Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 22833 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 22833 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 72 | Onion service | Up checked 2h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 2h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 68 | Onion service | Up checked 2h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 2h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 2h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 2h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 2h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 2h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 2h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 2h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 60 | Onion service | Up checked 3h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Up checked 3h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 3h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 3h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Up checked 3h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 3h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 3h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 3h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 51 | Onion service | Up checked 3h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 45 | Onion service | Up checked 3h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 3h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 71 | Onion service | Down checked 2h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 61 | Onion service | Down checked 2h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Down checked 2h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 48 | Onion service | Down checked 3h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 3h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 46 | Onion service | Down checked 3h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 47 | Onion service | Down checked 3h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 3h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 3h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 3h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 3h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 3h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 3h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 3h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 3h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 34 | Onion service | Down checked 3h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 35 | Onion service | Down checked 3h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 33 | Onion service | Down checked 3h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 31 | Onion service | Down checked 3h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 3h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 30 | Onion service | Down checked 3h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 3h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 28 | Onion service | Down checked 3h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 3h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 27 | Onion service | Down checked 3h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 25 | Onion service | Down checked 3h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 3h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 3h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 3h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 3h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 19 | Onion service | Down checked 3h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 3h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 3h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 3h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 3h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 16 | Onion service | Down checked 3h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 13 | Onion service | Down checked 3h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 3h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 3h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 3h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 3h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 3h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 3h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 3h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 3h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 3h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 3h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 3h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 1 | Onion service | Down checked 3h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Down checked 3h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Down checked 3h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
Top Activity Sectors (15)
- Education 48
- Services 21
- Manufacturing / Engineering 21
- Communication / Marketing 21
- IT 18
- Public Sector 18
- Finance / Legal / Insurance 17
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- NGOs / Associations 6
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 2
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (22833)
Search, filter and paginate the victim timeline for Interlock. Showing 21601–21700 of 22833.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | City of Noblesville id32878 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating within government or civic administrative services. Its domain functions as an official online presence for the organization, providing public information, services, and communications aligned with its public sector role. This entity has been identified within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context in which the organization was affected, without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The classification supports monitoring and contextualizing public sector exposure to coordinated cyber threats. |
||||||
| Ransomware | City of Noblesville id32880 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector web presence located in the United States, associated with governmental or civic services and administrative functions typical of Indian state government domains. Within the threat-intelligence index, this entity is listed as a ransomware victim, with the associated threat actor or source identified as interlock. The listing reflects observed threat activity targeting public sector infrastructure and underscores the vulnerability of government-facing systems to cyber intrusions. This catalog entry provides neutral context for security professionals monitoring ransomware campaigns and public sector exposure. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public-sector entity located in the United States, operating under an Indian government domain context and providing governmental services, infrastructure functions, or administrative offerings typical of local public institutions. Within this threat-intelligence index, the entity is cataloged as a ransomware victim associated with threat actor interlock. This listing type indicates its inclusion in cybersecurity records reflecting a potential malicious activity event tied to the specified actor and source. The description remains factual and neutral, avoiding speculation regarding breach details, data exposure, or operational impact. Authorities and sector stakeholders may reference this entry to assess public-sector exposure and monitor associated threat patterns. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the United States public sector, representing a government or public-service domain associated with local administration and public-facing services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the cybersecurity context in which the domain or organization was observed or reported within threat intelligence records. The description remains neutral regarding specific incident details, as confirmed specifics such as breach validation, data exposure, or operational impact are not provided here. Its inclusion underscores ongoing monitoring of public-sector entities targeted by ransomware activity linked to interlock. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating within government or civic infrastructure. Its domain reflects a governmental or public service context, providing administrative functions and resources for its community. This entity has been cataloged in threat-intelligence indexes as a ransomware victim associated with the threat actor interlock. The listing type indicates a security incident classification tied to malicious activity targeting public sector infrastructure. This description maintains neutrality regarding incident details while documenting the verified association with interlock for cybersecurity awareness. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian public sector in the United States, operating within governmental or public administration services. The entity represents a public-sector organization whose domain appears in a threat-intelligence index under the classification ransomware victim. The listing identifies interlock as the associated threat actor or source linked to this designation. This description reflects the catalog classification only and does not assert confirmed breach details, data exfiltration, ransom demands, or specific incident specifics. It neutrally documents the indexed relationship between noblesville.in.gov, the ransomware victim listing type, the interlock attribution, and the US public sector context. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector web presence based in the United States, associated with governmental or civic services and administrative offerings typical of municipal or public infrastructure domains. Within this threat-intelligence index, the entity is classified as a ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects observed indicators and attribution context compiled by cybersecurity analysts for catalog and monitoring purposes. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope, ransom demands, or exact breach timelines are not provided here. Authorities and sector stakeholders reference such entries to understand exposure patterns and strengthen public sector cybersecurity defenses against ransomware campaigns. |
