Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 23659 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 23659 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 4h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 4h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 4h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 4h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 4h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 4h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 65 | Onion service | Up checked 4h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 4h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 4h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 4h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 4h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 4h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 4h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 4h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 53 | Onion service | Up checked 4h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 54 | Onion service | Up checked 4h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 4h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 4h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 4h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 4h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 4h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 64 | Onion service | Down checked 4h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 60 | Onion service | Down checked 4h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Down checked 4h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 49 | Onion service | Down checked 4h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 4h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 4h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 4h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 4h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 4h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 4h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 40 | Onion service | Down checked 4h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 4h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 4h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 4h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 37 | Onion service | Down checked 4h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 4h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 4h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 4h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 4h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 4h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 4h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 4h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 4h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 4h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 4h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 4h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 4h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 4h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 4h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 4h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 18 | Onion service | Down checked 4h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 4h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 4h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 17 | Onion service | Down checked 4h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 23
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 11
- Construction / Real Estate 11
- NGOs / Associations 6
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (23659)
Search, filter and paginate the victim timeline for Interlock. Showing 2701–2800 of 23659.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Reynella East College id32806 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity registered within Australia, operating within the education sector and providing academic or institutional services under its domain identity. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the observed security event classification and contextual metadata rather than confirmed breach details, operational impact metrics, or specific incident findings. This entry supports researchers and defenders in mapping ransomware activity across education sectors in Australia and tracking adversary-source relationships for proactive defense and situational awareness. |
||||||
| Ransomware | Reynella East College id32807 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the sa.edu.au domain infrastructure, serving academic and educational services in the education sector. As a ransomware victim associated with threat actor interlock, this listing reflects a cybersecurity incident where the organization was impacted by malicious ransomware activity targeting education infrastructure in Australia. The catalog entry documents the entity's classification within the threat-intelligence index, providing context on the sector, geographic location, and associated threat actor without disclosing unverified incident details. This record serves to inform stakeholders about potential risks faced by educational institutions in Australia and underscores the importance of vigilance against ransomware threats in critical public and academic sectors. |
||||||
| Ransomware | Reynella East College id32807 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a web address associated with an education-sector entity located in Australia. The domain operates within the higher education and academic services context, providing institutional services typical to Australian educational organizations. This listing identifies the entity as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. The classification reflects observed cybersecurity event correlation without disclosing unverified incident details such as data exfiltration scope, ransom demands, or internal breach confirmation. The entry serves catalog and analytical purposes for monitoring ransomware activity across education sectors in Australia. |
||||||
| Ransomware | Reynella East College id32808 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain and entity associated with the Australian education sector, reflecting institutional services and digital operations within higher or continuing education. As cataloged in this threat-intelligence index, it is classified as a ransomware victim entity tied to the threat actor interlock. The listing type identifies the relationship between the entity and the associated cyber threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. This description maintains neutrality and focuses on the entity's sector, geographic context, and the confirmed association for analytical indexing purposes. |
||||||
| Ransomware | Reynella East College id32808 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain associated with an Australian education entity operating within the .edu.au infrastructure. Its sector classification identifies it within the education sector of Australia, where institutions often manage student records, administrative systems, and research resources. This listing type categorizes the entity as a ransomware victim connected to the threat actor interlock. The description adheres to neutral, encyclopedic standards without inventing specifics such as breach details, data stolen, ransom demands, or confirmed incident timelines. It serves as indexed catalog copy reflecting the entity's sector, geographic context, listing classification, and associated threat intelligence attribution. |
||||||
| Ransomware | Reynella East College id32808 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational institution based in Australia, operating within the education sector and providing academic or institutional services under its domain identity. The entity is cataloged as a ransomware victim, with the associated threat actor identified as interlock, reflecting its inclusion within threat-intelligence indexing frameworks. This listing type documents the cybersecurity event classification without disclosing unverified incident details such as data exfiltration scope, ransom demands, or internal forensic findings. The entry serves to contextualize the organization's exposure within the broader landscape of cyber incidents targeting education infrastructure in Australia. It neutrally states that reynellaec.sa.edu.au was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Reynella East College id32808 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the sa.edu.au domain infrastructure, serving academic and educational services in the education sector. As a ransomware victim associated with the threat actor interlock, this listing reflects a cybersecurity incident within this sector. The entry documents the entity's classification in the threat-intelligence index, providing context on the attack vector and sector exposure without disclosing unconfirmed technical or operational details. This catalog entry supports threat-aware monitoring and awareness of risks affecting education institutions in Australia. It neutrally states that reynellaec.sa.edu.au was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Reynella East College id32808 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity within the Australian education sector, identifiable by its domain structure and institutional context. The organization operates within higher education services, providing academic and administrative functions consistent with its sector classification. It is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects inclusion within intelligence records tracking cybersecurity incidents and adversary activity relevant to education infrastructure in Australia. The entry provides neutral context for researchers, defenders, and stakeholders monitoring ransomware threats across educational sectors. |
