Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24367 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24367 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 72 | Onion service | Up checked 4h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 71 | Onion service | Up checked 4h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 70 | Onion service | Up checked 4h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 69 | Onion service | Up checked 4h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 4h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 4h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 65 | Onion service | Up checked 4h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 4h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 63 | Onion service | Up checked 4h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 61 | Onion service | Up checked 4h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 60 | Onion service | Up checked 4h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 59 | Onion service | Up checked 4h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 58 | Onion service | Up checked 4h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 4h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 4h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 4h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 55 | Onion service | Up checked 4h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 53 | Onion service | Up checked 4h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 4h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 4h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 4h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 67 | Onion service | Down checked 4h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 62 | Onion service | Down checked 4h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 51 | Onion service | Down checked 4h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 49 | Onion service | Down checked 4h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 4h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 4h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 4h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 4h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 4h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 40 | Onion service | Down checked 4h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 41 | Onion service | Down checked 4h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 38 | Onion service | Down checked 4h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 4h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 4h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 4h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 4h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 33 | Onion service | Down checked 4h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 4h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 31 | Onion service | Down checked 4h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 4h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 29 | Onion service | Down checked 4h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 4h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 4h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 4h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 4h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 26 | Onion service | Down checked 4h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 4h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 21 | Onion service | Down checked 4h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 23 | Onion service | Down checked 4h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 4h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 4h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 4h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 4h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 4h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Manufacturing / Engineering 21
- Communication / Marketing 21
- Services 20
- IT 18
- Public Sector 18
- Finance / Legal / Insurance 17
- Healthcare / Pharma 16
- Retail / E-commerce 13
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24367)
Search, filter and paginate the victim timeline for Interlock. Showing 4901–5000 of 24367.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | The Center for Hearing & Speech id33062 View details | United States | Education | — | ||
|
The Center for Hearing and Speech is an organization within the Education sector based in the United States, providing specialized services related to hearing assessment, speech therapy, and related auditory health support. Its inclusion in the threat-intelligence index identifies it as a ransomware victim associated with the threat actor interlock. This listing reflects cybersecurity monitoring and analysis efforts to document entities impacted by malicious cyber activity within specific sectors. The Center for Hearing and Speech operates within a critical public-facing education and healthcare-adjacent context, making its security posture and incident history relevant to threat tracking and sector-specific risk assessment. |
||||||
| Ransomware | The Center for Hearing & Speech id33062 View details | United States | Education | — | ||
|
The Center for Hearing and Speech operates within the education sector and serves the US market, providing specialized support and services related to hearing and speech development and rehabilitation. This entity is cataloged in the threat-intelligence index under the designation ransomware victim, linked to the associated threat actor interlock. The listing reflects the cybersecurity posture and incident history relevant to this organization within the indexed threat landscape. This description maintains a neutral, encyclopedic tone regarding the entity's sector, location, and its classification within the ransomware victim context tied to interlock. |
||||||
| Ransomware | The Center for Hearing & Speech id33062 View details | United States | Education | — | ||
|
The Center for Hearing and Speech is an organization operating within the United States education sector, providing specialized services related to hearing assessment, speech therapy, and related auditory health support. It specializes in clinical and educational auditory interventions for individuals and institutions within educational contexts. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity threat reporting without disclosing specific incident details, confirming its status within the ransomware victim category tied to interlock activity. |
||||||
| Ransomware | Goodwill id27587 View details | United States | Services | leaked | ||
|
Goodwill Industries of North Central Pennsylvania is dedicated to turning donations into jobs, providing employment for more than 700 people across 15 counties in Pennsylvania and one county in New York. However, they have been extremely negligent and irresponsible regarding security, resulting in the compromise and online leak of hundreds of pieces of personal data belonging to employees and partners, as well as financial documents. |
||||||
| Ransomware | Goodwill id32529 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States, providing business and service-oriented offerings. It is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The entry reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity. No specific incident details, such as data stolen, ransom demands, or confirmed breach scope, are provided here to maintain factual neutrality and avoid speculation. This description serves to inform catalog users of the entity's classification and associated threat context. |
||||||
| Ransomware | Goodwill id32529 View details | United States | Services | — | ||
|
Goodwill Industries of North Central Pennsylvania is dedicated to turning donations into jobs, providing employment for more than 700 people across 15 counties in Pennsylvania and one county in New York. However, they have been extremely negligent and irresponsible regarding security, resulting in the compromise and online leak of hundreds of pieces of personal data belonging to employees and partners, as well as financial documents. |