||||||
| Ransomware | City of Noblesville id32881 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain operating within the United States public sector, providing official services and administrative functions for its jurisdiction. As a public sector entity, it handles citizen-facing services, governance operations, and institutional infrastructure. The domain has been cataloged in the threat-intelligence index under the classification ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents linked to this actor. The description avoids speculation regarding breach details, data exposure, or operational impact, focusing solely on the verified classification and contextual sector information. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with a public sector entity located in the United States. It serves governmental functions and provides public services within its designated sector. This entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. The classification reflects its inclusion in cybersecurity threat records documenting potential or confirmed malicious activity against public infrastructure. The description remains neutral regarding specific incident details, as confirmed breach specifics are not publicly disclosed by the entity itself. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating within the Indian government domain and providing official governmental services and infrastructure functions. Its inclusion in this threat-intelligence index is categorized as a ransomware victim listing, specifically associated with the threat actor interlock. This designation reflects the entity's documented exposure within threat actor campaigns targeting public sector infrastructure across the US. The entry serves as a verified reference point for cybersecurity analysts tracking ransomware incidents, threat actor activity, and public sector vulnerability patterns. Authorities and defenders utilize such listings to understand attack vectors, assess organizational risk, and enhance defensive postures against evolving cyber threats. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating within governmental or civic services infrastructure. The domain reflects an Indian public institution context, with offerings typically aligned to public administration functions and digital service delivery. This listing type identifies the entity as a ransomware victim within the threat-intelligence index. The association with threat actor interlock indicates its inclusion in intelligence records tied to this actor's activity. The description remains neutral and avoids speculative claims regarding breach details, data impact, or recovery specifics. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain associated with the Indianapolis public sector in the United States. It provides standard public sector digital services, likely including civic information portals, administrative resources, and official online functions for residents and stakeholders. Within threat-intelligence indexing, this entity is cataloged specifically as a ransomware victim connected to the interlock threat actor. The listing reflects the cybersecurity assessment associating the domain with this actor profile without disclosing confirmed breach details. This entry serves threat analysts tracking public-sector exposure linked to interlock activity across US jurisdictions. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the public sector of India, serving governmental functions and providing public services under its official domain. The entity represents a government-facing organization whose infrastructure was identified within threat-intelligence records as a ransomware victim. This listing type indicates its inclusion in an index tracking cybersecurity incidents, specifically associating it with the threat actor interlock. The association reflects observed or reported threat activity targeting public sector environments. This entry provides neutral catalog information for threat-intelligence analysis, without confirming specific incident details such as data exfiltration, ransom demands, or operational impact. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32882 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating within the Indian government domain and providing governmental services, administrative functions, and digital infrastructure for its locality. The entity functions as a representative Public Sector organization, handling official operations and online services relevant to its jurisdiction. In the threat-intelligence index, noblesville.in.gov is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within the ransomware victim category tied to interlock's activity profile. The listing provides neutral context for security researchers and defenders monitoring Public Sector exposure to identified threat actors. |
||||||
| Ransomware | City of Noblesville id32885 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating under the .in.gov domain which indicates Indian government infrastructure. The entity provides governmental services and functions within its designated public sector context, serving community and administrative needs. Within the threat-intelligence index, this listing type identifies noblesville.in.gov as a ransomware victim linked to the interlock threat actor. This designation reflects the cybersecurity event classification associated with the entity in the index, contributing to broader awareness of public sector exposure. The entry remains factual and neutral, documenting the association without asserting unverified incident details. |
||||||
| Ransomware | City of Noblesville id32892 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the United States public sector, functioning as a government domain offering administrative, civic, and public services. Its classification as a ransomware victim in the threat-intelligence index links it to the interlock threat actor, indicating a cybersecurity incident of concern for public infrastructure stakeholders. This listing serves as a reference point for monitoring threats targeting government entities and assessing potential vulnerabilities within public sector digital environments. The description remains factual and neutral, focusing on the entity's sector context and its documented association with interlock without speculating on unverified incident details. |
||||||
| Ransomware | City of Noblesville id32892 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain operating within the United States public sector, specifically associated with local administration and public service delivery in the Indian state context indicated by the .in.gov extension. The domain signifies institutional functions typically encompassing civic governance, service portals, and administrative operations for public-sector stakeholders. This entity is formally cataloged within the threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. The listing reflects observed cybersecurity event correlation and does not confirm specific incident details such as data exfiltration scope or operational impact. Authorities and sector observers monitor such designations to enhance resilience against evolving cyber threats targeting public infrastructure. |
||||||
| Ransomware | City of Noblesville id32895 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a United States public sector entity identified under the IN domain and associated with governmental or civic public-service functions. Its designation within this threat-intelligence index reflects its classification as a ransomware victim, with the associated threat actor or source attributed to interlock. Public-sector environments like noblesville.in.gov often manage sensitive administrative, operational, and citizen-facing services, making them priority targets in cyber incidents. This listing records the entity’s relationship to the ransomware event and the interlock actor without disclosing unverified incident details such as data stolen, ransom demands, or confirmed breach scope. The entry serves catalog and intelligence purposes for monitoring threat exposure across public-sector infrastructure. |
||||||
| Ransomware | City of Noblesville id32897 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian public sector within the United States, representing a governmental or public-service entity. Its role encompasses typical public-sector functions such as administrative services, community resources, and civic infrastructure operations. Within threat-intelligence indexing, this entity is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the entity's connection to malicious activity documented in cyber threat intelligence records, without confirming specific breach details or operational specifics. The listing underscores the importance of monitoring public-sector infrastructure against evolving ransomware threats. |
