock within the cybersecurity threat landscape. No specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach evidence, are included per strict factual reporting rules. The entry serves to document the relationship between the organization, its sector, geographic context, and the identified threat actor for catalog and research purposes. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services consistent with its classification as a non-profit or association-based institution. It is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with the identified threat actor within the ransomware incident context. No additional incident details such as stolen data, record counts, ransom amounts, or confirmed breach specifics are included per strict factual constraints. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector in the United States, providing organizational services and public-facing offerings aligned with its sector profile. As a ransomware victim, the entity is documented within this threat-intelligence index under association with threat actor interlock. The listing type identifies cherokee1.org specifically as a ransomware victim connected to this threat actor, reflecting the cybersecurity context of the indexed event without disclosing unverified incident details. This catalog entry serves to contextualize the organization's sector, geographic presence, and its role in threat-intelligence reporting for monitoring and defense purposes. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity assessment connecting cherokee1.org to the interlock campaign without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. The description maintains neutrality and focuses on the verified association between the organization and the identified threat actor within the index framework. |
||||||
| Ransomware | Cherokee County School District id32730 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and public-interest offerings consistent with its classification as an association-type organization. In the threat-intelligence index, cherokee1.org is cataloged as a ransomware victim associated with interlock, a threat actor or source identified in the indexing context. This listing reflects the entity's relationship to the incident profile rather than confirmed technical details about the attack, affected systems, stolen data, or recovery actions. The description remains neutral and factual, focusing on the entity's sector, location, and the ransomware-victim association with interlock. |
||||||
| Ransomware | Cherokee County School District id32731 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and functions typical of non-profit or association-based institutions. In the threat-intelligence index, cherokee1.org is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates its inclusion in records documenting cyber incidents where ransomware activity was observed or attributed. The description focuses on the entity's verified sector, geographic context, and its official association with this specific threat actor within the index, without speculating on unconfirmed technical details or incident specifics. |
||||||
| Ransomware | Cherokee County School District id32731 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is an entity cataloged within the Other sector, operating from the United States. Its domain name suggests organizational or service-oriented activity, though specific operational details remain limited in public threat-intelligence records. As classified in this threat-intelligence index, cherokee1.org is listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity monitoring for potential ransomware-related activity, emphasizing vigilance across sectors and jurisdictions. The description adheres strictly to verified index classifications without extrapolating unconfirmed incident details. |
||||||
| Ransomware | Cherokee County School District id32734 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO or association, providing public-sector or community-oriented organizational services and digital presence. As categorized in this threat-intelligence index, it is designated as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's exposure within a cyber incident context tied to interlock's activity. This description maintains neutrality regarding specific technical or operational details absent from verified public disclosures. The catalog entry serves to contextualize the organization's sector, geographic location, and its documented affiliation with the identified threat actor for analytical purposes. |
||||||
| Ransomware | Cherokee County School District id32734 View details | United States | NGOs / Associations | — | ||
|
Cherokee1.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the interlock threat actor. The listing reflects the entity's status within the cybersecurity threat landscape, highlighting exposure to ransomware activity without disclosing unverified incident details. This catalog entry supports threat analysts in tracking affected organizations, sector vulnerabilities, and associated adversary activity across the digital ecosystem. |
||||||
| Ransomware | Cherokee County School District id32735 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, based in the United States, providing public-facing organizational services and mission-driven offerings under its domain identity. As a ransomware victim entry in this threat-intelligence index, it is documented in relation to the threat actor interlock to support cybersecurity monitoring and incident context. The listing reflects the entity's association with this threat actor without disclosing unconfirmed technical, operational, or financial details of any incident. This neutral catalog description maintains authoritative, encyclopedic standards for threat-intelligence documentation. |
||||||
