Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 23777 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 23777 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 5h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 5h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 5h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 5h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 5h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 5h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 65 | Onion service | Up checked 5h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 5h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 5h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 5h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 5h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 5h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 5h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 5h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 53 | Onion service | Up checked 5h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 54 | Onion service | Up checked 5h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 5h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 5h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 5h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 5h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 5h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 64 | Onion service | Down checked 5h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 60 | Onion service | Down checked 5h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Down checked 5h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 49 | Onion service | Down checked 5h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 5h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 5h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 5h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 5h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 5h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 5h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 40 | Onion service | Down checked 5h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 5h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 5h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 5h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 37 | Onion service | Down checked 5h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 5h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 5h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 5h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 5h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 5h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 5h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 5h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 5h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 5h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 5h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 5h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 5h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 5h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 5h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 5h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 18 | Onion service | Down checked 5h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 5h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 5h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 16 | Onion service | Down checked 5h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 5h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 17 | Onion service | Down checked 5h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 14 | Onion service | Down checked 5h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 5h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 13 | Onion service | Down checked 5h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 5h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 5h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 5h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 5h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 5h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 5h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 5h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 5h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 5h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 47
- Manufacturing / Engineering 21
- Communication / Marketing 21
- IT 20
- Services 20
- Finance / Legal / Insurance 17
- Public Sector 17
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- NGOs / Associations 7
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 2
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (23777)
Search, filter and paginate the victim timeline for Interlock. Showing 2901–3000 of 23777.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, presenting as a ransomware victim within the threat-intelligence index. The entity name and sector context indicate exposure relevant to operational continuity and supply chain resilience concerns across connected logistics networks. As cataloged, Coldfrontdist.com is associated with the threat actor interlock, reflecting the intelligence linkage between the entity and this identified adversary group. This listing type documents the ransomware victim classification without disclosing confirmed breach details, data scope, or operational impact specifics. The entry serves threat-intelligence purposes by anchoring sector context, geographic location, and actor association for analytical review. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents an organization operating within the United States transportation, travel, and logistics sector. Its domain and operational profile align with entities serving critical supply chain and mobility functions, making it relevant within threat-intelligence catalogs focused on cyber incidents affecting industrial and service-oriented industries. The entity is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in a ransomware-victim index tied to interlock's activity, supporting analysts tracking adversary-targeted organizations across key sectors without disclosing unverified incident details. The description remains neutral and factual, reflecting the entity's sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, serving as a business entity referenced within a threat-intelligence index. The domain name suggests distribution or commerce functions aligned with its identified sector, though specific operational details are limited in public threat records. As cataloged, ColdFrontDist.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in intelligence datasets tracking cyber incidents, attacker attribution, and affected organizations across critical digital commerce environments. The entry provides neutral context for analysts monitoring retail and e-commerce cybersecurity risks linked to interlock-affiliated activity. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States manufacturing and engineering sectors, providing domain-related services relevant to industrial operations and technical workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing type indicates observed or attributed ransomware activity involving this organization, contextualized by its sector and geographic location. No specific incident details such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics are provided, maintaining factual neutrality. This entry supports cyber-threat-intelligence analysis for manufacturers and engineering firms targeting threat actor interlock activity. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and is situated in the United States. The domain functions as an entity within this threat-intelligence index, reflecting cybersecurity exposure patterns relevant to digital commerce environments. It has been formally cataloged as a ransomware victim linked to the interlock threat actor group. This listing contributes contextual intelligence for monitoring retail infrastructure threats and associated cybercrime activity. The description remains neutral, focusing solely on the verified classification without extrapolating beyond confirmed index data. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management needs. The domain functions as a business identifier within this operational context, reflecting activities relevant to moving goods and managing transit-related workflows. Within the threat-intelligence index, ColdFrontDist.com is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity monitoring frameworks focused on identifying compromised organizations and their attacker connections. No specific incident details, such as data exfiltration scope or ransom demands, are provided here, maintaining factual neutrality regarding the threat context. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The domain functions as an online presence for an organization serving this operational area, where cybersecurity resilience is critical for maintaining service continuity and data integrity. Within threat-intelligence indexing frameworks, coldfrontdist.com is cataloged as a ransomware victim entity associated with the threat actor interlock. This classification reflects its inclusion in intelligence records documenting adversary activity targeting sector-specific organizations. The listing type underscores the incident context without disclosing unverified technical or operational details. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and associated services tailored to online business operations. It has been formally cataloged within this threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents affecting retail and e-commerce environments. The entity serves as a reference point for analyzing threat patterns, defensive strategies, and sector-specific vulnerability landscapes in modern commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32788 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The entity is cataloged within the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects observed threat activity context for organizations operating in critical infrastructure-adjacent sectors. No specific incident details, data breach confirmations, or operational impacts are asserted here, maintaining a neutral and factual perspective consistent with threat-intelligence documentation standards. The entry serves to document the entity's classification and its relationship to the identified threat actor within the index. |
||||||
| Ransomware | Cold Front Distribution id32795 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As a ransomware victim indexed alongside threat actor interlock, this entity is cataloged within the threat-intelligence framework to document attack exposure and contextualize cybersecurity incidents within specific industry boundaries. The listing type identifies ColdFrontDist.com as a ransomware victim linked to interlock, contributing structured intelligence for defenders analyzing actor campaigns and sector-specific vulnerabilities. This description adheres strictly to verified indexing attributes without extrapolating unconfirmed breach details, ensuring factual neutrality for catalog consumption and analytical reference. |
||||||
| Ransomware | Cold Front Distribution id32795 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's role within the incident context without disclosing confirmed breach specifics, data exfiltration details, or operational impact. This entry serves as a neutral reference point for cybersecurity professionals monitoring ransomware activity across critical logistics infrastructure. Further validation of incident details should be drawn from official disclosures where available. |
||||||
| Ransomware | Cold Front Distribution id32798 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the interlock threat actor group. The designation reflects observed or attributed cyber activity linking interlock to this sector and geographic context, without confirming specific breach details. Catalog records for such entities support security teams in tracking victimization patterns across retail and e-commerce environments. This entry remains neutral, relying on verified index classification rather than speculative claims about compromised data or operational impact. |
||||||
| Ransomware | Cold Front Distribution id32800 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking the organization to this adversary group without disclosing specific technical details, data scope, or confirmed breach elements. This entry supports threat-aware monitoring for sector-relevant entities facing ransomware risks. The designation underscores the vulnerability of logistics infrastructure to coordinated cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32805 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States manufacturing and engineering sector, providing specialized technical and operational services relevant to industrial workflows. As cataloged in the threat-intelligence index, this entity is formally listed as a ransomware victim linked to the interlock threat actor group. The designation reflects observed security events within its operational environment, contributing contextual data for cybersecurity professionals monitoring industrial sectors. This entry supports comprehensive threat-intelligence analysis by documenting victim profiles, associated actors, and sector vulnerabilities without disclosing unverified incident details or speculative claims about compromised assets or data. |
||||||
| Ransomware | Cold Front Distribution id32806 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern commercial operations. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies ColdFrontDist.com specifically within ransomware incident records tied to interlock, contextualizing its exposure within cyber threat activity affecting retail and e-commerce environments. This description adheres to verified intelligence parameters without disclosing unconfirmed incident details such as data stolen, ransom demands, or precise breach timelines. |
||||||
| Ransomware | Cold Front Distribution id32807 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern commercial operations. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity event data tied to this organization's exposure profile within the retail technology landscape. This entry serves to catalog the incident context for defenders and analysts monitoring retail sector threats. The designation underscores the importance of continuous vigilance for e-commerce platforms facing ransomware campaigns. |
||||||
| Ransomware | Cold Front Distribution id32808 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity context surrounding the entity's exposure profile and the identified adversary relationship. The catalog entry provides a neutral reference point for threat researchers, security analysts, and sector-focused risk assessments evaluating retail digital infrastructure vulnerabilities. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32808 View details | United States | Retail / E-commerce | leaked | ||
|
https:coldfrontdist.com operates within the United States transportation, travel, and logistics sector. The entity functions as a commercial organization serving transportation and logistics workflows, though specific operational details are not publicly confirmed in available intelligence sources. It has been cataloged in this threat-intelligence index under the ransomware victim listing type, associated with threat actor interlock. This classification reflects threat-intelligence assessment rather than confirmed incident details, and no breach specifics such as data stolen, records affected, ransom demands, or precise timelines are provided here. The listing supports security teams monitoring ransomware exposure across transportation and logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated infrastructure. The entity has been cataloged in the threat-intelligence index as a ransomware victim, with its association explicitly tied to the threat actor Interlock. This classification indicates that ColdFrontDist.com experienced a ransomware-related security incident connected to Interlock's activity within its operational environment. The listing type underscores the nature of the threat exposure documented for this organization. Comprehensive analysis of specific incident details remains outside the scope of this catalog entry, adhering to factual and neutral reporting standards. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States Retail and E-commerce sector, functioning as a commercial entity targeted by cyber threats. Publicly available intelligence sources categorize this entity within a threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. The entity's inclusion reflects observed network activity or incident attribution relevant to retail and e-commerce security landscapes. This listing provides neutral context regarding the entity's status and its connection to the identified threat actor without disclosing unverified incident details. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The entry documents the relationship between ColdFrontDist.com and interlock without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This neutral overview supports threat analysts in mapping ransomware activity across retail and e-commerce environments in the US. The listing type confirms the ransomware victim designation linked to interlock. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. The domain functions as a commercial entity within this operational context, serving transportation and logistics-related activities. This listing categorizes coldfrontdist.com as a ransomware victim within a threat-intelligence index, with the associated threat actor and source identified as interlock. The description reflects the entity's sector profile, geographic location, and classification without asserting unverified incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics. It neutrally records the indexed association between coldfrontdist.com and interlock as a ransomware victim. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is associated with the US retail and e-commerce sector and is cataloged as a ransomware victim within this threat-intelligence index. The entity reflects a commercial service operating in online commerce and retail environments where cyber incidents can affect operational continuity and customer trust. Its listing type identifies the relationship between the entity and the threat actor interlock, providing structured context for threat-researchers and security professionals monitoring retail-sector risk patterns. This description relies solely on the provided entity classification, sector, geographic location, and associated actor without asserting unverified details such as breach scope, stolen data, ransom terms, or confirmed impact. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with supply chain and mobility infrastructure. The domain is cataloged as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence records for cybersecurity monitoring and risk assessment. This listing type signifies documented exposure relevant to ransomware activity within the entity's operational context. The description remains factual and neutral, focusing on sector alignment, geographic location, and the verified association with interlock without extrapolating unconfirmed incident details. Such entries support defenders in identifying potential attack surfaces across critical logistics networks. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based company operating within the Retail and E-commerce sector. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association explicitly tied to the threat actor interlock. Publicly available information regarding the specific nature of the incident, operational impact, or confirmed breach details is not independently verifiable through official channels at this time. This listing serves to document the entity's status and its linkage to interlock for analytical and defensive reference. Neutral treatment is maintained throughout this description to align with threat-intelligence catalog standards. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is an entity operating within the United States retail and e-commerce sector, cataloged as a ransomware victim within a threat-intelligence index. The domain name and associated profile indicate business activity aligned with commerce infrastructure, though specific operational details, incident specifics, or confirmed breach evidence are not disclosed here to maintain neutrality and factual accuracy. Its inclusion reflects threat-intelligence analysis linking the entity to the ransomware-associated threat actor interlock, providing context for sector-focused security monitoring and risk assessment. This listing serves as a structured reference point for analysts evaluating retail and e-commerce exposure to coordinated cyber threats in the United States. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector. The domain functions as a commercial entity serving retail and online commerce operations, though specific service details remain limited in publicly available threat-intelligence records. This listing type identifies ColdFrontDist.com as a ransomware victim associated with the threat actor interlock. The entry provides structured context for security analysts monitoring retail sector exposure to coordinated cyber threats. The designation reflects observed threat-intelligence indexing rather than confirmed incident details. It serves as a reference point for understanding interlock activity within US-based e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and related distribution services. As cataloged in the threat-intelligence index, the entity is identified as a ransomware victim associated with threat actor interlock. The listing type reflects the cybersecurity context in which ColdFrontDist.com was assessed, highlighting exposure to ransomware activity within its operational environment. This description relies solely on the indexed entity classification, sector designation, geographic location, and associated threat actor attribution without adding unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32811 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, delivering services aligned with supply chain and freight management needs. As a ransomware victim, it is cataloged within the threat-intelligence index under association with the interlock threat actor. This listing type indicates cybersecurity exposure relevant to operational continuity and infrastructure resilience across logistics networks. The entity serves as a reference point for monitoring adversary activity in transportation-focused environments. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32811 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and related commercial services. The domain is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing contextualizes the entity's exposure profile, sector vulnerability, and geographic location for analysts tracking cyber incidents. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are included, as factual specificity remains limited to the provided classification. The entry serves as a neutral reference point for monitoring threat actor activity and sector-based security trends. |
||||||
| Ransomware | Cold Front Distribution id32812 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and related distribution services. The entity is cataloged within this threat-intelligence index as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the organization's inclusion in cybersecurity intelligence records documenting ransomware-related incidents and adversary activity. The description focuses on the entity's sector, geographic location, and its classification within the index without disclosing unverified incident details. Such entries support threat analysts in tracking adversary campaigns and understanding vulnerabilities within critical retail and e-commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32812 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing type identifies ColdFrontDist.com specifically as a compromised organization targeted by ransomware activity linked to interlock, underscoring its relevance for cybersecurity defenders tracking retail and e-commerce threats. This entry serves to inform security teams and analysts about affected infrastructure within this sector, supporting proactive defense strategies against evolving cyber threats targeting commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32813 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a digital commerce entity. The domain is cataloged within a threat-intelligence index under the designation of ransomware victim, specifically associated with threat actor interlock. This listing serves to document the entity's exposure profile within cybersecurity intelligence frameworks, highlighting its relevance to retail and e-commerce threat monitoring. The entry provides neutral context regarding the entity's sector, geographic location, and its confirmed association with interlock as a ransomware victim, supporting security professionals in tracking and understanding sector-specific threat patterns. |
||||||