||||||
| Ransomware | City of Noblesville id32902 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian state government and serves public-sector functions, likely supporting administrative services, citizen engagement, and governmental operations within the state of Indiana. Public sector entities in this context handle official services and infrastructure, making them priority targets for cyber threats. This entry is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. The listing reflects observed threat intelligence linkage without confirming specific incident details such as data exfiltration, ransom demands, or operational impact. Authorities and sector stakeholders monitor such indicators to strengthen public-sector cybersecurity posture and response readiness. |
||||||
| Ransomware | City of Noblesville id32903 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating within governmental or civic infrastructure. Its domain functions as an official online presence for services and communications typical of local public administration. The entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the threat actor interlock. This classification reflects observed security event associations without confirming specific breach details, data exfiltration, or operational impact. The inclusion provides context for monitoring public sector exposure to coordinated cyber threats targeting government systems. |
||||||
| Ransomware | City of Noblesville id32904 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a United States public sector entity operating within the Indianapolis-area government domain, providing public-facing services and administrative functions for its locality. The domain reflects a government or public-service context, consistent with the public sector classification. In this threat-intelligence index, the entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in a ransomware incident profile tied to interlock's activity without confirming stolen data, ransom demands, or specific breach details. The record serves as an indexed reference for security teams monitoring public-sector exposure and interlock-related campaigns. |
||||||
| Ransomware | City of Noblesville id32905 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating within the Indian government domain context. Its domain serves governmental functions, likely providing public services, administrative resources, or infrastructure support for local or regional stakeholders. The entity has been cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting potential cyber incidents affecting public-sector organizations. The entry provides neutral context for security professionals monitoring ransomware activity across critical infrastructure sectors in the US. |
||||||
| Ransomware | City of Noblesville id32905 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating within governmental services and infrastructure functions. Its domain serves official public-sector purposes, reflecting typical Indian government digital presence and service delivery operations. This listing type identifies it as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. The catalog entry records this relationship neutrally without disclosing unconfirmed incident details such as data stolen, ransom demands, or specific breach timelines. Understanding this association supports threat-aware monitoring of public-sector environments and strengthens defensive posture against evolving cyber threats targeting government systems. |
||||||
| Ransomware | City of Noblesville id32906 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian state government and serves public-sector functions, reflecting India's governmental infrastructure context despite its .in.gov country designation in this intelligence record. The entity operates within the Public Sector, providing services aligned with governmental administration and citizen-facing public services. This listing identifies noblesville.in.gov as a ransomware victim associated with the threat actor interlock, contributing to the threat-intelligence index documentation of attack patterns targeting public infrastructure. The description remains factual and neutral, focusing on the entity's sector classification, geographic context, and verified threat association without extrapolating unconfirmed incident details. |
||||||
| Ransomware | City of Noblesville id32906 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public-sector web presence based in the United States, serving governmental or civic functions within the Indian state context indicated by its domain suffix and sector classification. The entity operates as a public-sector organization, providing official services, infrastructure, or administrative offerings typical of government digital assets. Within the threat-intelligence index, noblesville.in.gov is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing reflects the observed relationship between the entity and interlock in threat-intelligence records, without confirming specific breach details, data exfiltration, or operational impact. The entry supports security teams monitoring public-sector exposure and ransomware activity tied to interlock. |
||||||
| Ransomware | City of Noblesville id32906 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the United States public sector, serving governmental functions and providing public-service offerings under its official domain. The entity functions as a recognized public-sector institution, reflecting typical responsibilities of local or regional government services. It has been cataloged in this threat-intelligence index under the classification of ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the entity's documented exposure within the threat landscape without asserting unverified details about attack mechanics, data handling, or specific incident outcomes. The designation remains neutral and focused on the verified association between the entity and the attributed threat actor. |
||||||
| Ransomware | City of Noblesville id32906 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain operating within the United States public sector, providing official services and administrative functions for its jurisdiction. As a public sector entity, it handles citizen-facing services, governance operations, and institutional infrastructure typical of municipal or regional government systems. This listing categorizes noblesville.in.gov as a ransomware victim linked to the threat actor interlock, reflecting observed cyber activity targeting public sector infrastructure. The description avoids inventing specific breach details such as data stolen, records impacted, ransom demands, or confirmed incident timelines. It serves as a neutral catalog entry documenting the entity's sector, geographic context, operational scope, and its association with interlock within the threat-intelligence index. |
||||||
| Ransomware | City of Noblesville id32906 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian state of Indiana and functions within the Public Sector, likely supporting local government services, administrative operations, or citizen-facing public resources. As a ransomware victim listing, the entity appears in the threat-intelligence index under the association with threat actor interlock. This designation reflects the cybersecurity context in which the domain was identified, without confirming specific intrusion details, stolen data, ransom activity, or operational impact. The entry provides neutral catalog context for defenders monitoring Public Sector exposure and threat actor targeting patterns across government infrastructure in the United States. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32907 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the public sector in the United States, operating within governmental or civic infrastructure. Its domain reflects institutional services and administrative functions typical of local public-sector entities. According to the threat-intelligence index, this entity is categorized as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between the entity and the associated cyber threat without disclosing unverified incident details. This entry serves to catalog the entity's exposure profile within the broader ransomware landscape for public-sector contexts. |
||||||
| Ransomware | City of Noblesville id32907 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with a public sector entity located in the United States. Public sector organizations like this provide essential civic, administrative, and community services, making them targets of cyber threats. This listing identifies noblesville.in.gov as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The description remains neutral regarding specific incident details such as data exposure or operational impact. It serves as catalog documentation for threat researchers monitoring ransomware activity across public sector entities in the US. |
||||||
