Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24603 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24603 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 42m ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 72 | Onion service | Up checked 42m ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 71 | Onion service | Up checked 42m ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 42m ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 42m ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 65 | Onion service | Up checked 42m ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 66 | Onion service | Up checked 42m ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 64 | Onion service | Up checked 42m ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 63 | Onion service | Up checked 42m ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 60 | Onion service | Up checked 43m ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 61 | Onion service | Up checked 43m ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 43m ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 43m ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 58 | Onion service | Up checked 43m ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 43m ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 43m ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 43m ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 55 | Onion service | Up checked 43m ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 51 | Onion service | Up checked 43m ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 43m ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 44m ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 1 | Onion service | Up checked 50m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 50m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 50m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 67 | Onion service | Down checked 42m ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 62 | Onion service | Down checked 42m ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 43m ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 43m ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 43m ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 44m ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 44m ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 43 | Onion service | Down checked 44m ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 42 | Onion service | Down checked 44m ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 44m ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 44m ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 37 | Onion service | Down checked 45m ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 38 | Onion service | Down checked 45m ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 45m ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 45m ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 34 | Onion service | Down checked 45m ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 45m ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 35 | Onion service | Down checked 45m ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 31 | Onion service | Down checked 46m ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 46m ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 29 | Onion service | Down checked 46m ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 46m ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 28 | Onion service | Down checked 46m ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 27 | Onion service | Down checked 47m ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 24 | Onion service | Down checked 47m ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 26 | Onion service | Down checked 47m ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 47m ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 23 | Onion service | Down checked 47m ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 47m ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 47m ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 19 | Onion service | Down checked 47m ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 48m ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 48m ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 16 | Onion service | Down checked 48m ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 17 | Onion service | Down checked 48m ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 48m ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 48m ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 48m ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 10 | Onion service | Down checked 48m ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 48m ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 49m ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 7 | Onion service | Down checked 49m ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 8 | Onion service | Down checked 49m ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 49m ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 5 | Onion service | Down checked 49m ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 49m ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 3 | Onion service | Down checked 50m ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 4 | Onion service | Down checked 50m ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
Top Activity Sectors (16)
- Education 48
- Services 21
- Communication / Marketing 21
- Manufacturing / Engineering 20
- Finance / Legal / Insurance 17
- IT 17
- Public Sector 17
- Healthcare / Pharma 16
- Retail / E-commerce 13
- Construction / Real Estate 11
- Not identified 9
- NGOs / Associations 4
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
- Real Estate 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24603)
Search, filter and paginate the victim timeline for Interlock. Showing 5701–5800 of 24603.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Wagon Mound Public Schools id32781 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity identified within the US Education sector. The domain prefix wm.k12.nm.us indicates a North American school district or educational institution context, with offerings and infrastructure aligned to K-12 education services. This entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity targeting education infrastructure and does not confirm specific breach details, data exfiltration, or operational impact. It serves as a reference point for security teams monitoring ransomware campaigns in US educational environments. |
||||||
| Ransomware | Wagon Mound Public Schools id32784 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entity categorized as a ransomware victim within the United States education sector. The entity identifier suggests a school or educational institution context in New Mexico, serving as a reference point for threat-related activity and incident tracking. Its inclusion in this ransomware victim listing is associated with the threat actor interlock, providing analysts with contextual linkage for cyber-threat intelligence workflows. This entry supports monitoring of educational infrastructure exposure, sector-specific attack patterns, and actor-related threat indicators without disclosing unverified incident details. The description remains neutral and factual, reflecting the entity's classification and associated attribution. |