| Ransomware | Cold Front Distribution id32814 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim linked to the interlock threat actor. The listing type identifies ColdFrontDist.com as an affected organization subject to cyber intrusion activity. This entry contributes contextual intelligence regarding retail and e-commerce infrastructure exposure to ransomware campaigns. The description remains neutral, focusing solely on the entity's classification and associated threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32817 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed security event linkage rather than confirmed incident details, avoiding speculation regarding data exposure or operational impact. Understanding such victim profiles supports defensive strategies for retail and e-commerce organizations facing evolving cyber threats. The entry underscores the importance of continuous monitoring and intelligence sharing across sectors vulnerable to ransomware campaigns. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence monitoring frameworks. This listing type documents the relationship without disclosing confirmed incident details, operational specifics, or unverified breach claims. The entry serves as a neutral reference point for analysts tracking retail sector cybersecurity exposures and affiliated threat activity. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with supply chain and freight management workflows. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security events impacting this sector-specific organization without disclosing unverified technical details, data scope, or financial impact. This entry serves threat analysts to contextualize ransomware activity within critical logistics infrastructure and supports proactive defense planning for transportation and travel organizations facing similar actor profiles. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services aligned with modern consumer shopping platforms. As a ransomware victim associated with the interlock threat actor, this entity is cataloged within the threat-intelligence index to document exposure patterns and contextual risk factors relevant to cybersecurity monitoring. The listing reflects the entity's status as a compromised or targeted organization within the specified threat actor framework, contributing to broader analysis of retail sector vulnerability. This description maintains factual neutrality regarding the incident details while acknowledging the official association with interlock for catalog purposes. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The entity is formally listed in this threat-intelligence index as a ransomware victim associated with the threat actor Interlock. This designation reflects the cybersecurity risk profile observed in relation to the organization and its operational environment. The catalog entry serves to inform defenders and analysts about potential exposure within critical logistics networks. No specific incident details, such as data stolen, ransom demands, or breach confirmations, are included here, adhering to factual neutrality. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com is a US-based entity operating within the Manufacturing and Engineering sector, providing specialized operational support and technical services relevant to industrial workflows. It is cataloged within this threat-intelligence index under the designation ransomware victim, explicitly associated with the threat actor interlock. The listing reflects verified intelligence linking the entity to this adversary group without disclosing unconfirmed incident details such as data exfiltration scope, ransom terms, or specific breach mechanics. This entry serves threat analysts and security professionals seeking contextual understanding of compromised organizations within critical infrastructure sectors. The designation underscores the importance of monitoring ransomware activity across manufacturing and engineering environments in the United States. |
||||||
| Ransomware | Cold Front Distribution id32820 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the Retail and E-commerce sectors, with its domain referenced as https:coldfrontdist.com. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity intelligence records documenting ransomware-related incidents affecting retail and e-commerce organizations. The description remains neutral and factual, focusing on the entity's classification, sector context, geographic origin in the United States, and its linkage to the interlock threat actor without speculating on unverified incident details. Coldfront Dist. serves as a reference point within the index for understanding ransomware exposure patterns in targeted sectors. |
||||||
| Ransomware | Cold Front Distribution id32820 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the relationship between the compromised infrastructure and the specified adversary group without disclosing unverified technical details or operational specifics. This record serves to inform security teams about potential exposure vectors within the retail technology landscape. The entry remains strictly descriptive of the affiliation and sector context for analytical purposes. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and customer-facing services. The entity is cataloged as a ransomware victim associated with threat actor interlock, reflecting its exposure within threat-intelligence records. This listing type documents the relationship between the organization and the identified malicious actor without disclosing unverified incident details. The entry serves as a structured reference for security analysts tracking retail sector threats and ransomware-related activity. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States manufacturing and engineering sectors, providing specialized operational and technical services relevant to industrial workflows. The entity is documented within this threat-intelligence index under the classification of ransomware victim, specifically associated with threat actor interlock. This listing reflects observed security event correlations and intelligence linkages without disclosing unverified incident details such as data exfiltration specifics, ransom demands, or confirmed breach metrics. The catalog entry serves to contextualize the organization's exposure profile alongside the identified threat actor's activity patterns. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. It is cataloged in this threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor Interlock. The listing reflects observed cyber activity targeting entities in this sector, contributing to broader intelligence on retail and e-commerce security threats. This entry documents the entity's status without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. ColdFrontDist.com was listed as a ransomware victim associated with Interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records connecting affected organizations to specific cyber threat activity. The description focuses on verifiable contextual attributes—sector, geographic origin, and threat attribution—without speculating on unconfirmed technical details. Coldfrontdist.com remains cataloged neutrally as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the US Transportation, Travel, and Logistics sector, providing services aligned with freight movement, passenger connectivity, and supply-chain logistics workflows. The domain appears associated with an organization cataloged as a ransomware victim in threat-intelligence records. Its inclusion reflects observed threat activity tied to interlock, a threat actor identified in cybersecurity intelligence datasets. This listing type documents the entity's relationship to malicious cyber operations without confirming specific incident details such as data stolen, affected systems, or ransom demands. The description remains neutral and factual, focused on sector context, geographic location, listing classification, and the associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector, based in the United States. The domain represents an entity cataloged in the threat-intelligence index under the designation ransomware victim. Its association with threat actor interlock indicates a cybersecurity incident of concern within the retail technology landscape. This entry provides neutral context regarding the entity's classification and its documented relationship to the specified threat actor without disclosing unverified incident details. The listing type reflects the entity's status as a victim of ransomware activity linked to interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The entity is formally indexed as a ransomware victim associated with the threat actor interlock within this threat-intelligence catalog. This listing type indicates documented exposure to cyber-enabled ransomware activity targeting operational continuity and data integrity within critical logistics infrastructure. The catalog entry reflects verified threat-intelligence linkage rather than confirmed incident details, preserving neutrality regarding specific attack vectors, data handling, or recovery status. Understanding this association supports risk assessment for sector-focused security monitoring and defense planning. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain is formally listed in this threat-intelligence index as a ransomware victim, with the associated threat actor and source identified as Interlock. This designation reflects the entity's inclusion in cybersecurity records documenting ransomware activity within its industry context. The entry serves to inform defenders and analysts about potential exposure vectors within transportation and logistics infrastructure. Coldfrontdist.com remains cataloged neutrally as a ransomware victim associated with Interlock. |