||||||
| Ransomware | Reynella East College id32809 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the sa.edu.au domain infrastructure, serving academic and educational services in the education sector. As a ransomware victim associated with the threat actor interlock, this listing reflects threat-intelligence indexing of an organization impacted by cyber activity targeting educational infrastructure. The entry documents the entity's sector, geographic location, domain context, and its classification within the ransomware victim index alongside the interlock attribution. This catalog description provides neutral, factual context for researchers and defenders analyzing threats against education sector organizations in Australia without confirming specific incident details. |
||||||
| Ransomware | Reynella East College id32809 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational institution based in Australia within the education sector, operating under the sa.edu.au domain structure commonly associated with Australian academic and educational organizations. The entity is cataloged as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the entity's inclusion in a threat-intelligence index where ransomware incidents and attacker attribution are systematically documented for risk assessment and defensive analysis. The description adheres to neutral, factual reporting without speculating on unverified technical details, data exfiltration scope, or recovery outcomes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Reynella East College id32809 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity based in Australia within the education sector, providing academic and institutional services under its domain identity. The entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects the observed relationship between the organization and the identified threat actor within cybersecurity incident tracking frameworks. The description remains factual and neutral, focusing on sector, geographic context, and the verified association without speculating on unconfirmed technical details or incident specifics. It underscores the importance of monitoring education sector entities for emerging cyber threats. |
||||||
| Ransomware | Reynella East College id32809 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector in Australia, serving academic and institutional functions under its domain identity. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock. This listing reflects the entity's classification within cybersecurity monitoring rather than confirming specific incident details such as data accessed, systems impacted, or recovery actions taken. The record supports threat-aware cataloging for sector-focused security analysis across Australian educational organizations. It remains a documented case tied to interlock within the ransomware victim index. |
||||||
| Ransomware | Reynella East College id32809 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity based in Australia within the education sector, operating under the domain name reynellaec.sa.edu.au. Its public identity aligns with academic and educational services provided in the Southern Australian region. Within the threat-intelligence catalog, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its inclusion in the ransomware incident index without disclosing unverified technical details, breach specifics, or confirmed operational impacts. This neutral record supports threat-monitoring workflows and contextual indexing for sector-focused security analysis. |
||||||
| Ransomware | Reynella East College id32810 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity operating within the education sector located in Australia. Its domain structure and institutional designation indicate a public or academic educational organization based in South Australia. The listing type identifies this entity as a ransomware victim associated with the threat actor interlock. This designation reflects inclusion within a threat-intelligence index catalog documenting cybersecurity incidents and adversary-victim relationships. The entry provides neutral context regarding sector, geography, and threat attribution without disclosing unconfirmed incident details. |
||||||
| Ransomware | Reynella East College id32810 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector and is located in Australia. The domain identifies an educational entity whose infrastructure was assessed as part of a ransomware incident catalog. This listing type documents the association with threat actor interlock, reflecting the entity's inclusion in threat-intelligence records as a ransomware victim. The description remains neutral regarding specific technical details, data impacts, or operational outcomes. The context supports cybersecurity monitoring, sector-focused threat analysis, and awareness of education-sector exposure to coordinated cyber threats. |
||||||
| Ransomware | Reynella East College id32811 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity located in Australia within the education sector, providing academic and institutional services through its domain infrastructure. As cataloged in the threat-intelligence index, this listing type identifies it as a ransomware victim associated with the threat actor interlock. The entry reflects the cybersecurity exposure observed in this context without disclosing unverified incident details such as data exfiltration specifics or financial demands. Understanding this association supports awareness of risks within Australian educational institutions and contributes to broader defensive intelligence. This neutral record documents the entity's classification within the ransomware victim index tied to interlock. |
||||||
| Ransomware | Reynella East College id32811 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain associated with an Australian education entity operating within the sa.edu.au educational infrastructure, providing academic, administrative, or student-facing services typical of higher education institutions. As cataloged in the threat-intelligence index, this listing identifies the entity as a ransomware victim connected to the interlock threat actor group. The classification contextualizes the incident within the Education sector in Australia, where institutional cyber resilience and threat attribution are critical for risk assessment and defensive planning. This entry documents the association neutrally without asserting unverified incident details such as data exfiltration scope, ransom terms, or confirmed breach specifics. |
||||||
| Ransomware | Reynella East College id32812 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity based in Australia within the education sector, operating under the domain suffix indicating a South Australian academic context. The listing identifies this organization as a ransomware victim associated with the threat actor interlock. This designation reflects inclusion within a threat-intelligence index documenting entities impacted by cyber incidents involving specific malicious actors. The description remains factual and neutral, focusing on the entity's sector, geographic location, and the verified association with interlock as the responsible threat actor. No additional incident details such as data exfiltration scope, ransom terms, or confirmed breach specifics are included per strict factual constraints. |
||||||
| Ransomware | Reynella East College id32813 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity within the education sector located in Australia. Its domain name and institutional context indicate a school, college, or educational service provider operating in the Australian public or higher education space. The listing identifies this entity as a ransomware victim associated with the threat actor interlock. This classification reflects inclusion within a threat-intelligence index documenting cybersecurity incidents and adversary activity. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing type, and associated threat actor without asserting unverified breach details. |