||||||
| Ransomware | Wagon Mound Public Schools id32785 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity within the Education sector located in the United States, cataloged in the threat-intelligence index as a ransomware victim. Its designation reflects its role in an incident context where cybersecurity intelligence platforms track affected organizations, threat actors, and sector-specific exposure. The entity aligns with the Education sector, a critical infrastructure domain frequently targeted by ransomware campaigns, and is associated with the threat actor interlock. This listing type identifies wm.k12.nm.us specifically as a ransomware victim connected to interlock within the index framework. The description remains factual and neutral, focusing on sector, location, listing classification, and associated actor without extrapolating unverified incident details. |
||||||
| Ransomware | Wagon Mound Public Schools id32785 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity identified within the United States Education sector. The domain name and context indicate involvement in a cybersecurity incident affecting educational infrastructure. This listing type categorizes the entity as a victim of ransomware activity, with the associated threat actor and source designated as interlock. The description maintains neutrality regarding unconfirmed incident details, avoiding speculation on data stolen, records impacted, ransom demands, or specific breach confirmations. This entry serves as a reference point within a threat-intelligence index for tracking ransomware incidents across sectors and geographic regions. |
||||||
| Ransomware | Wagon Mound Public Schools id32788 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the United States education sector. The domain name indicates a focus on K-12 educational infrastructure, suggesting involvement with school or institutional systems. This listing type categorizes the entity based on its association with a specific threat actor identified as interlock, which is documented in the intelligence catalog. The description remains factual and neutral, avoiding speculation regarding breach details, data exfiltration, or operational impact. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32788 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entity categorized as a ransomware victim within the Education sector, located in the United States. The name indicates a K12 educational context in New Mexico, reflecting the institution's operational domain and geographic footprint. Associated with threat actor interlock, this listing type documents the entity's status as a ransomware incident victim for cyber-threat-intelligence analysis. The entry supports security teams in tracking ransomware exposure patterns across education infrastructure in the US. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32788 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within a threat-intelligence index as a ransomware victim operating in the Education sector and based in the United States of America. The domain name and context indicate involvement within a K12 (primary and secondary education) environment, reflecting the sector and geographic focus of this listing. This entry documents the association between the entity and the threat actor interlock within the ransomware incident catalog. The description remains neutral regarding specific technical attack details, data handling, or confirmed breach specifics, adhering to factual reporting standards for threat intelligence. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32789 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity cataloged within the threat-intelligence index under the ransomware victim listing type. Its designation aligns with the Education sector and the United States, reflecting operational context typical of school and educational institution environments. The entity name suggests a domain or identifier associated with a K12 network environment in New Mexico, contributing to contextual understanding of the listing within cybersecurity intelligence frameworks. This entry is documented neutrally as a ransomware victim associated with the threat actor interlock, providing structured reference points for analysts tracking educational sector threat exposure and attacker attribution patterns. |
||||||
| Ransomware | Wagon Mound Public Schools id32792 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the US Education sector. The domain name indicates a North American public or institutional school context, and the entity is cataloged within a threat-intelligence index as associated with the threat actor interlock. This listing type identifies the organization as a reported target of ransomware activity, contextualized by its geographic location and sector classification. The description avoids inventing specific breach details, such as data stolen, records accessed, ransom demands, or confirmed impact metrics. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32794 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the United States education sector. The designation wm.k12.nm.us aligns with K-12 educational infrastructure context, indicating involvement within school or educational institution environments where cybersecurity threats are critically monitored. This listing type categorizes the entity based on its association with the threat actor interlock, reflecting the intelligence assessment linking it to a specific cyber threat campaign. The description remains neutral regarding incident details, as no confirmed specifics such as data exfiltration scope or operational impact are established in available public intelligence. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32796 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entry categorized as a ransomware victim within the United States Education sector. The entity name indicates a North American public or institutional education context, with offerings focused on cybersecurity intelligence, incident tracking, and threat actor attribution for defense and risk assessment. Associated with the threat actor interlock, this listing provides neutral catalog data for security professionals monitoring ransomware activity across educational infrastructure. No specific incident details such as data stolen, records affected, ransom demands, or confirmed breach evidence are included in this description. This entry neutrally states that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within a threat-intelligence index as a ransomware victim operating within the United States education sector. Its designation reflects its role as a compromised or targeted institution in a K12 educational context, with geographic and sectoral relevance to cybersecurity monitoring efforts. The entity is specifically associated with the threat actor interlock, indicating a documented connection between this victim profile and interlock's activity. This listing type provides structured intelligence for analysts tracking ransomware campaigns across critical infrastructure sectors. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and located in the United States. The domain notation suggests a school or educational institution context, with offerings or functions aligned to K12 education environments. This listing type categorizes the entity as a ransomware victim associated with the threat actor interlock. The description remains factual and neutral, focusing on the entity's classification, sector, geographic context, and its association with the specified threat actor without disclosing unverified incident details. This entry supports threat-intelligence cataloging for monitoring cybersecurity risks across educational infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the Education sector and based in the United States. The domain notation and contextual metadata align with a North American educational institution or education-focused organization, reflecting its sector classification and geographic origin. This listing type categorizes the entity as directly associated with a ransomware incident, with the threat actor interlock cited as the linked source in the intelligence record. The description remains factual and neutral, focusing on the entity's classification, sector, location, and association without speculating on unconfirmed technical details or incident specifics. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entry categorized as a ransomware victim within the US Education sector. The entity name references a K12 educational context and the state identifier NM, situating it geographically within the United States. As part of the ransomware victim listing associated with the threat actor interlock, this entry documents the entity's inclusion in the threat-intelligence catalog based on observed or attributed threat activity. The description remains neutral and avoids inventing specifics such as breach details, data stolen, ransom amounts, or confirmed incident timelines. This entry serves catalog and analytical purposes for monitoring education-sector ransomware incidents linked to interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, operating in the United States. The entity name indicates a North American K-12 education context, suggesting institutional infrastructure relevant to student and administrative systems. This listing type identifies the entity as having been affected by ransomware activity, with interlock cited as the associated threat actor or source. The description remains neutral regarding specific incident details, as no confirmed breach specifics, data types, record counts, ransom amounts, or verified claims are provided in the available knowledge. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32797 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States education sector. The name indicates a K12-focused institution or network in New Mexico, representing educational infrastructure where threat monitoring and cyber-risk intelligence are applied. As part of a threat-intelligence index, this listing type identifies the entity as associated with the ransomware incident attributed to the threat actor interlock. The description remains neutral regarding confirmed breach details, avoiding invented specifics such as stolen data, affected records, ransom terms, or precise incident timelines. This entry supports cybersecurity professionals, defenders, and intelligence consumers seeking structured context on ransomware victims, sector exposure, geographic scope, and actor attribution in the US education environment. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the US Education sector. The domain naming convention indicates a school or educational institution context, with primary relevance to cybersecurity monitoring and sector-focused threat analysis. This listing type denotes an organization affected by ransomware activity, providing contextual intelligence for defenders tracking intrusions and cyber incidents across educational infrastructure. The entity is associated with threat actor interlock, a source noted within the intelligence catalog for linkage purposes. This entry neutrally records that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States education sector. The domain name indicates a North American public school or educational institution context, with offerings and infrastructure aligned to K-12 administrative systems. This listing type identifies the entity as a victim of ransomware activity, with the associated threat actor or source designated as interlock. The entry documents the relationship between the education-sector organization and the identified cyber threat actor without disclosing unverified incident details. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity associated with the Education sector in the United States of America. Its designation within the threat-intelligence index identifies it as a ransomware victim, contextualized by its location, sector focus, and operational profile relevant to institutional cybersecurity monitoring. The entity name suggests a school or educational institution context, with the k12 prefix aligning with primary and secondary education environments commonly targeted by ransomware campaigns. In this listing, wm.k12.nm.us is associated with the threat actor interlock, reflecting the intelligence linkage used to categorize affected entities within the ransomware victim index. This description remains factual and neutral, noting only the entity classification, sector, geographic context, and associated threat actor without asserting unconfirmed breach details. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The domain name indicates a North American educational institution or organization serving K-12 systems, with operational context aligned to public education infrastructure. As part of the threat-intelligence index, this listing type identifies the entity as having been affected by ransomware activity linked to the interlock threat actor group. The catalog entry provides neutral context on sector, geographic location, and attacker association without disclosing unverified incident details. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and associated with the United States. The designation wm.k12.nm.us reflects its role in the catalog, contextualized by its K12 education environment and regional location. As part of the ransomware victim listing linked to the threat actor interlock, the entry contributes to monitoring education-sector infrastructure exposure and associated cyber threat patterns. This description maintains a neutral, authoritative stance focused on the entity's classification and contextual attributes without asserting unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32798 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, operating in the United States. The entity name indicates a K12 (primary and secondary education) context in New Mexico, reflecting its sector classification and geographic footprint. As part of the threat-intelligence index, it is associated with the threat actor interlock, providing context for threat actors targeting education environments. This listing type documents the relationship between the entity and the identified threat actor without disclosing unverified incident details. The entry serves defenders and analysts assessing ransomware exposure across US education infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32801 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and located in the United States. The domain name references the K12 education segment and the state of New Mexico, indicating its operational context within a U.S. educational institution or related service environment. As a ransomware victim listing, the entry documents the association between this entity and the threat actor interlock, providing catalog context for defenders and analysts monitoring education-sector cyber incidents. This description intentionally avoids speculative details regarding data stolen, ransom demands, or breach confirmation, focusing solely on the verified classification and contextual metadata. The entry serves as a reference point for understanding threat exposure patterns across U.S. education infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32808 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name indicates a North American school or educational institution context, with the k12 designation pointing to primary, secondary, or higher education infrastructure. It is associated with the threat actor interlock in the threat-intelligence index, reflecting its inclusion as a ransomware incident entity tied to that actor's activity profile. This listing provides structured context for analysts tracking cyber incidents across education environments in the US. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32808 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within a threat-intelligence index as a ransomware victim operating within the Education sector and associated with the United States, specifically New Mexico. The designation wm.k12.nm.us reflects its role in cybersecurity intelligence catalogs, where it is cataloged alongside sector context, geographic location, and the ransomware listing type. The entity is associated with the threat actor or source identified as interlock, contributing to structured threat-intelligence analysis for monitoring and risk assessment. This entry provides neutral, factual context regarding the entity’s classification and linkage without asserting unverified incident details, breach confirmations, data impacts, or operational specifics. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32811 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity cataloged within the threat-intelligence index under the ransomware victim listing type. Its naming convention and sector metadata indicate a U.S.-based Education environment, reflecting operational context relevant to institutional cybersecurity monitoring. The entity represents a reported victim profile associated with the threat actor interlock, providing contextual linkage for analysts tracking ransomware activity across educational infrastructure. This description avoids speculative claims regarding breach details, data exposure, or recovery outcomes, maintaining strict factual neutrality. The listing neutrally records that wm.k12.nm.us was identified as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32813 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the US Education sector. The entity identifier suggests a school, educational institution, or education-related organization based in New Mexico, with catalog context focused on threat-intelligence indexing and incident association. Its listing type identifies it as a ransomware victim, with the associated threat actor or source designated as interlock. This entry provides neutral, authoritative context for threat-intelligence researchers tracking ransomware incidents across education environments in the United States. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32818 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The domain name indicates a North American public school district or educational institution context, operating within the K-12 education framework. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim linked to the interlock threat actor group. The listing captures the relationship between this educational organization and the identified threat actor without disclosing unverified incident details. This entry serves threat analysts to track ransomware exposure patterns within critical education infrastructure across the United States. |
||||||
| Ransomware | Wagon Mound Public Schools id32819 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity identified within the Education sector and associated with the United States. The entity name references a K12 educational context and New Mexico geographic indicator, situating it within a regional education environment where cyber incidents can impact student systems, administrative platforms, and institutional data infrastructure. As cataloged in this threat-intelligence index, wm.k12.nm.us is classified as a ransomware victim linked to the interlock threat actor. This listing provides neutral intelligence context for security teams monitoring education-sector exposure and adversary activity across US infrastructure. The description avoids speculative claims regarding breach confirmation, data scope, or operational impact, focusing solely on the entity's classification and associated threat context. |
||||||
| Ransomware | Wagon Mound Public Schools id32820 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name suggests a K12-oriented institution or service environment, consistent with the assigned sector and geographic context provided for the threat-intelligence index. Its listing type identifies it specifically as a ransomware victim associated with the threat actor interlock. This entry contributes structured intelligence regarding affected entities, sector exposure, geographic scope, and adversary linkage for catalog and analysis workflows. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32821 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States education sector. The domain name indicates a K12 (primary and secondary education) context associated with New Mexico, suggesting institutional or educational infrastructure involvement. As part of a threat-intelligence index listing, this entity is documented as a ransomware victim associated with the threat actor interlock. The entry provides context for security researchers and defenders analyzing ransomware activity within education environments across the US. This neutral catalog description focuses on the entity's classification, sector, geographic relevance, and established threat-actor association without speculating on unverified incident details. |
||||||