||||||
| Ransomware | Cold Front Distribution id32822 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and online business infrastructure. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies Coldfrontdist.com specifically within ransomware incident contexts, highlighting its exposure to cyber threats targeting commercial and consumer-facing digital operations. This record serves as a reference point for analysts tracking adversary activity across retail and e-commerce environments, emphasizing the importance of sector-specific threat monitoring and defensive awareness. |
||||||
| Ransomware | Cold Front Distribution id32827 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the US Retail and E-commerce sector, providing digital commerce and distribution services. The domain coldfrontdist.com has been cataloged as a ransomware victim within a threat-intelligence index, explicitly associated with the threat actor interlock. This listing type indicates documented intelligence linking the entity to malicious activity targeting retail and online commerce environments. The entry reflects assessed threat exposure without disclosing unverified incident details such as data stolen, ransom terms, or confirmed breach specifics. It serves as a reference point for security teams monitoring interlock-related campaigns against US retail and e-commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32840 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents a US-based organization operating within the retail and e-commerce sectors. The domain is cataloged as a ransomware victim within a threat-intelligence index, with its association tied to the threat actor interlock. This listing contextualizes the entity’s exposure profile and operational environment for cybersecurity researchers and defenders monitoring retail and e-commerce infrastructure threats. The description intentionally avoids speculative claims regarding data stolen, breach scope, ransom demands, or confirmed incident details, relying solely on the verified listing classification. It serves as a neutral reference point for understanding interlock activity and ransomware impact across targeted commercial sectors. |
||||||
| Ransomware | Cold Front Distribution id32840 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects observed cybersecurity event linkage rather than confirmed breach details, intentionally avoiding speculation regarding data exfiltration, ransom demands, or operational impact. For threat analysts, Coldfrontdist.com serves as a reference point for understanding ransomware targeting transportation and logistics environments under the interlock actor profile. The entry supports contextual awareness of sector-specific vulnerabilities and active adversary patterns. |
||||||
| Ransomware | Cold Front Distribution id32841 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sector, cataloged in this threat-intelligence index as a ransomware victim. The domain name and sector context indicate commercial digital operations where cyber threats targeting retail infrastructure are a recognized concern. As part of the Interlock threat actor association, this listing documents the entity's relationship to ransomware activity within the indexed dataset. This entry provides neutral, factual context for researchers and defenders assessing threat patterns across retail and e-commerce environments without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated online infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim. The association with threat actor interlock indicates a cybersecurity incident where interlock's activity impacted this organization's digital environment. This listing serves to document the entity's exposure within the broader landscape of retail sector cyber threats. The entry provides neutral context for defenders assessing risks tied to interlock's campaigns in commercial online operations. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sectors, cataloged as a ransomware victim within a threat-intelligence index. Its inclusion reflects observed cybersecurity event correlation and intelligence linkage relevant to retail infrastructure security assessments. The entity serves as a reference point for threat actor interlock activity within commercial digital environments, supporting contextual analysis of ransomware targeting commerce-focused organizations. This entry documents the association neutrally without disclosing unverified incident specifics such as data exfiltration details, financial impact, or confirmed breach scope. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services relevant to online consumer markets. As cataloged in threat-intelligence records, this entity is identified as a ransomware victim associated with the interlock threat actor. The listing reflects its role within security incident indexing rather than disclosing confirmed breach details, stolen data categories, or operational impact specifics. This entry supports threat-intelligence analysis by connecting sector, geography, entity profile, and associated adversary context for defenders and security researchers monitoring retail and e-commerce cyber risks. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As cataloged in threat-intelligence indexes, this entity is identified as a ransomware victim associated with the threat actor Interlock. The listing type underscores the cybersecurity impact observed against this organization, reflecting potential operational disruption and security exposure within its business environment. This description adheres to neutral, factual reporting standards without disclosing unverified incident details, ensuring clarity for threat-intelligence professionals and security analysts monitoring retail sector vulnerabilities. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is an entity operating within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. As documented in the threat-intelligence index, ColdFrontDist.com is listed as a ransomware victim associated with the interlock threat actor. This classification reflects observed cyber-threat activity targeting organizations in this operational sector, without confirming specific stolen data, ransom demands, or incident details. The entry serves as a reference point for security teams monitoring ransomware campaigns linked to interlock within transportation and logistics environments. Its inclusion underscores ongoing vigilance for sector-relevant threat actors and potential victim infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. The entity has been cataloged as a ransomware victim within threat-intelligence frameworks, specifically associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was impacted, highlighting vulnerabilities within retail technology environments. The listing serves to inform defenders and analysts about potential attack vectors relevant to similar sectors. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. The domain appears in threat-intelligence indexing as a ransomware victim associated with the interlock threat actor group. This listing reflects the entity's inclusion in cybersecurity intelligence records documenting its exposure profile within this sector and its connection to interlock. No specific incident details, breach confirmations, data claims, or financial impact are asserted here, maintaining factual neutrality. The catalog entry serves to contextualize ColdFrontDist.com within broader ransomware-victim intelligence for sector-focused threat analysis. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the cybersecurity intelligence framework without disclosing specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This entry supports threat-aware analysis for sector-focused security teams monitoring retail and e-commerce environments. The neutral classification emphasizes verified association context while maintaining factual restraint on unconfirmed operational claims. |