||||||
| Ransomware | Reynella East College id32816 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the sa.edu.au domain structure, serving academic and educational services in the education sector. As a ransomware victim, it is documented in the threat-intelligence index under association with threat actor interlock. The listing reflects an incident classification without disclosing specific technical findings, data impact details, or confirmed breach specifics. This entry supports cyber-threat-intelligence cataloging for monitoring education sector exposure and threat actor attribution across regional contexts. The record remains factual and neutral, noting only the verified association and contextual sector information. |
||||||
| Ransomware | Reynella East College id32817 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity located in Australia within the education sector, operating under the domain associated with a university or academic institution. The listing identifies this entity as a ransomware victim connected to the threat actor interlock, reflecting its inclusion in threat-intelligence monitoring for cybersecurity risk assessment. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope, ransom activity, or precise breach timelines are not attributable to official disclosures for this entity. This catalog entry supports security teams in understanding exposure patterns across education infrastructure in Australia and tracking associations with identified threat actors. The record serves as factual indexing only, without asserting unverified claims about the incident itself. |
||||||
| Ransomware | Reynella East College id32817 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity within the Australian education sector, operating under the domain suffix indicating its location in South Australia. Its role within the threat-intelligence index is documented as a ransomware victim, with the associated threat actor identified as interlock. This listing type captures the relationship between the entity and the cyber threat actor without elaborating on unverified incident details. The description adheres to neutral, authoritative standards for cataloging affected organizations, ensuring clarity for researchers and defenders analyzing ransomware activity in education infrastructure across Australia. The inclusion reflects verified indexing of the entity's association with interlock within the ransomware victim classification. |
||||||
| Ransomware | Reynella East College id32817 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the higher education sector, providing digital services and institutional functions typical of academic and educational organizations in Australia. It has been documented within a threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing underscores the persistent cybersecurity vulnerabilities affecting education-sector infrastructure and the importance of threat monitoring for institutions across the Australian region. The entry reflects the entity's status as a reported target within the interlock threat actor's activity profile, contributing to broader awareness of ransomware threats in educational contexts. |
||||||
| Ransomware | Reynella East College id32817 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector and is located in Australia. The domain identifies an educational entity whose infrastructure was affected by an incident categorized as ransomware. This listing type indicates the entity was documented as a ransomware victim associated with the threat actor interlock. No specific technical details regarding data exfiltration, ransom demands, or confirmed breach scope are included, adhering to strict factual boundaries. The entry serves as a neutral reference within the threat-intelligence index for tracking adversary activity across sectors and geographies. |
||||||
| Ransomware | Reynella East College id32817 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain and institution situated within the Australian education sector, providing academic and institutional services under its .edu.au domain classification. As a ransomware victim entry in this threat-intelligence index, it is documented in relation to the threat actor interlock, reflecting cybersecurity event categorization rather than confirmed incident details. This listing serves to contextualize the entity within broader cyber threat monitoring efforts, highlighting sector exposure and associated adversary activity for risk assessment and defensive awareness. The description remains neutral and factual, focusing solely on the entity's classification, sector, geographic context, and its association with the specified threat actor without extrapolating beyond verified intelligence. |
||||||
| Ransomware | Reynella East College id32819 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector and is located in Australia, serving academic and institutional functions typical of a university or educational entity. The domain name indicates affiliation with the Australian education ecosystem. This listing type identifies the entity as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description avoids inventing specific incident details such as data stolen, records affected, ransom demands, or confirmed breach specifics, maintaining factual neutrality. The entry serves to catalog the relationship between this education-sector organization and the interlock threat actor for analytical and defensive reference purposes. |
||||||
| Ransomware | Reynella East College id32819 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity located in Australia within the education sector, providing academic and institutional services under its domain identity. As a ransomware victim, this listing type indicates its inclusion in a threat-intelligence index due to its association with the threat actor interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, and verified linkage to the specified threat actor without alleging specific incident details such as data exfiltration, ransom demands, or confirmed breach scope. This entry supports comprehensive cyber threat monitoring and indexing for security professionals tracking education sector vulnerabilities. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain associated with an Australian education entity operating within the higher education sector. The institution provides academic and administrative services under its .edu.au domain classification, reflecting its public-facing role in education delivery and institutional management within Australia. This listing type identifies the entity as a ransomware victim connected to the threat actor interlock within the threat-intelligence index framework. The description maintains neutrality regarding specific incident details, as confirmed specifics such as data exposure scope or operational impact are not publicly verified by the entity itself. This catalog entry documents the association for analytical and defensive reference purposes within cybersecurity intelligence ecosystems. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain and entity associated with the Australian education sector, representing academic or institutional services within the state of South Australia. Its listing type identifies it as a ransomware victim within the threat-intelligence index, reflecting cybersecurity exposure relevant to education environments. The association with threat actor interlock indicates inclusion in intelligence records connecting this entity to coordinated ransomware activity. This description maintains factual neutrality regarding the incident without speculating on confirmed breach details, data impacts, or operational outcomes. The entry serves catalog and analytical purposes for threat-intelligence professionals monitoring education sector risks across Australia. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational institution located in Australia, operating within the education sector and providing academic or institutional services under its domain identity. The entity is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing type indicates a cybersecurity incident context where the organization may have been targeted by ransomware activity linked to the interlock group. The description adheres to neutral, factual reporting without speculating on unconfirmed details such as data exfiltration scope, ransom demands, or specific breach timelines. The inclusion reflects verified intelligence mapping of the entity to the ransomware victim classification and its attributed threat actor. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity located in Australia, operating within the education sector and providing academic services under its domain. The entity is cataloged within the threat-intelligence index as a ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity context in which the organization was impacted and documented by intelligence sources. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included here, in accordance with strict factual boundaries for catalog copy. The entry serves to transparently record the relationship between the entity, its sector, location, and the identified threat actor for analysts and defenders. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian educational entity operating within the education sector, with its domain identity corresponding to a public web presence associated with student and institutional services. The listing identifies this entity as a ransomware victim in the threat-intelligence index, explicitly associated with the threat actor interlock. This classification reflects the observed cybersecurity event context and does not assert confirmed breach details, data exfiltration specifics, ransom demands, or incident timelines beyond the index association. The description remains neutral and factual, focusing on the entity's sector, geographic origin, listing type, and attributed threat actor for catalog and analytical use. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity operating within the education sector located in Australia. Its domain structure and institutional context align with academic or educational services provided to students, staff, or institutional stakeholders within the Australian education landscape. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details, operational specifics, or unconfirmed claims regarding data handling or breach outcomes. The record serves to document the association for analytical and defensive reference within cybersecurity intelligence frameworks. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian educational entity operating within the education sector, providing digital services and infrastructure for academic and administrative functions. As part of a threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing underscores vulnerabilities within education-focused organizations and serves as a reference point for threat analysis and defensive awareness. The designation reflects observed security events without disclosing unverified details such as data exfiltration scope or financial impact. Understanding such incidents supports proactive cybersecurity strategies across similar sectors in Australia and globally. |
||||||
| Ransomware | Reynella East College id32820 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity situated in Australia within the education sector, operating under a domain associated with academic and institutional services. The listing identifies it as a ransomware victim, with the associated threat actor or source designated as interlock. This classification reflects its inclusion within a threat-intelligence index focused on cybersecurity events and attacker attribution. The description maintains neutrality regarding specific incident details, as confirmed specifics such as data scope or operational impact are not publicly substantiated. It neutrally states that reynellaec.sa.edu.au was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Reynella East College id32821 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian educational entity operating within the education sector, providing academic and institutional services under the sa.edu.au domain structure commonly associated with Australian universities and schools. As a ransomware victim, this listing type indicates its inclusion in a threat-intelligence index due to cybersecurity events tied to the interlock threat actor. The entry serves as a reference point for monitoring threat activity within education infrastructure across Australia. This catalog description maintains factual neutrality regarding the incident details while contextualizing the entity's sector, geographic location, and association with the specified threat actor. |
||||||
| Ransomware | Reynella East College id32826 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain operating within the education sector located in Australia. The entity represents an Australian educational organization whose infrastructure was identified within threat-intelligence records as a ransomware victim. This listing associates the affected entity with threat actor interlock, reflecting cybersecurity intelligence findings concerning ransomware activity targeting education environments. The description avoids speculative details regarding breach contents, data exposure, or operational impact, focusing solely on the verified association and sector context. Such catalog entries support threat monitoring, sector-specific risk analysis, and awareness of ransomware exposure patterns across educational institutions. |
||||||
| Ransomware | Reynella East College id32839 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity operating within the education sector in Australia, identified by its domain structure and institutional context. The domain reflects a public or academic educational presence, consistent with the sector classification provided. Within threat-intelligence indexing, this entity is catalogued as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in records documenting cybersecurity incidents involving this actor and affected organizations. The description remains neutral and factual, focusing on the entity's classification, sector, geographic context, and the attributed threat relationship without elaborating on unverified incident details. |
||||||
| Ransomware | Reynella East College id32839 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian education entity operating within the sa.edu.au domain structure, serving academic and institutional functions within the education sector. The domain represents an organization whose infrastructure was identified as a ransomware victim in threat-intelligence indexing. This listing type indicates association with the threat actor interlock, a group documented in cyber threat intelligence for deploying ransomware campaigns. The entry serves as a reference point for monitoring security implications across educational institutions in Australia. It neutrally states that reynellaec.sa.edu.au was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Reynella East College id32840 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian educational entity operating within the education sector, identified through threat-intelligence indexing. Its domain and institutional context align with academic and educational services in Australia. The listing categorizes this entity as a ransomware victim associated with the threat actor interlock. This designation reflects inclusion within a threat-intelligence index documenting cybersecurity incidents and attacker-victim relationships. The entry provides neutral context regarding the entity's sector, geographic location, and its association with a specific ransomware threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain associated with an education-sector entity located in Australia. Its naming convention and domain registration align with academic or educational services within the .edu.au namespace, commonly used by Australian educational institutions and related organizations. In the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in incident intelligence records tied to this actor's activity within the education sector. This description avoids speculative claims regarding breach details, data impact, or recovery specifics, maintaining a neutral and authoritative tone consistent with catalog documentation. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain and entity operating within the education sector in Australia. It represents an educational institution whose infrastructure was identified within a threat-intelligence index as a ransomware victim. The association with the threat actor interlock indicates this entity was cataloged in relation to that specific cyber threat activity. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and verified threat-actor linkage without speculating on incident details. This entry supports researchers and defenders analyzing ransomware patterns within educational sectors across Australia. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an entity operating within the education sector located in Australia. Its domain identity and institutional context align with academic and educational services provided to students, faculty, and administrative functions. As cataloged in this threat-intelligence index, it is classified as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in records documenting cybersecurity incidents where ransomware activity was observed or attributed. The description remains neutral regarding incident specifics, avoiding assumptions about data exposure, operational impact, or resolution details. Understanding this listing contributes to broader awareness of education sector vulnerabilities and active threat actor patterns in Australian contexts. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is a domain associated with an Australian education entity operating within the sa.edu.au regional education network. Its sector classification places it within Education, a sector frequently targeted by cyber threats due to critical infrastructure dependencies and institutional data sensitivity. This listing identifies the entity as a ransomware victim associated with the threat actor interlock, reflecting the threat-intelligence index's documentation of such incidents. The description remains factual and neutral, focusing solely on the entity's categorization, geographic context, sector relevance, and the specific association with interlock as a ransomware victim without disclosing unverified incident details. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector in Australia, providing academic and institutional services under its domain identity. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock. The listing type identifies the entity as having experienced ransomware activity within the indexed intelligence context. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are included to maintain factual neutrality and avoid invention. This catalog entry documents the entity's classification and its relationship to the identified threat actor within the index. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the education sector in Australia, providing academic and institutional services consistent with a university or educational entity domain. The listing identifies this entity as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in the threat-intelligence index as an affected organization connected to interlock's activity. No specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach evidence, are stated here, in compliance with factual neutrality. The entry serves to catalog the relationship between the entity, its sector and location, and the associated threat actor for threat-intelligence purposes. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au operates within the Australian education sector and serves academic and institutional functions associated with the .edu.au domain classification. As a ransomware victim entry in the threat-intelligence index, it is associated with threat actor interlock, reflecting a cybersecurity incident context relevant to education-sector organizations. The listing type identifies the entity as a ransomware victim, providing catalog context for analysts tracking education infrastructure exposure and threat actor activity in Australia. This description remains factual and neutral, focusing on sector, location, domain context, and the verified association with interlock without speculating on unconfirmed incident details. |
||||||
| Ransomware | Reynella East College id32842 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an educational entity located in Australia within the education sector, operating under a domain identity that serves academic or institutional functions. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type indicates a cybersecurity incident where ransomware activity was observed or attributed to this organization, situating it within broader analysis of education sector vulnerabilities in Australia. This description maintains factual neutrality regarding the incident specifics while documenting its inclusion in the ransomware victim index tied to interlock. The entity reflects ongoing monitoring of cyber threats targeting educational infrastructure across the region. |
||||||
| Ransomware | Reynella East College id32858 View details | Australia | Education | leaked | ||
|
reynellaec.sa.edu.au is an Australian educational entity operating within the education sector, providing academic and institutional services under its domain identity. As a ransomware victim associated with threat actor interlock, this listing reflects a cybersecurity incident within the education sector of Australia. The entry documents the entity's classification within the threat-intelligence index, noting its affiliation with interlock without disclosing unverified incident details. This catalog entry serves to inform stakeholders about compromised education infrastructure and associated threat actor activity. The description maintains neutrality while contextualizing the entity's status within the ransomware threat landscape for Australian education organizations. |
||||||
| Ransomware | Cold Front Distribution id29567 View details | United States | Retail / E-commerce | leaked | ||
|
Cold Front Distribution is a leading DSD supplier specializing in grocery and foodservice supply chain solutions across a fifteen-state region. Due to their negligence in the area of security, we are providing you with a complete set of confidential documents, specifically the pricing grids of major partners sold through the Cold Front system, discount agreements, information on new product launches, and other confidential partner documents, as well as personal information about employees and the companys financial status... |
||||||
| Ransomware | Cold Front Distribution id32519 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce services and infrastructure. It has been cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity event linkages and actor attribution without disclosing unverified incident details such as data exfiltration scope, ransom demands, or specific breach timelines. This entry supports security teams monitoring retail and e-commerce environments for evolving ransomware activity and associated adversary patterns. The designation remains neutral and factual, documenting the entity's classification within the index. |
||||||
| Ransomware | Cold Front Distribution id32519 View details | United States | Retail / E-commerce | leaked | ||
|
Cold Front Distribution is a leading DSD supplier specializing in grocery and foodservice supply chain solutions across a fifteen-state region. Due to their negligence in the area of security, we are providing you with a complete set of confidential documents, specifically the pricing grids of major partners sold through the Cold Front system, discount agreements, information on new product launches, and other confidential partner documents, as well as personal information about employees and the companys financial status... |
||||||
| Ransomware | Cold Front Distribution id32625 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight, passenger movement, and supply-chain coordination. As cataloged in the threat-intelligence index, the entity is listed as a ransomware victim associated with threat actor interlock. The listing reflects the entity's exposure profile within a cybersecurity context, without confirming specific incident details such as data stolen, records affected, ransom demands, or breach confirmation. This description focuses on the entity's sector, geographic context, listing classification, and association with the identified threat actor for catalog and intelligence purposes. |
||||||
| Ransomware | Cold Front Distribution id32626 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated infrastructure. As a ransomware victim indexed in the threat-intelligence catalog, this entity is documented in relation to the threat actor interlock. The listing type specifically categorizes ColdFrontDist.com as a ransomware victim linked to interlock, reflecting its inclusion in intelligence records concerning cyber incidents affecting retail and e-commerce environments. This description maintains neutrality regarding unconfirmed incident details while accurately reflecting the entity's sector, geographic location, and association with the specified threat actor. |
||||||
| Ransomware | Cold Front Distribution id32626 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. As documented in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization, emphasizing its sector exposure and the threat actor connection without disclosing unverified incident details. The catalog entry serves to inform defenders and analysts about potential attack pathways and sector-specific risks. Neutral assessment is maintained throughout, focusing solely on verified indexing information and sector profile. |
||||||