| Ransomware | Wagon Mound Public Schools id32821 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity within the US Education sector identified as a ransomware victim in the threat-intelligence index. Its designation reflects its operational context in a public-facing education environment where cybersecurity incidents can significantly impact institutional continuity, student data, and service delivery. The listing associates this entity with the threat actor interlock, providing context for threat-analyst review and cross-referencing within cybersecurity intelligence frameworks. This entry documents the relationship between the entity, its sector and geographic location, and the associated threat actor without asserting unverified breach details, data exfiltration scope, or recovery outcomes. It serves as a structured catalog reference for monitoring ransomware activity within US educational infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32822 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the United States education sector. The entity name indicates a K12 context linked to New Mexico, suggesting institutional or educational infrastructure relevant to student and administrative systems. As cataloged in this threat-intelligence index, it is associated with the threat actor interlock, reflecting observed or attributed ransomware activity targeting this sector and geographic region. This listing provides neutral intelligence context for defenders assessing risk patterns in education-focused environments. The entry documents the entity's classification without confirming specific incident details such as data exfiltration, ransom demands, or operational impact. |
||||||
| Ransomware | Wagon Mound Public Schools id32822 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index under the ransomware victim listing type. Operating within the Education sector and associated with the United States, specifically Nevada, the entity represents a K12 institution whose infrastructure or data environment is cataloged as affected by the threat actor interlock. The listing reflects threat-intelligence analysis linking this organization to ransomware activity associated with interlock, without disclosing confirmed breach details. This entry provides context for security teams monitoring Education sector exposure to identified threat actors in US jurisdictions. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32822 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the United States Education sector. The entity name indicates a K12 context associated with New Mexico, suggesting institutional or educational infrastructure relevant to student and administrative systems. As part of the threat-intelligence index, it is associated with the threat actor interlock, providing context for its risk profile and operational environment. This listing type records the entity's relationship to a ransomware incident without disclosing unconfirmed technical details, data scope, or financial impact. The entry serves as a neutral reference point for monitoring and understanding threats affecting education-sector organizations in the specified geographic and sector context. |
||||||
| Ransomware | Wagon Mound Public Schools id32822 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity within the threat-intelligence index categorized as a ransomware victim operating within the Education sector and located in the United States. The domain name suggests a connection to a North American public school or educational institution, reflecting its sector classification and geographic context. As part of this ransomware victim listing, the entity is associated with the threat actor interlock, indicating a cybersecurity event where interlock was identified as the responsible source. This entry documents the incident within a structured threat-intelligence framework for monitoring and analysis. The listing neutrally states that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32822 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entry categorized as a ransomware victim within the United States Education sector. The entity name indicates a K12 educational context in New Mexico, reflecting its operational domain and sector classification. As part of the threat-intelligence catalog, it documents the relationship between this victim entity and the interlock threat actor. The listing provides neutral context for analysts tracking ransomware incidents across educational institutions in the US, without disclosing specific breach details. This entry supports cybersecurity professionals in understanding threat actor targeting patterns within critical education infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32823 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim entity within the United States Education sector. The entity name suggests a school or educational institution context in New Mexico, with offerings and infrastructure aligned to K-12 educational services. This listing identifies the organization within a threat-intelligence index under the ransomware victim classification, associated with threat actor interlock. The description maintains neutrality regarding specific incident details, avoiding assumptions about confirmed breach scope, data stolen, or operational impact. It serves as a reference point for threat analysts monitoring education-sector vulnerabilities and adversary activity linked to interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32823 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index under the ransomware victim listing type. Its designation aligns with the Education sector and the United States, indicating operational context within a public or institutional education environment. The entity contributes contextual intelligence for threat-analyst workflows focused on ransomware activity in U.S. education infrastructure. It is associated with the threat actor or source identified as interlock. This listing neutrally records that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32823 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the United States Education sector identified as a ransomware victim in the threat-intelligence index. The domain name aligns with a K12 (primary and secondary education) context in Nevada, indicating operational scope within educational infrastructure. This listing type categorizes the entity based on threat-intelligence observations linking it to the interlock threat actor group. The description remains neutral and avoids inventing specifics regarding breach details, data exposure, or financial impact. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32823 View details | United States | Education | — | ||
|