||||||
| Ransomware | Goodwill id32635 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States. The entity provides business services aligned with its organizational sector, though specific service offerings are not detailed in public threat-intelligence records. This listing type identifies the organization as a ransomware victim linked to the threat actor interlock in the threat-intelligence index. The entry documents the association neutrally without disclosing unverified incident specifics such as data stolen, ransom demands, or confirmed breach details. It serves as a factual reference point for analysts tracking ransomware incidents across sectors and geographic regions. |
||||||
| Ransomware | Goodwill id32636 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and professional services. The entity is documented within this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident classification relevant to threat monitoring and intelligence aggregation. This description adheres to neutral, encyclopedic standards without disclosing unverified incident details, operational specifics, or unconfirmed claims regarding the event. The listing serves to contextualize the entity within the broader landscape of identified ransomware victims and their linked threat actors. |
||||||
| Ransomware | Goodwill id32636 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and service-oriented offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The description focuses on the entity's profile and its inclusion in the intelligence dataset without disclosing unconfirmed incident details. This entry supports threat-aware research by documenting the relationship between the organization and the identified threat actor within a structured catalog. |
||||||
| Ransomware | Goodwill id32637 View details | United States | Services | — | ||
|
Goodwill Inc., referenced as https://goodwillinc.org, operates within the Services sector and is headquartered in the United States. The entity provides professional and service-oriented offerings, positioning it within a sector frequently targeted by cyber threats. According to the threat-intelligence index, Goodwill Inc. is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's inclusion in the ransomware victim category with interlock as the associated threat source, based on aggregated threat-intelligence data. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly disclosed by the entity itself. |
||||||
| Ransomware | Goodwill id32641 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and service-oriented industries. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects inclusion within an intelligence dataset tracking entities impacted by cyber incidents involving this actor. The description remains factual and neutral, focusing on the entity's sector, geographic location, and the nature of its inclusion without asserting unverified breach details. Such listings support threat-aware monitoring and context for security professionals analyzing ransomware activity across the Services sector in the United States. |
||||||
| Ransomware | Goodwill id32641 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based services sector organization operating within professional and service-oriented industries. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The catalog entry provides neutral context regarding the organization's geographic location, operational sector, and its classification in relation to this specific cyber threat actor. No incident specifics, such as data stolen, records compromised, ransom demands, or confirmed breach details, are stated to maintain factual accuracy and neutrality. This description serves to inform catalog users of the entity's verified association and contextual profile. |
||||||
| Ransomware | Goodwill id32649 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing professional services to clients and stakeholders within that industry. The entity is cataloged in this threat-intelligence index under the designation of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the organization's documented association with this cyber threat actor within the index's ransomware incident records. The description remains factual and neutral, focusing on the entity's sector, location, listing classification, and associated threat actor without elaborating on unconfirmed incident details. |
||||||
| Ransomware | Goodwill id32651 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and professional services. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the organization's status within cybersecurity threat monitoring without disclosing specific incident details such as data stolen, ransom demands, or operational impact. This record serves to inform security professionals and defenders about exposed service-sector entities connected to identified threat activity. The classification underscores the importance of vigilance for organizations in similar sectors facing ransomware threats from actors like interlock. |
||||||
| Ransomware | Goodwill id32651 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based Services sector organization operating within a professional services context. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the intelligence assessment linking the organization to an active ransomware threat actor profile without disclosing unverified incident details. The entry provides neutral context regarding the entity's sector, geographic location, and confirmed association with interlock for catalog and research purposes. |
||||||
| Ransomware | Goodwill id32652 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and commercial service offerings. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity records documenting potential security compromises affecting service-oriented entities. The description maintains factual neutrality regarding operational scope and sector classification without speculating on unverified incident details. It serves as a reference point for threat analysts monitoring service-sector exposure to identified ransomware campaigns linked to interlock activity. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim. Its inclusion reflects documented threat-intelligence linkages connecting it to the interlock threat actor. This entry provides neutral context regarding the entity's sector, geographic location, and association with the specified threat actor for catalog and research purposes. No additional incident details such as data stolen, ransom demands, or breach confirmation are asserted in this description. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States, providing business and professional services. The entity is included in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects its documented relationship within the intelligence dataset for monitoring cyber threats and attacker activity. The description remains factual and neutral, focusing on the entity's classification and context without disclosing unverified incident details. It serves as a reference point for security professionals assessing ransomware exposure across identified victims. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization identified within this threat-intelligence index under the ransomware victim listing type. The entity operates within professional services, with public information confirming its geographic presence and industry classification. This listing associates Goodwill Inc. with the threat actor interlock, reflecting its inclusion in the ransomware victim index as an affected entity. The description avoids speculative claims regarding breach details, data exposure, or operational impact, maintaining strict neutrality consistent with threat-intelligence catalog standards. This entry serves to catalog the entity's relationship to the specified threat actor within the ransomware incident landscape. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional service offerings. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the intelligence assessment linking the organization to an active threat actor profile without disclosing unverified technical or operational incident details. The entry provides neutral context regarding the entity's sector, geographic presence, and its classification within the ransomware victim index tied to interlock. All descriptions remain factual and avoid speculative claims regarding breach confirmation, data impact, or resolution specifics. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based services sector organization operating within the professional services domain, providing business and operational services to clients. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry documents the entity's exposure within the cybersecurity landscape, reflecting the broader risks facing service-oriented organizations targeted by ransomware campaigns. This neutral record serves threat analysts to contextualize the incident within interlock's operational footprint and sector-specific vulnerability patterns without disclosing unverified technical or operational details. |
||||||
| Ransomware | Goodwill id32655 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and service-oriented industries. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects inclusion within an intelligence dataset tracking affected entities and their connections to known cyber threat activity. No incident specifics such as data stolen, records accessed, ransom demands, or breach confirmation details are provided here, in accordance with strict factual reporting guidelines. The entry serves as a neutral reference point for security teams monitoring interlock-associated ransomware incidents across the Services sector in the United States. |
||||||
| Ransomware | Goodwill id32656 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, conducting professional and commercial services. Within the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the interlock threat actor. The listing type identifies the relationship between the organization and the specific cyber threat actor without disclosing unverified incident details such as data exfiltration scope, ransom demands, or internal forensic findings. This description serves to document the entity's presence in the ransomware victim index for analytical and informational catalog purposes. |
||||||
| Ransomware | Goodwill id32656 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States. The entity provides business services aligned with its sector classification, though specific operational details are not disclosed in this catalog entry. It is formally cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in the threat-intelligence index based on verified threat-correlation data. The description remains neutral and avoids speculation regarding breach mechanics, data handling, or recovery outcomes. |
||||||
| Ransomware | Goodwill id32659 View details | United States | Services | — | ||
|
goodwillinc.org is a Services sector organization based in the United States, operating within a service-oriented business environment. In the context of this threat-intelligence index, the entity is specifically listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity intelligence datasets tracking compromised organizations and their connections to identified malicious actors. The entry provides neutral, factual context regarding the entity's sector, geographic location, and its role within the ransomware incident catalog associated with interlock, serving as a reference point for threat researchers and security teams monitoring evolving cyber threats and victim patterns in the Services sector. |
||||||
| Ransomware | Goodwill id32659 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. It has been identified within the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's documented association with this specific cyber threat group in the context of ransomware activity. The catalog entry provides neutral context regarding the organization's sector, geographic location, and its classification alongside interlock for threat intelligence purposes. |
||||||
| Ransomware | Goodwill id32660 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and business-oriented offerings. Within the threat-intelligence index, this entity is cataloged specifically as a ransomware victim. The association connects the organization to the threat actor interlock, indicating a cybersecurity incident of this classification. This listing serves to document the entity's exposure profile and its relationship to identified malicious activity without disclosing unverified technical details or incident specifics. The entry provides context for monitoring and risk assessment purposes. |
||||||
| Ransomware | Goodwill id32660 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and business services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor Interlock. This designation reflects the intelligence assessment linking Goodwill Inc. to an incident pattern attributed to Interlock within the cybersecurity threat landscape. The description remains neutral and avoids speculative claims regarding data handling, breach scope, or operational impact. Goodwill Inc. serves as a documented case within the ransomware victim index for analytical and defensive reference purposes. |
||||||
| Ransomware | Goodwill id32661 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and business service domains. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim. Its association is linked to threat actor interlock, providing threat-context metadata for security monitoring and intelligence workflows. This entry reflects the indexed relationship without disclosing unverified incident details, breach specifics, or unconfirmed claims. The description remains neutral and factual, adhering to catalog standards for threat-intelligence documentation. |
||||||
| Ransomware | Goodwill id32661 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States. The entity provides professional and service-oriented offerings consistent with its sector classification. This listing identifies goodwillinc.org as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. No specific incident details, such as data stolen, records affected, ransom demands, or confirmed breach evidence, are provided here to maintain factual neutrality. The entry documents the relationship between the entity, its sector context, and the identified threat actor for catalog and intelligence purposes. |
||||||
| Ransomware | Goodwill id32666 View details | United States | Services | — | ||
|
goodwillinc.org is a company operating within the Services sector based in the United States, providing professional and business-oriented offerings. It is formally listed within this threat-intelligence index under the designation of ransomware victim. The association identifies interlock as the linked threat actor or source connected to this entity's inclusion in the catalog. This entry serves to document the cybersecurity event context for researchers and defenders monitoring adversary activity across sectors and geographies. No specific incident details, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Goodwill id32666 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States. The entity represents a business organization whose security posture and operational environment were documented within a threat-intelligence index as a ransomware victim. The listing associates this organization with interlock, a threat actor identified in relation to this incident classification. This entry provides neutral catalog context for researchers, defenders, and analysts tracking ransomware-related entities and associated threat actors across the Services sector. No specific incident details such as stolen data, ransom terms, or confirmed breach metrics are included. |
||||||