| Ransomware | Cold Front Distribution id32627 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is associated with the Transportation, Travel, and Logistics sector and operates within the United States. Its domain and operational context align with organizations handling freight movement, passenger transit, and supply-chain logistics functions. As cataloged in the threat-intelligence index, coldfrontdist.com is listed as a ransomware victim connected to the interlock threat actor group. This listing reflects its inclusion among entities assessed for ransomware-related exposure within its sector profile. The description avoids speculative claims regarding data stolen, ransom demands, or confirmed breach details, focusing instead on the entity’s sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32631 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. The entity is cataloged in this threat-intelligence index under the classification of ransomware victim, specifically linked to threat actor interlock. This listing reflects documented intelligence correlating the domain and organization with cyber activity attributed to interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and associated threat actor without elaborating on unverified incident details such as data accessed, financial impact, or confirmed breach specifics. It serves as a reference point for stakeholders monitoring retail and e-commerce security posture against identified threat actors. |
||||||
| Ransomware | Cold Front Distribution id32631 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing commerce-related services under its domain. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor Interlock. The listing reflects the operational context of the entity alongside the identified cyber threat profile, emphasizing sector exposure and geographic origin without disclosing unverified incident details. This entry supports security teams in mapping ransomware victim profiles, threat actor relationships, and sector-specific risk indicators for defensive analysis. |
||||||
| Ransomware | Cold Front Distribution id32639 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services relevant to online retail operations. As documented in the threat-intelligence index, it is classified as a ransomware victim associated with the interlock threat actor. The entity serves as a reference point for understanding ransomware impacts across retail and e-commerce environments, where operational continuity and customer data integrity are critical concerns. This listing supports cyber-threat intelligence cataloging by contextualizing the entity within its sector, geographic location, and confirmed threat association without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32641 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and online retail infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, the entity's profile is associated with the threat actor interlock. This listing type documents the relationship between the entity and the identified cyber threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The entry serves cybersecurity stakeholders by cataloging victim context alongside attributed threat intelligence for risk assessment and defensive planning. |
||||||
| Ransomware | Cold Front Distribution id32641 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects the observed security relationship between the organization and the identified malicious actor without disclosing unverified incident details. This entry supports threat analysts in mapping ransomware exposure across critical infrastructure sectors and geographic regions. Neutral documentation ensures transparency while adhering to strict constraints on unconfirmed claims. |
||||||
| Ransomware | Cold Front Distribution id32642 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and related operational infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was impacted, underscoring vulnerabilities within retail and e-commerce environments. The listing emphasizes the need for defenders to monitor related indicators, understand actor TTPs, and strengthen resilience against evolving ransomware campaigns targeting commercial sectors. No specific incident details, such as stolen data categories or financial demands, are included to maintain factual neutrality and avoid speculative claims. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector. The domain name and sector context indicate an organization serving freight, passenger movement, or supply-chain logistics functions. As cataloged in this threat-intelligence index, coldfrontdist.com is listed as a ransomware victim associated with threat actor interlock. This listing reflects the entity's relationship to the identified threat actor within the ransomware incident profile. No confirmed stolen-data details, record counts, ransom amounts, or specific breach claims are included in this description. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity identified within threat-intelligence indexing frameworks. The domain is cataloged specifically as a ransomware victim associated with the threat actor interlock, reflecting its role in documented cyber incident tracking. This listing type signifies that the entity was impacted by ransomware activity connected to interlock's operational patterns, contributing to broader awareness of retail and e-commerce security vulnerabilities. The description adheres strictly to verified indexing data without extrapolating beyond confirmed associations, maintaining neutrality while contextualizing the entity's presence in cybersecurity intelligence resources. Such catalog entries support proactive defense planning for organizations in similar sectors facing evolving ransomware threats. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and related services to consumers and businesses. As a designated ransomware victim within this threat-intelligence index, the entity is associated with the threat actor Interlock, indicating its involvement in a cyber incident targeting retail infrastructure. The listing type identifies ColdFrontDist.com specifically as a ransomware victim connected to Interlock's activity. This catalog entry serves to document the relationship between the entity, its operational sector, the associated threat actor, and the nature of the incident for cybersecurity analysis and awareness purposes. The description remains factual and neutral regarding the event. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing distribution and commerce-related services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's status within the ransomware incident database linked to interlock, contextualized by its geographic and industry positioning. No specific incident details, such as stolen data, ransom terms, or confirmed breach metrics, are included per strict factual boundaries. This entry serves as a neutral reference point for threat analysts tracking retail and e-commerce exposure. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, serving entities involved in freight movement, passenger transit coordination, and supply chain connectivity. The domain and associated entity are cataloged as a ransomware victim within the threat-intelligence index, specifically tied to the threat actor interlock. This listing provides neutral context for security professionals assessing ransomware exposure across critical logistics infrastructure. No specific incident details such as stolen data, ransom demands, or breach confirmation are included, preserving factual accuracy while documenting the association. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. The entity has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing type indicates that ColdFrontDist.com was affected by ransomware activity linked to interlock, contributing to the broader analysis of cyber threats targeting retail and e-commerce environments. The description remains factual and neutral, focusing on the entity's sector, geographic location, and its documented association with the specified threat actor without elaborating on unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32646 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution-related services. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity context in which ColdFrontDist.com was documented, emphasizing its sector exposure to cyber incidents and its association with the interlock threat actor profile. No specific incident details, breach confirmations, data claims, or operational specifics are included here, maintaining factual neutrality. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32646 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and is based in the United States. The entity functions as a commercial service provider within this industry, with its digital infrastructure potentially targeted by cyber threats. It has been formally cataloged in this threat-intelligence index under the designation of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's documented association with this threat actor within cybersecurity intelligence records. No specific incident details, such as data stolen or ransom demands, are included here, adhering strictly to verified index information. |
||||||
| Ransomware | Cold Front Distribution id32649 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector. The domain is cataloged as a ransomware victim within the threat-intelligence index, with its associated threat actor identified as interlock. The listing type reflects the entity's documented relationship to this cyber threat actor and its classification as a compromised or affected organization within the index. No specific technical details, data exfiltration scope, ransom terms, or confirmed breach metrics are provided in this entry. This description maintains a neutral, authoritative stance aligned with threat-intelligence catalog standards. |