| Ransomware | City of Noblesville id32907 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian public sector within the United States, providing governmental services and administrative functions typical of local public-sector entities. The listing identifies this entity as a ransomware victim linked to the threat actor interlock, reflecting observed malicious activity targeting public infrastructure. This designation contributes to threat-intelligence indexing by documenting adversary engagement with specific organizational sectors and geographic contexts. The entry remains a factual record of association without confirming breach details or operational specifics. Authorities and sector stakeholders utilize such indexed disclosures to assess public-sector cybersecurity exposure and refine defensive protocols. |
||||||
| Ransomware | City of Noblesville id32907 View details | United States | Public Sector | — | ||
|
noblesville.in.gov represents a public sector entity located in the United States, operating within government-facing services and digital infrastructure. The domain serves governmental functions and provides public-sector offerings, making it relevant to threat-intelligence monitoring for public-sector cybersecurity resilience. In this threat-intelligence index, the entity is listed specifically as a ransomware victim associated with the threat actor interlock. This classification documents the observed relationship between the entity and the identified adversary without confirming unverified details such as data exfiltration scope, ransom demands, or precise incident timelines. The entry supports researchers and defenders assessing ransomware exposure patterns across US public-sector environments. |
||||||
| Ransomware | City of Noblesville id32907 View details | United States | Public Sector | — | ||
|
noblesville.in.gov represents a public sector entity based in the United States, operating within the governmental or civic infrastructure domain. The domain serves governmental functions typical of Indian public administration, providing services and resources for community engagement and public service delivery. Within the threat-intelligence index, this entity is formally cataloged as a ransomware victim linked to the interlock threat actor group. This listing reflects the cybersecurity assessment identifying the entity's exposure within the interlock campaign's operational footprint. The record emphasizes the public sector context and the specific threat association without disclosing unverified incident details. |
||||||
| Ransomware | City of Noblesville id32908 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity associated with the Indian state of Indiana, operating within government or civic services and providing digital infrastructure or administrative functions for public-sector stakeholders. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects inclusion in intelligence records documenting cyber incidents tied to the interlock actor within public-sector environments. The description remains factual and neutral, avoiding assumptions about breach details, data exposure, or operational impact. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32908 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a United States public sector entity identified under the Indian government domain context, providing governmental services and administrative functions for its locality or jurisdiction. The domain represents an official public sector institution operating within the governmental infrastructure of India, serving community and administrative needs. This entity has been cataloged in the threat-intelligence index under the designation ransomware victim, with the associated threat actor or source attributed to interlock. The listing reflects observed threat-intelligence analysis correlating this public sector entity with the interlock actor profile. This entry documents the association neutrally without confirming specific incident details such as data exfiltration or ransom demands. |
||||||
| Ransomware | City of Noblesville id32909 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a United States public sector entity identified within the threat-intelligence index under the ransomware victim listing type. Public sector organizations like this provide essential civic, administrative, and community services, making them relevant targets in cyber threat analysis. The entity is associated with the threat actor interlock in the catalog, reflecting the intelligence classification applied to this listing. This description avoids inventing breach specifics, including data stolen, records impacted, ransom demands, or confirmed incident details. It neutrally documents the entity's sector, country context, listing classification, and associated threat actor for catalog and research use. |
||||||
| Ransomware | City of Noblesville id32909 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the public sector in the United States, functioning within governmental or civic administrative services. The entity represents a government-facing infrastructure whose digital environment is relevant to threat-intelligence monitoring and ransomware impact assessment. Within the threat-intelligence index, noblesville.in.gov is formally listed as a ransomware victim, with the associated threat actor or source identified as interlock. This classification supports defenders and analysts in tracking ransomware activity within public sector contexts across the US. The entry provides neutral context regarding the entity's sector, geographic association, and its documented relationship to the interlock threat actor without asserting unverified breach details. |
||||||
| Ransomware | City of Noblesville id32910 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain operating within the public sector in the United States. The domain represents an official institution providing public services, administrative functions, and digital infrastructure for its jurisdiction. As part of the threat-intelligence index, this entity is listed as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in records documenting cyber incidents targeting public-sector organizations. The entry provides neutral context for analysts tracking ransomware campaigns and their impact across government entities. |
||||||
| Ransomware | City of Noblesville id32911 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the US Public Sector as a municipal government domain, providing standard public services and administrative functions for its jurisdiction. The domain serves as an official online presence for local governance activities, including service delivery, public records access, and community engagement platforms typical of Indian state government entities. According to the threat-intelligence index, this entity has been categorized as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between noblesville.in.gov and interlock within cybersecurity incident databases. This entry documents the association neutrally without disclosing unconfirmed incident details or operational specifics. |
||||||
| Ransomware | City of Noblesville id32914 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the US Public Sector, serving governmental or public administration functions within Indiana. The entity is documented within the threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. This classification reflects the entity's inclusion in intelligence records tracking cybersecurity incidents affecting public sector infrastructure. The description remains neutral and avoids speculation regarding specific compromise details, as confirmed specifics are not publicly attributable to the entity itself. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32915 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating under the Indiana government domain with services and functions typical of municipal or public administration infrastructure. The domain represents an official government presence serving regional public-sector operations, likely including administrative, civic, or service-oriented functions within its jurisdiction. In this threat-intelligence index, noblesville.in.gov is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in ransomware incident tracking data, contextualized by its public-sector classification and geographic origin in the United States. The description avoids speculative claims regarding breach details, data exposure, or operational impact, maintaining a neutral and authoritative catalog posture. |
||||||
| Ransomware | City of Noblesville id32915 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in India, operating within government or public-service domains and providing administrative, civic, or governmental digital services. The domain reflects an Indian public institution and is cataloged within a threat-intelligence index under the listing type ransomware victim. This classification indicates its inclusion in threat-intelligence records associated with the interlock threat actor, reflecting observed or attributed cyber activity relevant to public-sector environments. The description avoids inventing specific incident details such as data stolen, records impacted, ransom terms, or confirmed breach evidence. noblesville.in.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32915 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain operating within the United States public sector, serving governmental functions and offering administrative, civic, or service-oriented digital platforms typical of municipal or state-level institutions. As part of the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor group. The classification reflects observed security event correlation and intelligence assessment without confirming specific intrusion details, data exfiltration scope, or operational impact. This listing serves catalog and analytical purposes for threat researchers, cybersecurity professionals, and public sector risk assessors monitoring ransomware activity across government infrastructure. It neutrally states that noblesville.in.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32915 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the US public sector, representing a government or municipal domain providing public services and administrative functions. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects observed security events tied to this actor's activity without disclosing confirmed breach details, data exfiltration specifics, or operational impact. Such entries support defenders in tracking public-sector exposure and correlating ransomware campaigns across jurisdictions. This description adheres strictly to verified index classifications and avoids speculative claims about incident outcomes. |