| Ransomware | Cherokee County School District id32735 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is an organization operating within the NGO and associations sector, with operational presence in the United States. Its catalog entry identifies it as a ransomware victim linked to the threat actor interlock within a threat-intelligence index. The description reflects the entity's sector, geographic context, and the nature of its inclusion without asserting unverified incident details such as data exfiltration, ransom demands, or breach confirmation. This listing serves to document the association between the organization and the identified threat actor for cybersecurity monitoring and intelligence purposes. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32736 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States within the NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association activity. The entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects inclusion in intelligence records documenting cybersecurity incidents affecting organizations in this sector and region. No specific incident details such as stolen data, ransom demands, or breach confirmations are asserted here, maintaining factual neutrality. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32736 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, with a United States location, providing organizational services and public-facing offerings typical of non-profit and association entities. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. No specific incident details such as stolen data categories, record counts, ransom demands, or confirmed breach evidence are included in this description, adhering to factual neutrality. This entry serves to document the relationship between the organization and the identified threat actor for cybersecurity monitoring and intelligence purposes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32741 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As a ransomware victim, the entity is documented within the threat-intelligence index under association with the interlock threat actor. This listing reflects observed threat-intelligence linkage and incident classification without disclosing unverified breach details, operational impacts, or confirmed data outcomes. The catalog entry serves to contextualize the entity’s sector, geographic origin, and security-relevant listing status for threat analysts and defenders. |
||||||
| Ransomware | Cherokee County School District id32741 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org functions as an NGO or association operating within the United States, providing sector-specific services and public-facing offerings aligned with non-profit and association frameworks. Within threat-intelligence indexing, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing reflects cybersecurity event classification without disclosing specific incident details such as data stolen, ransom demands, or operational impact. This entry serves catalog purposes for monitoring entity exposure and threat actor relationships across sectors. |
||||||
| Ransomware | Cherokee County School District id32743 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The entry reflects the organization's inclusion in threat-event records without disclosing unverified incident details, such as data stolen, records impacted, ransom terms, or confirmed breach specifics. Its classification supports security teams monitoring ransomware exposure across non-profit and association sectors in the US. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32743 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and serves as an organization based in the United States, providing services and resources aligned with its sector focus. It is cataloged in the threat intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with the identified threat actor within the cybersecurity threat landscape. No specific incident details, breach confirmations, data theft specifics, or ransom details are included in this description to maintain factual neutrality and avoid speculation. The entry serves to document the relationship between the entity and the threat actor for monitoring and intelligence purposes. |
||||||
| Ransomware | Cherokee County School District id32744 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and Associations sector and is located in the United States. The entity provides organizational services consistent with its sector profile, though specific programmatic offerings are not detailed in this threat-intelligence listing. Per the index records, cherokee1.org was formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects the cybersecurity context surrounding the entity's exposure, without disclosing unverified technical details or incident specifics. The entry serves to catalog the relationship between the organization, its sector and geographic location, and the associated threat actor for threat-intelligence analysis. |
||||||
| Ransomware | Cherokee County School District id32744 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO and associations sector organization, providing public-interest services and community-focused offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects the observed cybersecurity event classification without disclosing unverified incident details such as data accessed, ransom demands, or confirmed breach scope. The entry serves to inform security teams and analysts about potential exposure within nonprofit and association sectors. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32745 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity provides organizational services consistent with non-profit or association frameworks, though specific programmatic details are not disclosed in this catalog context. Within the threat-intelligence index, cherokee1.org is formally cataloged as a ransomware victim connected to the interlock threat actor. This listing reflects the entity's documented association with this actor in cybersecurity threat databases, without elaborating on incident specifics such as data accessed, recovery steps, or confirmed impact. The entry serves to inform stakeholders of this affiliation within the broader landscape of ransomware-affected organizations. |
||||||
| Ransomware | Cherokee County School District id32749 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is headquartered in the United States. The entity provides organizational services and public-interest offerings consistent with its designation as a non-profit or association-type institution. In the threat-intelligence index, cherokee1.org is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to the identified threat actor within the ransomware incident context. The description avoids speculation regarding specific attack details, data handling, or recovery outcomes, focusing solely on the verified catalog classification. |
||||||