| Ransomware | Goodwill id32668 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity context surrounding the organization's inclusion in the index, based on available threat intelligence data. The description maintains a neutral, authoritative perspective regarding the entity's sector, geographic location, and its recognized association with the specified threat actor. No additional incident specifics, such as data stolen or ransom details, are included to preserve factual accuracy and neutrality. |
||||||
| Ransomware | Goodwill id32668 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and operational services to clients. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the indexed dataset, which aggregates verified threat incidents and associated actors for analytical purposes. This description adheres to neutral, encyclopedic standards without disclosing unconfirmed technical details, breach specifics, or unverified claims. The classification supports threat researchers, defenders, and security teams monitoring actor-entity relationships and incident patterns across sectors. |
||||||
| Ransomware | Goodwill id32669 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and service-oriented industries. The entity appears in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects inclusion within an index of entities impacted by cyber incidents and linked threat activity. The description remains factual and neutral, focusing on the entity’s sector, geographic context, listing classification, and associated threat actor without inventing incident details. It serves as catalog copy for threat-intelligence indexing purposes. |
||||||
| Ransomware | Goodwill id32669 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States. The entity provides business and professional services, though specific operational details beyond its sector classification and geographic location are not disclosed in the index entry. This listing identifies the organization as a ransomware victim linked to the threat actor interlock within the threat-intelligence catalog. The designation reflects the assessed relationship between the entity and the associated malicious activity without elaborating on confirmed technical details. This record serves as a neutral reference point for threat analysts monitoring service-sector exposure to interlock-related campaigns. |
||||||
| Ransomware | Goodwill id32670 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business-oriented services to clients and partners. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the index's role in mapping real-world entities impacted by cyber threats to known adversary activity for defensive analysis and situational awareness. The entry provides neutral, factual context regarding the organization's sector, geographic location, and its classification within the ransomware victim category alongside interlock. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Goodwill id32674 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, delivering professional services to clients and stakeholders. The entity appears in a threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects the cybersecurity community's documentation of the organization's involvement in a ransomware-related incident, contributing verified intelligence for defenders assessing risk patterns and emerging threats. The entry provides neutral context regarding the entity's sector, geographic location, and its association with interlock within the ransomware victim classification. No additional incident details, such as data specifics or financial impact, are included to maintain factual accuracy and avoid speculation beyond the indexed listing. |
||||||
| Ransomware | Goodwill id32674 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and professional services. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the interlock threat actor. This listing reflects the organization's inclusion in the indexed incident profile without disclosing unverified details such as data stolen, ransom demands, or specific breach timelines. The catalog entry serves to catalog the relationship between the entity, its sector and geographic context, and the associated threat actor for analytical and defensive reference purposes. |
||||||
| Ransomware | Goodwill id32674 View details | United States | Services | — | ||
|
goodwillinc.org operates within the United States as an organization serving the NGO and associations sector, providing public-interest services and community-focused initiatives. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This entry reflects the cybersecurity context in which the organization was documented, emphasizing its sector, geographic location, and relationship to the specified threat actor without disclosing unverified incident details. The classification supports threat-aware monitoring and contextual understanding of ransomware activity targeting non-profit and association-based entities in the US. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and operational services aligned with its organizational profile. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The listing type identifies the relationship between the entity and the identified threat actor without disclosing unverified incident details, such as specific data accessed or operational impact. This catalog entry serves to document the entity's status within cybersecurity intelligence records, supporting ongoing analysis of ransomware activity across the Services sector in the US. The description remains neutral and factual, reflecting the indexed classification only. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
Goodwill Inc is a United States-based company operating within the Services sector, providing professional and commercial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its documented relationship within the intelligence dataset without disclosing unverified technical details, breach confirmations, or proprietary incident specifics. The entry serves to inform stakeholders of the entity's exposure profile within the indexed threat landscape. It neutrally states that Goodwill Inc was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States. The entity provides professional and business-oriented services, contributing to the broader services industry landscape. Within the threat-intelligence index, this organization is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects its documented relationship with the specified adversary group in cybersecurity threat records. The entry serves to inform stakeholders about affected entities and associated threat actors for risk assessment and defense planning. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional service offerings. As cataloged in the threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This designation reflects the intelligence assessment linking Goodwill Inc. to interlock's activity within the indexed ransomware incident database. The description remains neutral regarding specific technical details of any potential compromise. The listing type and associated actor provide contextual intelligence for threat-aware stakeholders monitoring service-sector exposure. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and professional services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The entry documents the organization's presence within the ransomware incident landscape without disclosing unverified technical details, breach specifics, or unconfirmed claims. This neutral description serves to inform threat analysts and security professionals about the entity's status within the indexed threat data. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based company operating within the Services sector, providing professional and operational services to clients and partners. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records concerning cyber incidents tied to interlock activity without disclosing unverified technical or operational details. The catalog entry serves to contextualize the organization within broader threat landscape monitoring and sector-specific risk awareness frameworks. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing business and professional services. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This record contributes contextual data regarding organizational exposure patterns and adversary targeting within the Services industry. The description maintains neutrality regarding specific incident details while accurately reflecting the indexed classification and associated threat actor profile. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and business-oriented offerings. The entity has been formally cataloged within this threat-intelligence index under the designation ransomware victim. This classification reflects its documented association with the threat actor interlock, which has been identified in threat reporting as targeting entities within similar service-oriented sectors. The listing emphasizes the entity's operational context and its verified linkage to this specific threat actor without disclosing unconfirmed technical details of any incident. This entry serves to inform analysts and defenders of the organization's presence in the ransomware victim index associated with interlock. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business-oriented services to clients and partners. The entity is formally listed within this threat-intelligence index under the classification ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the organization's documented relationship to this specific cyber threat actor within the aggregated intelligence dataset. The entry serves to inform security teams, compliance stakeholders, and threat researchers about affected entities and their connections to active ransomware activity. No additional incident details, such as data compromised or ransom demands, are specified in this catalog description. |
||||||
| Ransomware | Goodwill id32676 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based services sector organization whose public digital presence indicates operational focus within professional services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing type signals a documented security incident connection between the organization and the identified adversary group without disclosing unverified technical or operational details. The entry serves to index the entity within the ransomware victim category for threat monitoring and intelligence analysis. |
||||||
| Ransomware | Goodwill id32677 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing business and professional services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents and adversary activity targeting organizations in this sector. The description remains factual and neutral regarding the nature of the threat without disclosing unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Goodwill id32677 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States, providing business and service-oriented offerings consistent with its domain identity. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects the intelligence assessment linking the organization to a ransomware-related activity attributed to interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its classification within the ransomware victim index. No incident specifics, breach confirmations, data details, or recovery claims are included, in accordance with strict factual reporting standards. |
||||||
| Ransomware | Goodwill id32678 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and service-oriented industries. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the intelligence assessment linking the organization to this specific cyber threat actor within the ransomware threat landscape. The description remains factual and neutral, focusing on the entity's sector, geographic location, and verified association without disclosing unconfirmed incident details. Goodwill Inc. serves as a reference point for threat actors, defenders, and analysts monitoring service-sector ransomware activity in the United States. |
||||||
| Ransomware | Goodwill id32679 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and operational services to its clients and stakeholders. This entity has been cataloged within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The inclusion reflects its documented connection to this specific cyber threat actor within the intelligence dataset. This entry serves as a reference point for monitoring ransomware activity, threat actor attribution, and sector-specific security risks in the Services industry. The description maintains a neutral, authoritative tone consistent with cyber-threat-intelligence catalog standards. |
||||||
| Ransomware | Goodwill id32680 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based company operating within the Services sector, providing professional and commercial services. It has been identified within a threat-intelligence index under the listing type ransomware victim. The association connects this entity to interlock, a threat actor or source referenced in the catalog. This entry documents the organizational profile, geographic location, industry classification, and the specific threat-related classification without disclosing unverified incident details. The catalog serves to contextualize the entity within cybersecurity intelligence frameworks for monitoring and risk assessment. |
||||||
| Ransomware | Goodwill id32681 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing business and professional services. According to the threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing type identifies the relationship between the organization and the associated cyber threat without disclosing specific incident details, such as data stolen, ransom demands, or breach confirmation. This entry serves as a reference point for threat analysts tracking ransomware activity and entity exposure within the index. The description remains factual and neutral, reflecting the indexed association only. |
||||||
| Ransomware | Goodwill id32681 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and professional services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the threat actor interlock. This designation reflects its inclusion within intelligence records documenting cybersecurity incidents and adversary activity. The description remains factual and neutral regarding the nature of the threat without speculating on unconfirmed details. It serves as a reference point for analysts tracking ransomware-related entities and associated actors. |
||||||
| Ransomware | Goodwill id32683 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States. The organization provides professional services aligned with its sector classification, though specific internal operations are not detailed in this catalog entry. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was identified within the index. The entry serves to inform analysts and defenders about the entity's status and its connection to the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Goodwill id32684 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and commercial services. The entity has been cataloged within this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. The index compiles verified intelligence on entities impacted by cyber threats to support security monitoring and risk assessment. This description reflects the official classification of the entity without disclosing unconfirmed incident details such as data exfiltration scope, ransom demands, or internal forensic findings. The association with interlock is presented as a documented attribution within the ransomware victim listing. |
||||||
| Ransomware | Goodwill id32685 View details | United States | Services | — | ||
|