||||||
| Ransomware | Cold Front Distribution id32859 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type reflects the nature of the reported cyber incident involving the organization, contextualized within its industry exposure to retail and online commerce threats. The entry provides a neutral, factual reference point for cybersecurity analysts monitoring interlock activity and its impact across retail digital environments. |
||||||
| Ransomware | Cold Front Distribution id33051 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing commerce-related services and infrastructure. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, with its associated threat actor and source identified as interlock. This listing reflects the cybersecurity community's documented relationship between the entity and the interlock threat actor within the retail digital ecosystem. The entry serves as a reference point for monitoring ransomware activity in US-based retail and e-commerce environments. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id29061 View details | United States | Manufacturing / Engineering | — | ||
|
The First United Methodist Church in Bern offers a variety of programs for all age groups, including preschool, childrens, youth, and adult ministries. However, it does not ensure the protection of your personal data and does not seek to protect it; due to its negligence, there has been a leak of personal data including phone numbers, email addresses, and home addresses of staff, parishioners, and children attending the church, as well as financial and other confidential documents. |
||||||
| Ransomware | First United Methodist Church Boerne id32520 View details | United States | Manufacturing / Engineering | — | ||
|
Fumc-Boerne.org operates within the United States manufacturing and engineering sectors, providing specialized industrial and technical services. As a ransomware victim, it is documented within this threat-intelligence index under association with the interlock threat actor. The listing type identifies the entity's status as impacted by ransomware activity, contextualized by its sector and geographic location. This entry serves to inform stakeholders of the affected organization and its connection to the identified cyber threat actor without disclosing unverified incident details. |
||||||
| Ransomware | First United Methodist Church Boerne id32520 View details | United States | Manufacturing / Engineering | — | ||
|
The First United Methodist Church in Bern offers a variety of programs for all age groups, including preschool, childrens, youth, and adult ministries. However, it does not ensure the protection of your personal data and does not seek to protect it; due to its negligence, there has been a leak of personal data including phone numbers, email addresses, and home addresses of staff, parishioners, and children attending the church, as well as financial and other confidential documents. |
||||||
| Ransomware | First United Methodist Church Boerne id32626 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized operational and technical services aligned with industrial production and engineering workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its status within threat-intelligence records without disclosing confirmed breach details, data exfiltration specifics, or operational impact metrics. This entry serves as a neutral reference point for analysts tracking ransomware incidents across industrial sectors and identifying correlated threat actor activity. The description adheres to factual, encyclopedic standards for catalog documentation. |
||||||
| Ransomware | First United Methodist Church Boerne id32627 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org refers to an organization operating within the United States manufacturing and engineering sector. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Publicly available details about the organization emphasize its industrial focus and operational scope rather than specific incident mechanics. This entry provides neutral context for security professionals assessing ransomware exposure patterns across industrial sectors. The listing neutrally states that https://fumc-boerne.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32627 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized operational and technical services relevant to industrial workflows. The entity is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor and source identified as interlock. This listing reflects the entity's inclusion in cyber threat intelligence records documenting ransomware-related incidents and attacker attribution. The description remains neutral and avoids speculation regarding breach details, data handling, or operational impact. Its classification supports security teams, compliance stakeholders, and threat researchers monitoring ransomware activity across industrial sectors. |
||||||
| Ransomware | First United Methodist Church Boerne id32628 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is a US-based entity operating within the manufacturing and engineering sector, with offerings aligned to industrial production, technical design, or operational engineering services. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in intelligence records linking it to this actor's activity without disclosing confirmed breach details, data scope, or operational impact. This entry provides neutral context for security professionals assessing ransomware exposure across manufacturing and engineering environments in the United States. The presence of the entity supports monitoring of threat actor interlock campaigns targeting industrial sectors. |
||||||
| Ransomware | First United Methodist Church Boerne id32632 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized operational and technical services relevant to industrial workflows. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in intelligence records concerning cyber incidents involving this specific adversary group. This catalog entry supports threat analysts in tracking ransomware impacts across critical industrial sectors and identifying patterns tied to known malicious actors. No additional incident details, such as data exfiltration specifics or ransom terms, are included per strict factual constraints. |
||||||
| Ransomware | First United Methodist Church Boerne id32632 View details | United States | Manufacturing / Engineering | — | ||
|
Fumc-Boerne.org operates within the United States manufacturing and engineering sector, providing specialized industrial services and technical solutions aligned with production and design workflows. The entity is documented within this threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This listing reflects observed security-related intelligence concerning the organization's exposure profile and the operational context of the identified threat actor. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included, adhering to strict factual boundaries. The catalog entry serves to inform stakeholders on sector-relevant threat exposure and actor attribution. |
||||||
| Ransomware | First United Methodist Church Boerne id32640 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents an organization operating within the United States manufacturing and engineering sector. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies the organization's role within the incident landscape without disclosing confirmed technical details, data specifics, or operational impact. Fumc-Boerne.org provides context for analysts tracking ransomware activity across industrial and engineering environments, where threat actor attribution and victim categorization support risk assessment and defensive planning. This entry reflects the entity's association with interlock within the ransomware victim index. |
||||||