| Ransomware | Cherokee County School District id32749 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and functions typical of non-profit associations, though specific operational details remain limited within public threat-intelligence records. As cataloged in this threat-intelligence index, cherokee1.org is officially listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity event documented within the index and serves as a reference point for threat analysts monitoring NGO sector vulnerabilities. The entry emphasizes the association between the entity, its sector context, and the identified threat actor without disclosing unverified incident specifics. |
||||||
| Ransomware | Cherokee County School District id32749 View details | United States | NGOs / Associations | — | ||
|
Cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As a ransomware victim, the entity is documented within this threat-intelligence index under the associated threat actor interlock, reflecting a cybersecurity incident classification. This listing serves to catalog the relationship between the organization, its geographic and sectoral context, and the identified threat actor for monitoring and defense purposes. No specific incident details such as data stolen, ransom demands, or confirmed breach metrics are included, adhering to factual neutrality and avoiding speculative claims. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, with operational presence in the United States. The domain represents an organization whose infrastructure was affected by activity associated with the interlock threat actor. This listing type identifies cherokee1.org as a ransomware victim within the threat-intelligence index, reflecting observed or attributed cyber incident context tied to interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, and the specific ransomware victim association with interlock without asserting unverified breach details. This catalog entry supports threat-researchers and defenders in understanding organizational exposure patterns across non-profit and association sectors. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, based in the United States, providing organizational services and public-facing offerings aligned with non-profit and association activity. As part of a threat-intelligence index, this entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat-intelligence linkage rather than confirmed incident details such as stolen data, ransom demands, or specific breach metrics. This classification supports security teams in tracking ransomware exposure within civil society sectors and monitoring actor-related activity across affected entities. The designation remains neutral and factual, documenting the relationship between cherokee1.org and interlock within the ransomware victim index. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is an entity cataloged under the Other sector and identified within the United States. As a ransomware victim, it appears in the threat-intelligence index linked to the interlock threat actor. The domain name suggests organizational or service-oriented activity, though specific operational details, infrastructure, or service offerings are not publicly confirmed without verified sources. This listing reflects an assessed cybersecurity relationship between the entity and the interlock actor within the ransomware incident context. The description remains neutral and avoids speculation regarding breach scope, data handling, or remediation specifics. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, with operational presence in the United States. The entity provides organizational services and public-facing offerings aligned with its association profile. This listing identifies cherokee1.org specifically as a ransomware victim within the threat-intelligence index, linked to the associated threat actor interlock. The description reflects the indexed classification without confirming specific incident details, attack vectors, or operational impact. It serves to catalog the entity's role in threat event documentation for analytical and defensive reference purposes. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO and associations sector organization, providing services and resources aligned with non-profit and association frameworks. The entity is formally listed within this threat-intelligence catalog as a ransomware victim associated with the threat actor interlock. This designation reflects inclusion in an index tracking cybersecurity incidents and adversary activity affecting organizational assets across sectors. The description maintains neutrality regarding specific attack details, avoiding invention of confirmed breach specifics such as data stolen, records impacted, ransom demands, or precise timelines. Understanding this listing supports threat analysts in assessing risks to similar NGOs and associations operating within the US context. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat-intelligence linkages without confirming specific intrusion details, data exfiltration scope, or operational impact. This description maintains neutrality per catalog standards, focusing on entity classification, sector context, geographic origin, and the associated threat actor attribution. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As documented in this threat-intelligence index, it is categorized as a ransomware victim linked to the threat actor interlock. The listing reflects an assessed cybersecurity event within the entity's operational environment without disclosing unverified technical or operational details. This catalog entry supports threat-aware monitoring and context for entities in similar sectors facing potential ransomware exposure. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO and association entity, providing sector-focused services and public-interest offerings. The domain is cataloged in this threat-intelligence index under the ransomware victim listing type, associated with threat actor interlock. This designation reflects the entity's inclusion in records documenting cybersecurity incidents involving interlock's activity. No specific breach details, data exfiltration metrics, ransom terms, or confirmed incident specifics are included here to maintain factual neutrality. The listing serves to index the relationship between this organization and the identified threat actor within the broader ransomware threat landscape. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As a ransomware victim, the entity is documented within this threat-intelligence index under the associated threat actor interlock. The listing reflects the cybersecurity incident classification without disclosing specific technical findings, data details, or operational impacts. This entry serves to catalog the entity's exposure context within the broader threat landscape for monitoring and analysis purposes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32751 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is an entity cataloged under the sector Other and identified as a ransomware victim within the threat-intelligence index. Its domain and operational context align with the Other sector classification, reflecting its role as an affected organization in cyber threat monitoring. The listing associates this entity with threat actor interlock, providing threat-intelligence context for analysts tracking ransomware activity and associated sources. This description remains factual and neutral, focusing on the entity's classification, sector, geographic context within the United States, and its designation as a ransomware victim linked to interlock. No incident specifics, breach confirmations, or unverified details are included per strict reporting guidelines. |
||||||
| Ransomware | Cherokee County School District id32752 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings consistent with its naming and sector classification. As a ransomware victim listed in this threat-intelligence index, the entity is documented in relation to the threat actor interlock. No specific incident details such as stolen data types, record counts, ransom amounts, or confirmed breach evidence are included here, adhering to strict factual boundaries. This entry serves catalog and analytical purposes for cybersecurity professionals monitoring ransomware activity across sectors and geographic regions. The listing reflects the association between cherokee1.org and interlock within the ransomware victim classification. |
||||||
| Ransomware | Cherokee County School District id32752 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO or associations sector entity, providing organizational services and public-interest offerings. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The entry documents the entity's presence within the index for cybersecurity researchers and defenders tracking adversary-linked incidents across sectors. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual reporting guidelines. This neutral record supports comprehensive threat monitoring and contextual analysis of ransomware activity affecting non-profit and association organizations. |
||||||
| Ransomware | Cherokee County School District id32753 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, with a primary location in the United States. The entity provides organizational services and functions typical of non-profit and association-based initiatives in its geographic and professional context. According to the threat-intelligence index, cherokee1.org was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's documented relationship within the cybersecurity threat landscape, highlighting its status as a target of coordinated malicious activity. The listing serves to inform stakeholders about this specific incident and its associated threat actor within the broader context of digital security events. |
||||||
| Ransomware | Cherokee County School District id32754 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States as an NGO and association-sector entity, providing organizational services and public-interest offerings consistent with its domain identity. In the context of this threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident classification where the entity was impacted by ransomware activity connected to interlock, without disclosing unverified technical or operational details. The description adheres to neutral, authoritative reporting standards for cataloging affected organizations within cyber threat intelligence frameworks. |
||||||
| Ransomware | Cherokee County School District id32755 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org is a domain listed under the ransomware victim category within a threat-intelligence index. Operating within the Other sector and associated with the United States, the entity represents an organization referenced in threat-intelligence records concerning cybersecurity incidents. Its inclusion reflects its status as a ransomware victim linked to the threat actor interlock in the catalog. The description maintains neutrality regarding specific incident details, avoiding assumptions about data accessed, operational impact, or confirmed breach specifics. This entry serves catalog and analytical purposes for monitoring threat actor activity and victim profiles across sectors and geographies. |
||||||
| Ransomware | Cherokee County School District id32756 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion within the ransomware incident landscape tied to interlock's activity. The listing serves as a reference point for monitoring organizational impacts across non-profit and association sectors. No specific incident details such as data stolen, ransom demands, or breach confirmation are included here, maintaining factual neutrality per catalog standards. |
||||||
| Ransomware | Cherokee County School District id32756 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the United States within the NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association activity. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the observed threat-intelligence relationship between the organization and the identified actor without disclosing confirmed incident details such as data exfiltration, ransom demands, or specific compromise evidence. The description maintains a neutral, encyclopedic tone for catalog and analytical use. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32758 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector in the United States, providing organizational services and public-interest offerings aligned with its sector profile. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association attributed to the threat actor interlock. This listing reflects the cybersecurity context in which the organization was identified, without disclosing confirmed technical details, data specifics, or operational impacts. The record serves informational purposes for threat-intelligence monitoring and sector-focused risk assessment. cherokee1.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cherokee County School District id32759 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. It provides organizational services and public-sector related offerings consistent with its classification as an association entity. The entity has been indexed as a ransomware victim linked to the threat actor interlock, reflecting its inclusion within the threat-intelligence catalog for cybersecurity monitoring and risk assessment purposes. This listing focuses on the entity's role as an affected organization rather than disclosing unverified incident details. The catalog entry supports analysts tracking ransomware incidents across sectors and geographic regions. |