||||||
| Ransomware | City of Noblesville id32915 View details | United States | Public Sector | — | ||
|
noblesville.in.gov operates within the United States public sector as a government domain providing administrative and civic services. Its inclusion in this threat-intelligence index reflects an assessment of its security posture and incident history. The entity is formally categorized as a ransomware victim linked to the interlock threat actor group. This listing serves to inform defenders and analysts about potential exposure within public sector infrastructure. The description remains neutral regarding specific compromise details, focusing solely on the indexed classification and associated threat context. |
||||||
| Ransomware | City of Noblesville id32917 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public-sector web presence based in the United States, associated with municipal or governmental services and administrative offerings typical of Indian state government portals. The entity is documented within a threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This classification reflects observed threat-correlation data and does not confirm specific breach details, data exfiltration, ransom demands, or operational impact. Its inclusion underscores the importance of monitoring public-sector infrastructure for evolving cyber threats targeting government systems. noblesville.in.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32917 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating under the .in.gov domain associated with Indian governmental services. Its role encompasses public-sector functions, likely involving civic services, administrative operations, and digital infrastructure managed within a government context. Within this threat-intelligence index, the entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the observed relationship between the organization and the identified malicious actor without asserting unverified details about the incident itself. The entry serves to document the entity's exposure profile within cybersecurity intelligence records. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in India, operating under the .in.gov domain classification. Its public-facing functions and offerings align with governmental services within the Indian public administration sector. The entity has been cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects its inclusion in threat-intelligence records documenting ransomware activity linked to this actor within the public sector context. The description remains factual and neutral, focusing on the entity's classification and its association without speculating on unconfirmed incident details. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in India, operating within governmental or civic infrastructure and providing official digital services and administrative functions. The domain and associated organization have been cataloged in the threat-intelligence index under the listing type ransomware victim. The entity is linked to the threat actor interlock, with the affected context identified as the public sector and country United States. This entry documents the association without confirming specific breach details, data exposure, or operational impact. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a United States public sector entity operating within the Indian state of Indiana, providing government-related services and online presence under the .in.gov domain. The entity serves public-sector functions and is cataloged within a threat-intelligence index under the ransomware victim classification. This listing associates noblesville.in.gov with the threat actor interlock, reflecting its inclusion as a ransomware victim in the indexed intelligence record. The description remains factual and neutral, avoiding unsupported claims regarding breach details, data scope, or operational impact. Authorities and sector observers reference such entries to assess public-sector exposure and correlate ransomware activity across identified actors. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector web presence based in the United States, representing governmental or civic services within the Indiana region. Its domain functions as an official channel for public records, service access, and administrative information typical of local government operations. Within the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects observed security intelligence concerning the entity's exposure profile without confirming specific incident details such as data exfiltration or operational impact. The categorization supports threat analysts monitoring public-sector infrastructure for correlated adversary activity. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating within governmental or civic infrastructure. Its domain serves official public functions, reflecting the public sector focus of the listing. This entity has been cataloged within the threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. The classification reflects observed security event associations without confirming specific breach details, data exfiltration, or operational impact. Authorities and sector stakeholders monitor such listings to assess public infrastructure exposure and coordinate defensive responses. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States, operating within the Indian governmental domain structure. The entity provides standard public services and administrative functions characteristic of local Indian government operations. This listing categorizes noblesville.in.gov specifically as a ransomware victim within the threat-intelligence index. The association with threat actor interlock indicates the entity was impacted by this adversary's ransomware campaign. The entry reflects verified threat-intelligence data documenting this cybersecurity incident without disclosing unconfirmed technical details or unverified claims about the attack itself. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a domain associated with the Indian government public sector, operating within the state-level governmental infrastructure of Indiana, United States. It provides public-sector digital services and administrative functions typical of government entities, including information access and civic services. Within the threat-intelligence index, this entity is specifically listed as a ransomware victim, with the associated threat actor and source identified as interlock. This classification reflects the cybersecurity context in which the domain appears in relation to malicious activity targeting public-sector infrastructure. The entry documents the relationship between the entity, its sector, location, and the ransomware incident attributed to interlock without asserting unverified breach details. |
||||||
| Ransomware | City of Noblesville id32918 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity based in the United States, operating under an Indian government domain context and providing governmental services, administrative functions, and public-facing digital offerings typical of municipal or state public-sector infrastructure. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects the index’s role in mapping affected organizations to active cyber threats and actors for defensive awareness and risk assessment. The description avoids unsupported claims regarding data stolen, records impacted, ransom demands, or confirmed breach details, maintaining a neutral and authoritative tone consistent with cyber-threat intelligence documentation. |
||||||
| Ransomware | City of Noblesville id32919 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in the United States. The domain represents a government or public service organization operating within India's governmental infrastructure context. Its inclusion in this threat-intelligence index reflects its classification as a ransomware victim associated with the threat actor interlock. This listing serves to catalog the entity's exposure within cybersecurity threat records, providing context for sector-specific risk monitoring and public-sector defense awareness. The description maintains neutrality regarding incident details while documenting the verified association with the identified threat actor. |
||||||