goodwillinc.org is an organization operating within the Services sector based in the United States. The entity is documented within a threat-intelligence index under the listing type ransomware victim. Its association is specifically tied to threat actor interlock, reflecting the nature of the cybersecurity event indexed. This description maintains factual neutrality regarding the incident details, avoiding speculation on data handling or breach specifics. The catalog entry serves to inform stakeholders about the verified relationship between this Services sector company and the identified threat actor. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business services to clients. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects the organization's status within the index without disclosing specific incident details, operational impacts, or confirmed breach elements. This entry serves to catalog known relationships between affected entities and identified threat actors for analytical and defensive reference. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States. The entity provides organizational services aligned with its sector classification. This listing type identifies goodwillinc.org as a ransomware victim within the threat-intelligence index. The association with threat actor interlock contextualizes the entity within a specific cyber threat landscape. This description adheres to neutral, authoritative reporting standards without disclosing unverified incident details or speculative claims. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States. The entity provides professional and service-oriented offerings, serving clients within its designated industry context. According to the threat-intelligence index, this organization was formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects its documented relationship with the identified malicious actor in cybersecurity records. The entry serves as a reference point for threat analysts tracking ransomware incidents across sectors and geographic regions. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing professional and commercial services to clients and partners. The entity is documented within this threat-intelligence index under the listing type ransomware victim. Its inclusion reflects an association with the threat actor interlock, which is tracked for cyber threat analysis and defensive intelligence purposes. This record serves to inform security professionals and stakeholders about potential exposure within the Services sector. The description remains factual and neutral, focusing solely on the entity's categorization and its verified association with the specified threat actor without disclosing unconfirmed incident details. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects its inclusion in intelligence records correlating the organization with this specific cyber threat actor's activity. The description remains factual and neutral, focusing on the entity's profile, sector, geographic context, and the verified association without elaborating on unconfirmed incident details. This entry supports threat-resilience monitoring and contextual analysis for security stakeholders tracking ransomware incidents across sectors and regions. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional service offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the interlock threat actor contextualizes the cybersecurity risk profile and incident linkage relevant to threat monitoring and intelligence aggregation. This description avoids speculative claims regarding data exfiltration, ransom demands, or confirmed breach details, maintaining factual neutrality consistent with catalog standards. The listing reflects the entity's documented relationship to interlock within ransomware victim records. |
||||||
| Ransomware | Goodwill id32688 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services-sector organization operating within professional and service-oriented markets. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects inclusion within an intelligence dataset identifying organizations impacted by cyber incidents tied to this specific adversary group. The description remains factual and neutral, focusing on the entity's profile, sector, geographic location, and the indexed relationship to interlock without asserting unverified breach details. Such listings support threat-researchers and defenders in mapping adversary-victim connections across the Services sector in the United States. |
||||||
| Ransomware | Goodwill id32689 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States, providing business and service-oriented offerings. This entity is formally listed within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat-intelligence linkages relevant to cybersecurity monitoring and incident tracking. No specific incident details, such as data exfiltration scope, ransom demands, or breach confirmation, are included per strict factual constraints. This description serves catalog and analytical purposes for security professionals assessing ransomware exposure patterns. |
||||||
| Ransomware | Goodwill id32689 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and service-oriented markets. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock identifies the cybersecurity incident context tied to this profile. This description provides neutral factual context regarding the entity's sector, geographic location, and verified listing classification without disclosing unconfirmed incident details. The entry reflects the indexed relationship between Goodwill Inc. and interlock within the ransomware victim category. |
||||||
| Ransomware | Goodwill id32690 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and commercial services to clients and stakeholders. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. This classification reflects the cybersecurity context in which the organization was impacted, without disclosing specific technical incident details. The entry serves to document the relationship between the entity, its operational sector, and the identified threat actor for analytical and defensive purposes. All information regarding this listing is presented neutrally to support threat-intelligence cataloging and awareness. |
||||||
| Ransomware | Goodwill id32692 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional service offerings. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a documented cybersecurity incident context tied to this actor's activity. This entry provides neutral, factual context for catalog users assessing entity exposure and threat linkage without confirming unverified breach details. The description maintains encyclopedic neutrality and avoids speculative claims regarding data handling, financial impact, or technical specifics. |
||||||
| Ransomware | Goodwill id32692 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and commercial service delivery frameworks. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. This designation reflects the intelligence assessment associating Goodwill Inc. with interlock activity within the ransomware incident landscape for the Services sector in the United States. The description remains neutral regarding specific technical details, data handling, or confirmed breach specifics to adhere to factual reporting standards. This entry serves to index the entity's documented relationship to the threat actor interlock within the ransomware victim classification. |
||||||
| Ransomware | Goodwill id32692 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing professional and business-oriented services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity event documented within the index without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The record serves to inform stakeholders on affected organizations and associated threat actors within the Services sector landscape. Neutral documentation ensures transparency while adhering to factual reporting standards for threat intelligence. |
||||||
| Ransomware | Goodwill id32692 View details | United States | Services | — | ||
|
goodwillinc.org is a company operating within the Services sector located in the United States. The entity is documented within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity event attributed to the organization and its connection to the identified malicious actor group. The description remains neutral and factual, focusing on the verified listing context without extrapolating beyond confirmed intelligence sources. It serves as a reference point for monitoring threat patterns and incident correlations within the index. |