| Ransomware | First United Methodist Church Boerne id32642 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized industrial and technical solutions tailored to production and design workflows. As a ransomware victim indexed in the threat-intelligence catalog, this entity is associated with the threat actor interlock. The listing type identifies the organization as a confirmed victim of ransomware activity linked to this specific adversary group. This entry contributes contextual data for security analysts monitoring industrial sectors and threat actor patterns. The description remains factual and neutral, reflecting the entity's sector, geographic location, and its classification within the ransomware victim index connected to interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32642 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized operational and technical services relevant to industrial workflows. The entity is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the security posture and incident classification of the organization without disclosing unconfirmed breach details, data specifics, or operational impact metrics. The record serves to contextualize the entity within cyber threat intelligence frameworks for sector-focused risk awareness. |
||||||
| Ransomware | First United Methodist Church Boerne id32643 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a company operating within the United States manufacturing and engineering sector. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. This listing type indicates documented exposure or impact related to ransomware activity targeting organizations in this industrial domain. The entry serves as a reference point for analysts tracking cyber threats against manufacturing and engineering entities. It neutrally states that https://fumc-boerne.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is an entity identified within a threat-intelligence index as a ransomware victim operating in the United States, primarily within the Manufacturing and Engineering sector. The organization's domain and associated profile reflect its operational context and the nature of cybersecurity exposure relevant to industrial and engineering environments. This listing type categorizes the entity based on its documented association with the threat actor interlock, providing structured intelligence for security analysts and defenders monitoring ransomware campaigns. The description remains factual and neutral, focusing on the entity's classification, geographic and sectoral context, and its placement within the ransomware victim index. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization was impacted by ransomware activity linked to interlock, contributing to broader awareness of targeting patterns within industrial and engineering sectors. The description focuses on the entity's classification and its verified association with the identified threat actor without disclosing unconfirmed incident details. This entry supports threat-intelligence analysis for monitoring ransomware campaigns and sector-specific cyber risks. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors, providing specialized industrial and technical services. The entity is formally listed within the threat-intelligence index under the designation of ransomware victim. This classification associates the organization with the threat actor interlock, a group documented in cyber threat intelligence databases. The catalog entry reflects observed security event correlations without disclosing unverified incident details such as data exfiltration scope or ransom demands. It serves as a reference point for monitoring threat actor activity across industrial and engineering sectors in the US. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
Fumc-Boerne.org operates within the United States manufacturing and engineering sector, providing specialized industrial services and solutions. As a ransomware victim associated with the threat actor interlock, this entity appears in the threat-intelligence index as a case of cybersecurity compromise targeting industrial infrastructure. The listing reflects the organization's exposure to ransomware activity without disclosing specific technical details, data scope, or operational impact. This entry serves to catalog the incident for threat-aware stakeholders monitoring industrial-sector security risks. Fumc-Boerne.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized services and operational support relevant to industrial and technical workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the intelligence framework without disclosing specific incident details, such as breach confirmation, data stolen, or financial impact. This record serves to inform security professionals and stakeholders about potential exposure within this sector and geographic context. The inclusion underscores the importance of vigilance for organizations in manufacturing and engineering facing threats from identified actors. |
||||||
| Ransomware | First United Methodist Church Boerne id32646 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is an entity identified within the threat-intelligence index as a ransomware victim operating in the United States, specifically within the Manufacturing and Engineering sector. The organization's domain name and sector context indicate industrial or technical operations where ransomware incidents carry significant operational and reputational implications. This listing type categorizes the entity based on its association with the threat actor interlock, a known adversary group referenced in cyber threat intelligence databases. The description avoids speculation regarding specific attack vectors, data handling, or confirmed breach details, adhering strictly to verified index metadata. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32647 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, providing specialized technical and operational services relevant to industrial workflows. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. This listing reflects the organization's inclusion in intelligence records documenting cybersecurity incidents involving this specific adversary group. No further operational details, breach specifics, or confirmed incident metrics are provided here to maintain factual neutrality and avoid speculation regarding the event. |
||||||
| Ransomware | First United Methodist Church Boerne id32647 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sector. The entity is documented within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog entries of this nature compile verified indicators and contextual profiles relevant to active cyber threats targeting industrial and engineering organizations. This description maintains factual neutrality regarding operational details while acknowledging the indexed classification. The listing reflects the entity's documented association with interlock as a ransomware victim. |
||||||
| Ransomware | First United Methodist Church Boerne id32650 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is an entity within the US manufacturing and engineering sector cataloged as a ransomware victim in the threat-intelligence index. The domain and associated listing reflect an incident context where the organization was impacted by ransomware activity linked to the interlock threat actor. No specific technical details, data exfiltration specifics, ransom terms, or confirmed breach evidence are included to maintain factual neutrality and avoid speculation beyond verified index classification. This entry serves as a reference point for threat analysts monitoring industrial sector exposure to interlock-associated campaigns. The listing type explicitly identifies fumc-boerne.org as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32650 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is an entity identified within the threat-intelligence index as a ransomware victim, associated with the threat actor interlock. Operating within the United States and spanning the manufacturing and engineering sectors, the entity represents a target category where industrial and technical infrastructure may be exposed to cyber threats. The listing reflects its classification based on observed threat-intelligence correlation rather than confirmed incident details, including data scope, breach validation, or financial impact. This entry serves catalog and analytical purposes for threat researchers, security teams, and compliance stakeholders monitoring ransomware activity across critical industrial sectors. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32651 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors, providing specialized industrial and technical services. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. This listing type indicates documented threat-intelligence correlation without confirmation of specific attack details, data exfiltration, or operational impact. Fumc-Boerne.org serves as a reference point for security professionals assessing ransomware exposure within critical manufacturing and engineering environments. The association with interlock provides context for monitoring potential security postures and threat landscape relevance for this sector and geographic region. |