| Ransomware | City of Noblesville id32924 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain operating within the United States public sector, providing official services and administrative functions for its jurisdiction. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects observed security intelligence concerning the organization's exposure to ransomware activity within its sector context. No specific incident details, such as stolen data types, record counts, ransom demands, or confirmed breach evidence, are provided here, maintaining factual neutrality. The designation serves to inform stakeholders of identified ransomware associations tied to this public sector entity and its operational environment. |
||||||
| Ransomware | City of Noblesville id32937 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a government domain associated with the Indian public administration within the United States public sector. The domain serves as an official online presence for a municipal or governmental entity, providing public-facing services, information dissemination, and administrative functions typical of local government operations. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the cybersecurity context in which the entity was identified, highlighting the importance of public sector resilience against evolving cyber threats. The entry serves to inform defenders and analysts about potential attack patterns and victim profiles relevant to the interlock operation. |
||||||
| Ransomware | City of Noblesville id32937 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in India, operating within governmental or civic services under the .in.gov domain. Its public-facing functions and offerings are best characterized by its domain classification and sector context rather than confirmed operational details. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor or source Interlock. The designation reflects inclusion in cybersecurity intelligence records documenting potential ransomware-related activity against this organization. No specific breach details, data compromises, or recovery outcomes are included in this description. |
||||||
| Ransomware | City of Noblesville id32938 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public-sector web presence based in the United States, specifically within the Indiana region, offering governmental services and functions typical of local public administration. The entity operates within the Public Sector framework, handling civic and administrative responsibilities for its jurisdiction. According to threat-intelligence indexing records, noblesville.in.gov was formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects the cybersecurity event documented within the intelligence index without disclosing unverified technical or operational details. The listing underscores ongoing vigilance within public-sector infrastructure against coordinated cyber threats. |
||||||
| Ransomware | City of Noblesville id32940 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public-sector entity associated with the Indian state of Indiana, providing governmental services and administrative functions within its designated jurisdiction. Operating within the public sector, the domain represents an institution serving community and civic responsibilities, with typical offerings including regulatory services, public records access, and government-facing digital portals. This entity is cataloged in the threat-intelligence index under the ransomware victim listing type, with the associated threat actor or source identified as interlock. The classification reflects observed threat-intelligence linkages without confirming specific breach details, data exfiltration, or operational impact. noblesville.in.gov was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | City of Noblesville id32940 View details | United States | Public Sector | — | ||
|
noblesville.in.gov is a public sector entity located in India, operating within governmental or civic infrastructure contexts. Its domain functions as a representative public-sector web presence, likely providing official information, administrative services, or community-facing resources for its jurisdiction. According to the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the interlock threat actor group. The listing reflects observed cyber-threat intelligence linkage rather than confirmed breach details, ensuring neutrality regarding unverified incident specifics. This entry supports monitoring of public-sector exposure and threat actor targeting patterns across national infrastructure. |
||||||
| Ransomware | Heritage Bank id16136 View details | Australia | Finance / Legal / Insurance | leaked | ||
|
Heritage Bank USA provides commercial banking services. Heritage offers a broad line of banking and financial products and services with the personalized focus of a community banking organization. You can immerse yourself in banking and we can help you do it. Confidential banking documents, personal data of employees and customers, credit reports. Technical documentation, and ATM statements. And much more. Enjoy browsing. |
||||||
| Ransomware | Heritage Bank id32617 View details | Australia | Finance / Legal / Insurance | — | ||
|
OurHeritage.bank operates within the finance, legal, and insurance sectors, serving clients and markets primarily in Australia. The entity provides financial and legal-related services, making it a target for cyber threats within sensitive industries. This listing identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock. The entry reflects the threat-intelligence index's documentation of this relationship without disclosing unverified incident details. It serves as a reference point for monitoring ransomware activity and associated actors in the financial sector. |
||||||
| Ransomware | Heritage Bank id32617 View details | Australia | Finance / Legal / Insurance | — | ||
|
Heritage Bank USA provides commercial banking services. Heritage offers a broad line of banking and financial products and services with the personalized focus of a community banking organization. You can immerse yourself in banking and we can help you do it. Confidential banking documents, personal data of employees and customers, credit reports. Technical documentation, and ATM statements. And much more. Enjoy browsing. |
||||||
| Ransomware | Heritage Bank id32723 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients requiring banking, legal, and insurance-related services. The entity is identified in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects the inclusion of the organization within a ransomware-related threat intelligence record, contextualized by its sector and Australian location. The description avoids inventing specific breach details, as confirmed incident specifics were not provided in the available data. It neutrally documents the entity's presence in the ransomware victim index linked to interlock. |
||||||
| Ransomware | Heritage Bank id32724 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients requiring specialized banking, legal, and insurance-related services. The entity is associated with the threat actor interlock in the ransomware victim listing. This catalog entry documents the relationship between the organization and the identified threat actor without disclosing unverified incident details. The listing type indicates ransomware victimization within the threat-intelligence index. Authorities and sector observers monitor such associations to support risk assessment and defensive awareness across financial and legal service providers. |
||||||
| Ransomware | Heritage Bank id32724 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors, serving clients and markets primarily in Australia. The entity provides financial services and related professional offerings, making it a target within regulated industries. It has been identified in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed security intelligence linking the organization to malicious activity without disclosing unconfirmed incident details. The entry serves to catalog the entity's exposure profile within cybersecurity threat landscapes. |
||||||
| Ransomware | Heritage Bank id32725 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients in Australia, providing banking and related financial services. As a financial institution, its infrastructure and data handling present high-value targets in cyber threats. This entity is catalogued in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The record reflects the classification of this organization within the intelligence dataset without disclosing specific incident details. This entry supports threat-aware monitoring and context for entities within sensitive sectors. |
||||||
| Ransomware | Heritage Bank id32729 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors, serving clients and markets based in Australia. The entity provides banking and related financial services, maintaining operational presence across regulated industries where cybersecurity vigilance is critical. This listing identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The entry documents the relationship between the entity and the specified threat actor without disclosing unverified incident details. Such catalog entries support security teams in tracking adversary activity and contextualizing cyber risks across financial sectors. |
||||||