||||||
| Ransomware | Goodwill id32693 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services under this domain. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects inclusion in intelligence records concerning security incidents affecting organizations in this sector and geographic region. The description remains neutral regarding specific incident details, avoiding speculation about data handling, breach confirmation, or operational impact. It serves to inform analysts tracking ransomware activity and related threat actor engagements across service-oriented entities. |
||||||
| Ransomware | Goodwill id32693 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based company operating within the Services sector, providing professional and operational services to clients. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a documented security incident within the indexed intelligence records. This entry provides neutral context on the organization's sector, geographic location, and its classification relative to the identified threat actor. No specific incident details such as data stolen, ransom demands, or breach confirmation are included per strict factual guidelines. |
||||||
| Ransomware | Goodwill id32693 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and professional services. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity profile and incident association recorded for the organization within the index. The description remains factual and neutral, focusing solely on the entity's sector, location, listing classification, and associated threat actor without adding unverified details about the incident itself. |
||||||
| Ransomware | Goodwill id32693 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the organization's inclusion in intelligence records documenting cyber incidents tied to identified malicious activity. The description maintains a neutral, encyclopedic tone to support accurate threat assessment and contextual understanding for security stakeholders monitoring ransomware campaigns and their affected targets across sectors and geographies. |
||||||
| Ransomware | Goodwill id32697 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States. The entity provides business services aligned with its organizational sector and geographic presence. According to the threat-intelligence index, goodwillinc.org has been cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates the entity was impacted by ransomware activity associated with interlock, providing context for threat tracking and defense analysis. The description remains factual and neutral, reflecting the index classification without elaborating on unverified incident details. |
||||||
| Ransomware | Goodwill id32700 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing business and service-oriented offerings. This entity is formally listed within the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. The listing reflects the observed relationship between the organization and this specific cyber threat actor. This record contributes contextual data for analysts assessing service-sector exposure to coordinated ransomware campaigns originating from interlock. The entry remains factual and neutral, documenting the association without elaborating on unconfirmed technical or operational details of the incident. |
||||||
| Ransomware | Goodwill id32702 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and business-oriented offerings. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion within the ransomware incident profile connected to this specific adversary group, without disclosing unverified technical or operational details. This record serves to document the relationship between the organization and the identified threat actor for cybersecurity monitoring and intelligence purposes. |
||||||
| Ransomware | Goodwill id32706 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization whose domain, https:goodwillinc.org, is cataloged within a threat-intelligence index as a ransomware victim. The entity operates within the professional and services industry, providing offerings aligned with its sector classification. This listing type identifies the organization as having experienced ransomware activity associated with the threat actor interlock. The description remains factual and neutral, reflecting the index classification without elaborating on unconfirmed incident details such as data exfiltration scope, ransom demands, or specific technical attack vectors. The catalog entry serves to document the relationship between the entity, its sector, location, and the associated threat actor for threat-intelligence analysis purposes. |
||||||
| Ransomware | Goodwill id32708 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. Within the threat-intelligence index catalog, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing type indicates that interlock was identified as the source or associated actor in relation to this entity's cybersecurity event. This entry contributes contextual data for analysts monitoring ransomware campaigns, sector-specific vulnerabilities, and threat actor repercussions across the Services industry. The description remains factual and neutral, focusing solely on the indexed classification without elaborating on unconfirmed incident details. |
||||||
| Ransomware | Goodwill id32713 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization, highlighting its exposure within the broader landscape of ransomware incidents targeting service-oriented entities in the US. The entry serves to inform defenders and analysts about potential attack vectors and associated threat activity without disclosing unverified incident details. Authorities and security teams can reference this record to understand correlations between service-sector organizations and identified threat actors. |
||||||
| Ransomware | Goodwill id32714 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector based in the United States, providing business and professional services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This designation reflects its inclusion within threat-intel records concerning ransomware activity linked to interlock. The description remains factual and neutral, focusing on the entity's sector, location, and verified association without elaborating on unconfirmed incident details. It serves as a reference point for security professionals monitoring ransomware campaigns and associated actors. |
||||||
| Ransomware | Goodwill id32715 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and commercial service delivery. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the intelligence assessment linking the organization to an interlock-attributed ransomware incident without disclosing unverified technical or operational details. The entry provides contextual metadata regarding sector, geographic location, and the threat actor connection for analytical and defensive reference purposes. |
||||||
| Ransomware | Goodwill id32716 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional service offerings and administrative support functions. The entity is cataloged within a threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to the organization. The description maintains neutrality regarding confirmed technical details, avoiding speculation about data exposure, ransom demands, or specific breach characteristics. Goodwill Inc. serves as an indexed reference point for threat actors, defenders, and analysts monitoring service-sector ransomware exposure linked to interlock. |
||||||