||||||
| Ransomware | First United Methodist Church Boerne id32651 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors. The entity provides operational and technical services aligned with industrial production and engineering workflows. In the context of threat-intelligence indexing, this listing type identifies the organization as a ransomware victim associated with the threat actor interlock. The catalog entry reflects observed security-related intelligence concerning this entity without confirming specific incident details such as data exfiltration scope or ransom activity. This classification supports threat analysts tracking adversary targeting patterns across industrial sectors. |
||||||
| Ransomware | First United Methodist Church Boerne id32652 View details | United States | Manufacturing / Engineering | — | ||
|
Fumc-Boerne.org is a United States-based entity operating within the Manufacturing and Engineering sector, providing specialized industrial services and technical solutions. In the threat-intelligence index, the organization is cataloged as a ransomware victim associated with the threat actor Interlock. This listing reflects the entity's inclusion in cybersecurity threat databases where ransomware incidents and affiliated actors are documented for risk assessment and intelligence purposes. The description remains neutral regarding specific incident details, as confirmed specifics such as data scope or operational impact are not publicly attributable to this listing. The entry serves to contextualize Fumc-Boerne.org within manufacturing and engineering cybersecurity risk landscapes influenced by Interlock activity. |
||||||
| Ransomware | First United Methodist Church Boerne id32652 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors, providing operational services relevant to industrial production and technical design workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security-event intelligence concerning this organization without disclosing confirmed breach details, stolen data, financial impact, or specific incident mechanics. This entry supports threat-intelligence research by documenting the entity, its sector context, geographic location, listing type, and associated actor for analyst review and risk assessment. |
||||||
| Ransomware | First United Methodist Church Boerne id32657 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors. The entity's domain and associated threat-intelligence record identify it as a ransomware victim, with the specific threat actor or source attributed to interlock. Catalog entries of this nature document observed cyber-incident relationships between organizations and identified malicious actors without disclosing unverified technical or operational details. This listing supports threat-intelligence analysis for sector-focused risk assessment and historical incident indexing. It neutrally states that https://fumc-boerne.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | First United Methodist Church Boerne id32657 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sector. The entity is documented as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. No specific incident details, such as stolen data categories, record counts, ransom demands, or confirmed breach evidence, are provided in the listing to maintain factual neutrality. This entry serves to index the organization's association with this threat actor for cyber-threat intelligence purposes. The description focuses solely on the entity's sector, geographic location, listing classification, and the attributed threat actor without extrapolating beyond verified index data. |
||||||
| Ransomware | First United Methodist Church Boerne id32659 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a business operating within the United States manufacturing and engineering sectors, providing specialized operational and technical services relevant to industrial workflows. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim associated with the threat actor interlock. The listing type identifies the nature of the relationship between the entity and the identified malicious actor without disclosing unverified incident details. This entry serves to contextualize the organization within cybersecurity threat landscapes for sector-focused monitoring and defense planning. |
||||||
| Ransomware | First United Methodist Church Boerne id32659 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents a company operating within the US Manufacturing and Engineering sector. The entity functions as a business organization providing relevant operational services aligned with industrial and engineering domains. Within the threat-intelligence catalog, this listing type identifies it as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in cybersecurity intelligence records documenting adversary-targeted entities. The description remains factual and neutral, focusing on the entity's profile, location, sector context, and verified association without extrapolating unconfirmed incident details. |
||||||
| Ransomware | First United Methodist Church Boerne id32660 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org is a domain associated with a company operating within the United States manufacturing and engineering sector. The entity is cataloged as a ransomware victim within the threat-intelligence index, linked to the threat actor interlock. Publicly available information does not confirm specific incident details such as data exfiltration scope, ransom demands, or breach confirmation. Catalog copy remains neutral and descriptive, focusing on the entity's sector, geographic context, listing classification, and associated threat actor. This entry supports threat-intelligence analysis for identifying ransomware exposure patterns across industrial and engineering organizations. |
||||||
| Ransomware | First United Methodist Church Boerne id32660 View details | United States | Manufacturing / Engineering | — | ||
|
fumc-boerne.org operates within the United States manufacturing and engineering sector, delivering specialized operational and technical services relevant to industrial workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the organization's status within cybersecurity threat datasets, highlighting exposure patterns relevant to industrial infrastructure and engineering environments. This entry serves as a reference point for analysts tracking ransomware campaigns targeting manufacturing and engineering sectors in the US. The description remains factual and neutral, reflecting the indexed association without asserting unconfirmed incident details. |
||||||
| Ransomware | First United Methodist Church Boerne id32661 View details | United States | Manufacturing / Engineering | — | ||
|
Fumc-Boerne.org operates within the United States manufacturing and engineering sector, providing specialized offerings aligned with industrial and technical operations. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to ransomware activity. The description maintains neutrality regarding specific incident details, avoiding assumptions about data compromised, operational impact, or recovery status. The entry serves to catalog the relationship between this sector-specific organization and the identified threat actor within the intelligence framework. |
||||||
| Ransomware | First United Methodist Church Boerne id32665 View details | United States | Manufacturing / Engineering | — | ||
|
https://fumc-boerne.org represents an organization located in the United States operating within the Manufacturing and Engineering sector. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The description reflects the organization's sector profile and its documented relationship to this specific threat actor within the intelligence dataset. No incident specifics, such as data stolen, records accessed, ransom demands, or confirmed breach details, are included per strict factual constraints. This entry neutrally documents the classification and contextual linkage for catalog and research purposes. |
||||||