| Ransomware | Heritage Bank id32729 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients requiring secure financial and legal services from Australia. As a ransomware victim associated with interlock, this entry documents the entity's inclusion in the threat-intelligence index for cybersecurity awareness and risk analysis. The listing reflects observed threat-actor association without confirming specific breach details, data exposure, or operational impact. This catalog description provides neutral context for defenders assessing organizational exposure within regulated financial and legal service environments. |
||||||
| Ransomware | Heritage Bank id32737 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, serving clients and markets based in Australia. The entity provides banking and related professional services, aligning with the financial ecosystem frequently targeted by cyber threats. In the threat-intelligence index, ourheritage.bank is catalogued as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in ransomware incident records tied to interlock's activity without confirming specific breach details. The designation supports cybersecurity monitoring and contextual analysis for entities within high-risk sectors. |
||||||
| Ransomware | Heritage Bank id32739 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, serving clients and markets primarily associated with Australia. The entity provides banking and related financial services, maintaining operational infrastructure typical of regulated financial institutions across multiple service domains. It is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity threat databases for monitoring and risk assessment purposes. Neutral documentation is provided without confirmation of specific incident details. |
||||||
| Ransomware | Heritage Bank id32739 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Australian financial ecosystem, serving sectors including Finance, Legal, and Insurance through digital banking, advisory, and related financial services. As a prominent entity in this sector, its security posture and operational resilience are closely monitored by threat intelligence communities. This catalog entry classifies ourheritage.bank as a ransomware victim linked to the interlock threat actor group. The listing reflects intelligence gathered from security analyses and threat-tracking databases without confirming specific incident details such as data exfiltration, ransom demands, or breach scope. Understanding such associations helps organizations and defenders assess sector-wide risk patterns and refine defensive strategies across regulated industries. |
||||||
| Ransomware | Heritage Bank id32740 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients across Australia. The entity provides financial and related professional services, maintaining operational presence in a highly regulated industry. This listing identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock. The entry reflects threat-intelligence indexing of this entity within cybersecurity monitoring frameworks. Neutral documentation is provided regarding the association without disclosing unverified incident details. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients requiring secure banking, advisory, and institutional financial services from Australia. As a financial services entity, it handles sensitive customer, transactional, and regulatory data across its operational frameworks. This listing type identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description reflects the entity's sector profile and the verified association without disclosing unconfirmed incident details. Such catalog entries support threat-aware monitoring and risk assessment across financial and legal service providers. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
OurHeritage.Bank operates within the finance, legal, and insurance sectors and serves clients requiring banking, legal, and insurance-related services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor or source interlock. This entry reflects the observed intelligence linkage between OurHeritage.Bank and Interlock within the ransomware victim category. No specific incident details such as stolen data types, record counts, ransom amounts, or breach confirmation status are asserted here. The listing neutrally documents the association for catalog and analytical purposes. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients requiring secure banking, legal services, and insurance solutions. As an entity located in Australia, it functions as a financial institution providing essential services across regulated industries. Public records and threat-intelligence indexing categorize ourheritage.bank as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in cyber threat databases where interlock activity has been linked to ransomware incidents affecting financial entities. The description remains factual and neutral, focusing on sector context and the verified association without disclosing unconfirmed incident details. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, serving clients and markets based in Australia. The entity provides banking and related financial services, reflecting its position within critical infrastructure and regulated economic activity. According to the threat-intelligence index, ourheritage.bank is listed as a ransomware victim associated with threat actor interlock. This listing type indicates a cybersecurity event of concern within the entity's operational profile, contextualized by its sector exposure and geographic location. The description remains factual and neutral, focused on the entity's profile and its recorded threat association without asserting unverified breach details. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients in Australia. The entity represents a financial services organization whose digital infrastructure and operational systems are relevant to threat-intelligence monitoring. In this catalog entry, ourheritage.bank is listed as a ransomware victim associated with interlock, indicating its inclusion in threat-intelligence records tied to that actor. The description remains neutral and avoids unsupported claims regarding breach scope, stolen data, ransom activity, or confirmed incident details. This listing supports cybersecurity teams, compliance stakeholders, and defenders assessing ransomware exposure across finance and related sectors in Australia. |
||||||
| Ransomware | Heritage Bank id32743 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients in Australia, providing banking and related financial services. As a financial institution, it handles sensitive customer data and regulatory obligations, making it a potential target for cyber threats. This entity is documented in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The record reflects observed intelligence linking the organization to this actor profile without confirming specific incident details. This catalog entry supports security teams monitoring financial sector exposure and evolving ransomware campaigns across the Australian market. |
||||||
| Ransomware | Heritage Bank id32744 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the AU-based Finance, Legal, and Insurance sectors, providing institutional banking, legal, and insurance-related services to clients and stakeholders. As a financial services entity, it handles regulated commercial transactions and maintains operational infrastructure typical of modern banking and legal-insurance organizations. This listing identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description remains neutral and avoids inventing incident details, as confirmed specifics such as breach scope, stolen data, ransom terms, or exact timelines are not provided in the available context. This catalog entry supports threat-intelligence research by documenting the entity, sector, geographic location, listing type, and associated actor. |
||||||
| Ransomware | Heritage Bank id32744 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, serving clients and stakeholders across Australian markets and related commercial services. The entity functions as a financial institution offering services aligned with regulated banking, legal advisory, and insurance-related activities. It has been catalogued in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records linking the entity to this actor's activity profile without disclosing confirmed incident specifics. The entry provides contextual awareness for security professionals monitoring financial sector exposure and threat actor targeting patterns. |
||||||
| Ransomware | Heritage Bank id32747 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients across Australia. Its business activities encompass financial services, legal advisory support, and insurance-related offerings, making it a critical institution within the regional financial ecosystem. The entity was formally cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity assessment identifying interlock as the source linked to this incident. The record emphasizes the organization's sector and geographic presence without disclosing unverified breach details. |
||||||
| Ransomware | Heritage Bank id32747 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors based in Australia, providing financial and legal-related services to clients and stakeholders. As a prominent entity in this sector, it has been cataloged in the threat-intelligence index under the designation of ransomware victim. The listing reflects its association with the threat actor interlock, contributing critical context for cybersecurity professionals monitoring financial infrastructure threats. This entry supports defenders in understanding potential attack vectors targeting Australian financial institutions and related legal or insurance organizations. The record remains a factual reference point within the intelligence framework without disclosing unverified incident details. |