| Ransomware | Goodwill id32737 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States, providing professional services aligned with its organizational profile. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the inclusion of the organization within threat-event records linked to interlock activity. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its verified listing status without attributing unconfirmed incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Goodwill id32738 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States, providing professional and commercial services to clients. The entity has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the organization's status as an affected party in relation to this specific cyber threat actor's activity. The description maintains neutrality regarding incident details, as confirmed specifics are not publicly disclosed by the entity itself. The entry serves as a reference point for threat analysts tracking ransomware incidents across the Services sector in the US. |
||||||
| Ransomware | Goodwill id32738 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business and professional services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This entry documents the relationship between the organization and the threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. The classification serves to inform stakeholders about potential security exposures and aligns the entity within the broader ransomware threat landscape. This neutral listing reflects the index's objective assessment based on available intelligence. |
||||||
| Ransomware | Goodwill id32738 View details | United States | Services | — | ||
|
Goodwill Inc. is a United States-based services sector organization operating within professional and commercial service domains. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the intelligence assessment linking Goodwill Inc. to an incident attributed to interlock within the ransomware threat landscape. No specific technical details, data exfiltration specifics, or confirmed breach metrics are included, adhering to strict factual boundaries. The entry provides neutral context for security professionals monitoring service-sector exposure to identified ransomware actors. |
||||||
| Ransomware | Goodwill id32738 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing professional and business-oriented offerings to clients and stakeholders. This entity is documented within the threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. The entry serves to inform security researchers, defenders, and industry observers about this organization's status within active cyber threat landscapes and ransomware incident databases. It reflects the intersection of corporate vulnerability, threat actor activity, and sector-specific exposure without disclosing unverified details regarding data handling, breach confirmation, or operational impact. This neutral catalog description adheres to factual reporting standards for threat-intelligence indexing. |
||||||
| Ransomware | Goodwill id32738 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based entity operating within the Services sector, providing business services and organizational support. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects its inclusion in intelligence records correlating the organization with this specific threat actor profile. The description remains neutral and factual, focusing on the entity's sector, geographic context, and verified listing association without asserting unconfirmed breach details. Such catalog entries support cybersecurity teams in tracking adversary-related incidents and contextualizing organizational exposure. |
||||||
| Ransomware | Goodwill id32739 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based organization operating within the Services sector, providing business and professional services. It has been cataloged in this threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. The listing reflects the entity's inclusion in threat-intelligence records related to this specific cyber incident profile. This entry supports security teams in tracking affected entities and understanding associated threat actor activity within the Services sector. All details are presented neutrally based on index classification without speculation regarding breach specifics or unverified claims. |
||||||
| Ransomware | Goodwill id32739 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, providing business services aligned with its organizational classification. The entity has been documented within a threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident classification relevant to threat tracking and defensive analysis. This description maintains factual neutrality regarding the nature of the event while contextualizing the entity within the broader ransomware threat landscape. No specific incident details, such as data exfiltration scope or ransom terms, are asserted per strict disclosure guidelines. |
||||||
| Ransomware | Goodwill id32740 View details | United States | Services | — | ||
|
goodwillinc.org is a United States-based entity operating within the Services sector, providing business and professional services. It is cataloged within the threat-intelligence index under the listing type ransomware victim. The entity is associated with the threat actor interlock, reflecting its inclusion in threat-related intelligence records. This description adheres to neutral, authoritative standards without speculating on unconfirmed incident details. The listing serves to inform stakeholders about the entity's status within cybersecurity threat monitoring frameworks. |
||||||
| Ransomware | Goodwill id32741 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is located in the United States. The entity provides professional and service-oriented offerings, though specific operational details remain outside confirmed incident documentation. According to the threat-intelligence index, goodwillinc.org is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects its association with this threat actor within the ransomware incident database. The description maintains neutrality regarding unconfirmed technical details, data impacts, or resolution specifics. |
||||||
| Ransomware | Goodwill id32741 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is based in the United States, delivering business and professional services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cybersecurity incidents tied to this specific actor group. The description remains neutral regarding incident details, avoiding assumptions about data handling, breach confirmation, or specific attack mechanics. Understanding such listings aids security teams in assessing organizational exposure and refining defensive strategies against identified threat patterns. |
||||||
| Ransomware | Goodwill id32741 View details | United States | Services | — | ||
|
goodwillinc.org is a company based in the United States operating within the Services sector, providing professional and commercial services to clients and partners. The entity has been cataloged within this threat-intelligence index under the classification of ransomware victim. Its inclusion reflects a cybersecurity incident linked to the threat actor interlock, which has been documented in relation to this organization. This listing serves as a reference point for threat analysts monitoring service-sector exposures and associated adversary activity. The description remains factual and neutral, focusing on the entity's profile and its verified association with the specified threat actor. |
||||||
| Ransomware | Goodwill id32741 View details | United States | Services | — | ||
|
goodwillinc.org operates within the Services sector and is headquartered in the United States. The entity provides business and service-oriented offerings, though specific operational details remain outside verified public disclosure channels. Within the threat-intelligence index, it is formally categorized as a ransomware victim linked to the interlock threat actor group. This listing reflects its association with this cybersecurity incident profile without confirming unverified details such as data exfiltration scope, ransom demands, or breach specifics. The record serves to inform defenders and analysts monitoring ransomware activity across US-based service sectors. |
||||||