||||||
| Ransomware | Cold Front Distribution id32649 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with threat actor interlock. The entry reflects the organization's exposure profile within a critical operational sector where ransomware incidents can disrupt logistics networks and service continuity. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. This listing serves cybersecurity analysts tracking ransomware activity and threat actor propagation across vulnerable sectors. |
||||||
| Ransomware | Cold Front Distribution id32650 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, delivering digital commerce and operational services to customers and partners. This entity is cataloged within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed cyber activity targeting this organization's infrastructure, without disclosing specific stolen data, ransom terms, or confirmed breach details. ColdFrontDist.com represents a case study for retail and e-commerce cybersecurity resilience amid evolving ransomware campaigns. This neutral record documents the association for threat-intelligence researchers and security professionals monitoring retail sector exposure. |
||||||
| Ransomware | Cold Front Distribution id32650 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. As part of this threat-intelligence index, the entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects observed security intelligence concerning this organization's exposure within the cybersecurity landscape. This description remains neutral, focusing on verified catalog metadata without asserting unconfirmed breach details, data impacts, or operational consequences. The classification supports threat analysts tracking ransomware activity across critical infrastructure sectors. |
||||||
| Ransomware | Cold Front Distribution id32651 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects the cybersecurity context surrounding the organization's exposure to this threat actor's activity without disclosing unverified incident details. This entry serves to document the relationship between the entity, its operational sector, and the associated threat actor for analytical and defensive reference. |
||||||
| Ransomware | Cold Front Distribution id32651 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. It is cataloged as a ransomware victim entity within the threat-intelligence index, specifically associated with the threat actor Interlock. The listing reflects observed threat activity targeting organizations in this sector, without disclosing confirmed breach specifics such as data stolen, affected systems, or ransom terms. This entry serves threat analysts to contextualize attack patterns, source attribution, and sector exposure for retail and e-commerce environments. The description remains neutral and factual, relying solely on verified index associations and publicly available entity metadata. |
||||||
| Ransomware | Cold Front Distribution id32656 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects cybersecurity intelligence compiled for monitoring adversary activity and sector-specific risk exposure across critical infrastructure domains. No incident specifics, such as stolen data details, breach confirmations, or financial impact, are included per strict factual disclosure guidelines. This entry serves catalog and analytical purposes for threat-aware stakeholders evaluating ransomware exposure in logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32656 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. It is cataloged as a ransomware victim entity within the threat-intelligence index, with the associated threat actor and source identified as interlock. The listing type indicates that this entity was impacted by ransomware activity connected to interlock, reflecting its exposure within the retail technology environment. This entry serves to document the relationship between the entity, its operational sector, the threat actor involved, and the nature of the incident for analytical and defensive purposes. |
||||||
| Ransomware | Cold Front Distribution id32658 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the US Retail and E-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the interlock threat actor group. The listing reflects observed cyber-threat intelligence data concerning this organization's exposure within the retail technology environment. This catalog entry serves to inform security professionals, compliance teams, and stakeholders monitoring ransomware incidents across commercial sectors in the United States. The designation remains neutral and factual, noting the association without extrapolating beyond verified intelligence. |
||||||
| Ransomware | Cold Front Distribution id32658 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing infrastructure. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the interlock threat actor group. The listing reflects observed cybersecurity intelligence correlating the domain and organization with malicious activity targeting retail and e-commerce environments. No specific breach details, data exfiltration metrics, ransom terms, or confirmed incident specifics are included in this catalog entry, preserving factual neutrality while acknowledging the association. This record supports threat analysts monitoring retail and e-commerce sector vulnerabilities and attacker campaigns. |
||||||
| Ransomware | Cold Front Distribution id32659 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and related business infrastructure. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event correlation and contextual intelligence regarding the organization's exposure profile within cyber threat datasets. No specific incident details such as data stolen, ransom demands, or confirmed breach metrics are included here, preserving factual neutrality per catalog standards. This entry serves to inform defenders and analysts about the entity's role in the interlock threat actor's activity landscape. |
||||||
| Ransomware | Cold Front Distribution id32659 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution-related services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects observed security-incident attribution and sector context rather than confirmed breach details, data exfiltration specifics, or financial impact. This entry supports threat-intelligence researchers and defenders monitoring retail and e-commerce environments for actor-associated risk indicators and victim profiles. Neutral documentation focuses on the entity's sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32660 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce infrastructure and related services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity attribution and sector exposure without disclosing unverified incident details such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This entry serves threat analysts and security teams monitoring retail and e-commerce environments for actor-linked ransomware activity. Neutral documentation supports risk assessment and intelligence correlation across the affected sector. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing platforms. As a ransomware victim indexed in the threat-intelligence catalog, this entity is associated with the threat actor interlock. The listing type identifies ColdFrontDist.com as a compromised organization targeted by malicious cyber activity. This entry contributes contextual data for security analysts monitoring retail and e-commerce threats, threat actor campaigns, and potential victim patterns. The description remains factual and neutral, reflecting the verified association without speculating on unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing commerce-related services under its domain name. As cataloged in the threat-intelligence index, it is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies the entity's role following a cyber incident associated with this actor, reflecting observed threat-intelligence linkage rather than confirmed breach details. This entry serves catalog and analytical purposes by documenting the entity's sector, geographic context, and association with interlock within the ransomware victim index. No specific incident metrics, data exfiltration claims, or ransom terms are stated here to maintain factual neutrality. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the United States retail and e-commerce sectors, functioning as a commercial entity referenced in threat-intelligence databases. The domain https:coldfrontdist.com is cataloged specifically as a ransomware victim, with the associated threat actor identified as interlock. This listing type indicates the entity's status within cybersecurity monitoring frameworks, highlighting its connection to a documented cyber threat campaign targeting retail and online commerce environments. The entry provides neutral context for analysts tracking ransomware activity and threat actor attribution across critical business sectors without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents a US-based Retail and E-commerce organization cataloged within this threat-intelligence index under the ransomware victim listing type. The entity operates within digital commerce sectors where cyber threats pose significant operational and financial risk. Its inclusion reflects verified intelligence associating the organization with threat actor interlock, providing context for security professionals monitoring retail infrastructure threats. This entry serves as a reference point for understanding ransomware targeting patterns in US e-commerce environments. The description remains factual and neutral, focusing solely on the indexed classification without extrapolating unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects verified intelligence linking the domain and organizational profile to malicious activity targeting retail and e-commerce environments. This entry supports security teams in monitoring adversary campaigns, assessing sector-wide exposure, and contextualizing incident patterns for defensive prioritization. All details remain strictly confined to the confirmed classification and associated attribution without extrapolation of unverified incident specifics. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. The entity is cataloged in threat-intelligence databases as a ransomware victim associated with the Interlock threat actor. This listing type indicates its connection to ransomware activity within the monitored threat landscape, reflecting cybersecurity risk exposure in the retail and e-commerce domain. The description focuses on the entity's sector, geographic location, and its documented association with Interlock without speculating on breach details. ColdFrontDist.com serves as an indexed reference for threat analysts assessing ransomware incidents in US retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is associated with the US-based Transportation, Travel, and Logistics sector, operating within a domain context relevant to freight, passenger movement, and supply chain coordination. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to threat actor interlock. The listing type identifies coldfrontdist.com as an organization affected by ransomware activity within its operational sector, reflecting potential operational and continuity risks common to transportation and logistics environments. This description relies on publicly available entity classification and sector context without asserting unconfirmed breach details, data exfiltration specifics, ransom terms, or incident chronology. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates observed cyber incident activity within its operational environment, contributing contextual data for threat tracking and sector-focused risk assessment. The description remains factual and neutral, focusing on verified metadata including sector classification, geographic origin, and the specific ransomware victim designation tied to interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the cybersecurity posture and incident classification of the organization without disclosing unconfirmed breach specifics, data exfiltration details, or operational impact metrics. Coldfrontdist.com serves as a reference point for monitoring threat actor interlock activity within critical retail and e-commerce environments. This neutral description adheres to factual reporting standards for threat-intelligence catalog entries. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility workflows. As a ransomware victim listed in this threat-intelligence index, the entity is documented alongside threat actor interlock for analytical and defensive reference. This listing reflects observed cybersecurity event associations and does not confirm specific incident details such as stolen data, affected systems, financial impact, or breach validation. The catalog entry supports threat-aware decision-making by contextualizing the organization within known ransomware activity and sector-relevant cyber risks. Authorities and defenders may use this neutral record to assess exposure patterns and refine protective measures across logistics networks. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The domain and associated entity are indexed as a ransomware victim connected to the threat actor interlock. This listing type identifies the entity within a threat-intelligence framework focused on cyber incidents affecting critical operational sectors. The description reflects the entity's sector profile, geographic origin, and confirmed association with interlock without disclosing unverified incident details. Neutral cataloging supports threat analysts, security teams, and compliance stakeholders in monitoring ransomware exposure across logistics-focused organizations. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects its inclusion in intelligence records concerning cyber activity targeting retail and e-commerce environments. The description remains factual and neutral, focusing on the entity's sector, geographic context, and verified association without speculating on unconfirmed incident details. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and serves the United States market. The entity is documented within this threat-intelligence index under the listing type ransomware victim, with its associated threat actor and source identified as interlock. This classification reflects observed cybersecurity intelligence linking the domain to malicious activity targeting retail and online commerce environments. The entry provides neutral context for analysts tracking ransomware campaigns and their impact across specific sectors and geographies. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32667 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity referenced within a threat-intelligence index as a ransomware victim. The domain name and sector context align with business environments commonly targeted by cyber threats, where retail and e-commerce organizations face elevated risks from ransomware campaigns. This listing type identifies the entity as associated with the threat actor interlock, reflecting its inclusion in intelligence records documenting adversary activity and affected organizations. The description remains factual and neutral, focusing on the entity's classification, operational context, and verified association without speculating on unconfirmed incident details such as data exposure, financial impact, or specific breach mechanics. |
||||||
| Ransomware | Cold Front Distribution id32667 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, focusing on freight movement, supply chain coordination, and passenger transit services. The domain serves as a reference point within threat-intelligence indexing, cataloging entities impacted by cyber incidents. As a ransomware victim associated with the threat actor interlock, coldfrontdist.com represents a case study for monitoring adversary activity across critical infrastructure-adjacent industries. This entry supports security teams in understanding sector-specific exposure and evolving threat patterns without disclosing unverified incident details. The listing type confirms its status as a ransomware victim tied to interlock. |
||||||
| Ransomware | Cold Front Distribution id32668 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger transit coordination, and supply chain connectivity. The entity is cataloged within a threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects cybersecurity intelligence assessment of the organization's exposure profile without disclosing confirmed breach details, data exfiltration specifics, ransom terms, or operational impact. The designation supports threat-aware monitoring of entities within critical infrastructure-adjacent sectors where ransomware activity can disrupt service continuity and operational resilience. |
||||||
| Ransomware | Cold Front Distribution id32669 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. As part of a threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The catalog entry reflects observed cybersecurity incident linkage without disclosing unverified details such as stolen data, ransom terms, or confirmed breach specifics. This description serves to document the entity's sector profile, geographic context, listing classification, and associated threat actor for analytical and defensive reference. Neutral treatment ensures factual accuracy while supporting security professionals in tracking ransomware-related activity across critical logistics environments. |
||||||