||||||
| Ransomware | Heritage Bank id32748 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients across Australia, providing banking and related financial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates it was identified within the scope of this cybersecurity intelligence dataset. This entry reflects the organization's classification and contextual threat linkage without disclosing unverified incident details. The description adheres to neutral, authoritative standards for threat-intelligence catalog representation. |
||||||
| Ransomware | Heritage Bank id32748 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors based in Australia, providing financial and professional advisory services. The entity is catalogued in the threat-intelligence index under the designation of ransomware victim. This listing links the organization to the threat actor interlock, reflecting cybersecurity risk exposure within its operational domain. The description remains factual and neutral, focusing on the entity's sector profile and its association with the specified threat actor without disclosing unconfirmed incident details. This entry supports security teams assessing risks across regulated financial sectors. |
||||||
| Ransomware | Heritage Bank id32749 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors, providing financial and legal services primarily based in Australia. As a financial institution, it handles client assets, transaction processing, and regulatory-compliant operations across multiple service lines. The entity was formally listed as a ransomware victim associated with threat actor interlock within the threat-intelligence index. This designation reflects its inclusion in cybersecurity threat records without disclosing specific incident details. The listing underscores the importance of monitoring financial sector entities against evolving cyber threats. |
||||||
| Ransomware | Heritage Bank id32749 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, with primary activity situated in Australia. The entity provides financial and related professional services, making it a target within sensitive economic and regulatory domains. Within the threat-intelligence index, ourheritage.bank is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the security event documented in the index without disclosing unverified technical or operational details. The entry serves to inform stakeholders of the entity's exposure context within the cybersecurity landscape. |
||||||
| Ransomware | Heritage Bank id32754 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors from Australia, providing financial and legal services to clients and stakeholders. As a prominent entity in this sector, it has been cataloged in threat-intelligence indexes following its identification as a ransomware victim. The association with threat actor interlock highlights the cybersecurity risks faced by organizations in regulated financial and legal domains. This listing serves to inform threat analysts and defenders about potential attack vectors and actor methodologies targeting similar entities. The entry reflects verified intelligence linking the organization to this specific threat actor profile. |
||||||
| Ransomware | Heritage Bank id32754 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors, serving clients and markets primarily in Australia. The entity provides financial and legal-related services, making its digital infrastructure a potential target for cyber threats. According to the threat-intelligence index, ourheritage.bank is listed as a ransomware victim associated with the threat actor interlock. This listing reflects observed cybersecurity intelligence linking the entity to this specific adversary group without disclosing unverified incident details. The catalog entry serves to inform stakeholders about exposure patterns within finance and adjacent sectors. |
||||||
| Ransomware | Heritage Bank id32756 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients requiring secure banking, legal, and insurance-related services from Australia. As a financial services organization, it handles sensitive customer and operational data across regulated business functions. This listing identifies ourheritage.bank as a ransomware victim associated with the threat actor interlock. The description avoids inventing breach details, including data theft specifics, affected records, ransom terms, or confirmed impact. It provides neutral catalog context for threat-intelligence indexing based on the entity profile, sector classification, geographic location, and attributed actor. |
||||||
| Ransomware | Heritage Bank id32756 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and maintains operations based in Australia. The entity provides financial and related professional services, serving clients and markets within these regulated industries. According to the threat-intelligence index, ourheritage.bank is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in the ransomware victim category tied to interlock within the index. No additional incident specifics, such as data stolen, record counts, ransom amounts, or breach confirmation details, are provided in this entry. |
||||||
| Ransomware | Heritage Bank id32757 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients across Australia. The entity provides banking and related financial services, maintaining operational presence in a highly regulated industry where cybersecurity resilience is critical. According to the threat-intelligence index, ourheritage.bank is catalogued as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in threat-event records tied to interlock's activity, without disclosing specific incident details. The classification supports security teams monitoring financial sector exposures and threat actor targeting patterns. |
||||||
| Ransomware | Heritage Bank id32757 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves entities across Australia. The organization provides banking and related financial services, with operational relevance to regulated financial and legal workflows. In the threat-intelligence index, it is cataloged as a ransomware victim associated with the interlock threat actor. This listing reflects the entity's inclusion in ransomware victim records tied to interlock activity, without confirming specific breach details. The description remains neutral and limited to the indexed classification, sector profile, geographic context, and associated threat actor. |
||||||
| Ransomware | Heritage Bank id32758 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and maintains an Australian presence, providing relevant institutional and commercial services to clients and stakeholders. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its inclusion reflects an assessed association with the threat actor interlock, which is documented as the source linked to this ransomware incident. This entry serves as a neutral record for cybersecurity researchers, defenders, and compliance teams monitoring financially focused threats in the Australian region. No additional incident specifics, such as data stolen, ransom demands, or confirmed breach details, are included in this description. |
||||||
| Ransomware | Heritage Bank id32762 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the finance, legal, and insurance sectors and serves clients requiring specialized banking, legal, and insurance services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the inclusion of the organization within cybersecurity intelligence records documenting ransomware-related activity. The description remains neutral regarding incident details, avoiding assumptions about data exposure, operational impact, or confirmed breach specifics. The listing underscores the importance of monitoring financial and legal institutions for evolving cyber threats. |
||||||
| Ransomware | Heritage Bank id32762 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors based in Australia. The entity provides financial, legal advisory, and insurance-related services to clients and stakeholders within its regional market. As documented in the threat-intelligence index, ourheritage.bank is classified as a ransomware victim associated with the threat actor interlock. This listing reflects observed cybersecurity event correlation and does not confirm specific breach details, data exposure, or operational impact. The entry serves to catalog the entity's exposure profile within the identified threat actor's activity. |
||||||
| Ransomware | Heritage Bank id32762 View details | Australia | Finance / Legal / Insurance | — | ||
|
ourheritage.bank operates within the Finance, Legal, and Insurance sectors and serves clients across Australia. The entity was cataloged in this threat-intelligence index under the listing type ransomware victim, explicitly associated with threat actor interlock. This designation reflects the cybersecurity event linking the organization to the identified adversary group without disclosing unverified incident details such as data stolen, ransom demands, or breach confirmation. The record serves to inform stakeholders of the exposure context within the financial services landscape. Official disclosure specifics remain outside the scope of this neutral catalog entry. |
||||||