||||||
| Ransomware | Cherokee County School District id32760 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and functions typical of non-profit or association-based institutions, serving community and sector stakeholders. According to the threat-intelligence index catalog, cherokee1.org is classified as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in the ransomware incident database under that specific actor association without detailing confirmed breach specifics. The listing serves to document the entity's exposure within the cybersecurity threat landscape for monitoring and intelligence purposes. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and public-interest offerings consistent with its classification as a non-profit association. In the threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records documenting ransomware-related incidents and attacker attribution. The description remains neutral, avoiding assumptions about breach details, data exposure, or operational impact beyond the indexed classification. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services and functions typical of non-profit or association-based initiatives. According to the threat-intelligence index, cherokee1.org is classified as a ransomware victim linked to the interlock threat actor. This listing reflects the cybersecurity event context in which the entity was affected, without disclosing unverified technical or operational details about the incident. The record serves to catalog the relationship between the organization, its sector profile, and the associated threat actor for analytical purposes. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector related offerings. As a designated ransomware victim in this threat-intelligence index, the entity is documented alongside the associated threat actor interlock for cyber-threat analysis and risk monitoring. The listing reflects the organization's status within the ransomware incident catalog without disclosing confirmed breach details, data specifics, or operational impact. This neutral record supports cybersecurity professionals in tracking victimization patterns across sectors and geographic regions. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the Other sector and is situated in the United States. The domain represents an entity documented within a threat-intelligence index under the classification of ransomware victim. Its inclusion reflects intelligence linkage to the threat actor interlock, providing context for security professionals monitoring ransomware campaigns and associated infrastructure. This description maintains neutrality regarding specific incident details, focusing solely on the entity's categorization, geographic context, sectoral placement, and verified association with the identified threat actor. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector, serving as a US-based organization offering mission-driven services and public-interest programs. The entity was formally cataloged in this threat-intelligence index under the designation of ransomware victim, with interlock identified as the associated threat actor or source. This listing reflects the observed cybersecurity event linking cherokee1.org to interlock's activity, without disclosing unverified technical details or confirmed breach specifics. The record supports threat-resilience monitoring for sector peers and security stakeholders tracking NGO-sector ransomware exposure. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services aligned with its association profile, though specific operational details are not disclosed in the threat-intelligence context. This listing identifies cherokee1.org as a ransomware victim linked to the interlock threat actor group. The record reflects cybersecurity intelligence indexing rather than confirmed breach details, avoiding assertions about stolen data, affected records, ransom demands, or incident specifics. The classification supports monitoring of threat actor activity and victim exposure within the indexed ecosystem. |
||||||
| Ransomware | Cherokee County School District id32763 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector based in the United States, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with threat actor interlock. The listing reflects the cybersecurity impact observed on this organization without disclosing unverified incident details such as data stolen, ransom demands, or recovery specifics. This catalog entry serves to inform stakeholders about sector exposure and threat actor targeting patterns within US-based non-profit and association environments. |
||||||
| Ransomware | Cherokee County School District id32764 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services aligned with its sector focus, though specific operational details remain limited in public threat-intelligence records. According to the threat-intelligence index, cherokee1.org is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this specific threat activity within the cybersecurity intelligence framework. The description maintains neutrality regarding incident specifics, avoiding unverified claims about data handling, breach confirmation, or operational impact. |
||||||
| Ransomware | Cherokee County School District id32764 View details | United States | NGOs / Associations | — | ||
|
cherokee1.org operates within the NGO and associations sector in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity event context without disclosing unverified incident details such as data exfiltration scope, ransom demands, or specific breach confirmations. This catalog entry supports defenders and analysts in understanding organizational exposure patterns across non-profit and association sectors in the US. The designation remains neutral and factual, anchoring the record to the verified attribution by interlock. |
||||||