wm.k12.nm.us is identified within a threat-intelligence index as a ransomware victim entity operating within the United States education sector. The entity name references a K12 context and New Mexico geographic association, indicating its relevance to school and educational institution environments. Its listing type specifically categorizes it as a ransomware victim linked to the threat actor interlock. This classification supports cybersecurity professionals in tracking affected infrastructure, understanding sector-specific attack patterns, and monitoring associated adversary activity. The entry neutrally records that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32823 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the US Education sector. The designation wm.k12.nm.us aligns with K12 and Nevada-associated educational infrastructure contexts, reflecting the organization's sector, geographic scope, and role in the intelligence catalog. This listing type records the entity's association with the threat actor interlock, providing analysts with structured context for threat correlation, sector risk assessment, and defensive monitoring. The description remains neutral and factual, focusing on classification rather than inventing incident details such as data stolen, ransom demands, breach confirmation, or operational impact. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32824 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the United States education sector. The domain name indicates a K12 (primary and secondary education) context in New Mexico, suggesting institutional use by a school, district, or educational organization. As cataloged in this threat-intelligence index, it is associated with the threat actor interlock, reflecting its classification as a ransomware victim. This listing provides neutral intelligence context for defenders monitoring education infrastructure threats and attacker campaigns targeting U.S. educational institutions. No incident specifics, breach confirmations, or unverified claims are included in this description. |
||||||
| Ransomware | Wagon Mound Public Schools id32824 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and associated with the United States, specifically New Mexico. The domain name and classification indicate its relevance to cybersecurity monitoring in the K12 education environment, where ransomware incidents present significant operational and data-security risks. This listing type attributes the entity to threat actor interlock, providing context for threat-correlation and intelligence enrichment without disclosing unverified incident details. The description remains neutral and factual, focusing on sector, geographic context, entity classification, and associated threat actor as provided by the index. No additional incident specifics such as data stolen, records affected, ransom terms, or confirmed breach evidence are included. |
||||||
| Ransomware | Wagon Mound Public Schools id32825 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The domain name indicates a K12 (primary and secondary education) context in New Mexico, suggesting institutional infrastructure relevant to student and administrative systems. As a threat-intelligence index listing, it is cataloged to reflect cybersecurity exposure associated with the threat actor interlock. This entry supports analyst review of ransomware incidents in education environments across the US, aiding threat tracking, risk assessment, and sector-specific defensive planning. The record neutrally states that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32825 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and located in the United States. The domain naming convention suggests involvement with a K12 or educational institution context, consistent with the assigned sector and geographic origin. This listing type categorizes the entity based on its association with a cyber incident involving ransomware activity. The entity is explicitly linked to the threat actor or source identified as interlock in the index records. This description provides neutral catalog context for search and intelligence purposes without asserting unverified breach details. |
||||||
| Ransomware | Wagon Mound Public Schools id32826 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the US Education sector. The entity name indicates a North American public or institutional education context, and the listing type identifies it as having been associated with a ransomware incident in threat-intelligence records. Associated threat actor and source attribution is interlock, a threat actor profile included in the index to contextualize the entity's risk profile. No specific incident details such as data stolen, records affected, ransom amounts, or confirmed breach evidence are provided here, in accordance with strict factual boundaries. This entry neutrally documents the entity's classification and its ransomware-victim association with interlock for catalog and intelligence use. |
||||||
| Ransomware | Wagon Mound Public Schools id32827 View details | United States | Education | — | ||
|
wm.k12.nm.us is identified as a ransomware victim within the United States education sector. The entity name references a K12 and New Mexico context, indicating its operational footprint is associated with school or educational infrastructure in the US. As part of a threat-intelligence index catalog, this listing type documents cybersecurity incidents where ransomware activity may have affected organizational systems, emphasizing sector relevance and geographic exposure. The association with the threat actor interlock frames the entry within a cyber-threat-intelligence framework for monitoring and contextualizing security events. This description remains factual and neutral, noting only the classification and contextual metadata without asserting unconfirmed incident details. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32830 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the United States education sector. The domain prefix and contextual labeling indicate a school or educational institution context in New Mexico, serving educational services and digital infrastructure. Associated with threat actor interlock, this listing type documents the entity's involvement in a ransomware incident as reported by the intelligence index. The description maintains neutrality regarding specific attack vectors, data handling, or operational impact, focusing solely on the verified association and sector classification. This entry supports threat-intelligence cataloging for monitoring ransomware activity across critical education infrastructure in the US. |
||||||
| Ransomware | Wagon Mound Public Schools id32831 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the United States education sector. The entity name indicates a K12 educational context associated with New Mexico, reflecting its geographic and sector positioning in threat-intelligence indexing. As a ransomware victim listing, it is cataloged to document exposure patterns, associated threat activity, and contextual metadata relevant to cybersecurity monitoring and defense planning. The listing type explicitly identifies its relationship with the threat actor interlock, providing neutral intelligence linkage for analysts tracking ransomware incidents across educational institutions and US-based sectors. This entry supports comprehensive threat-intelligence research without asserting unverified breach details or operational specifics. |
||||||
| Ransomware | Wagon Mound Public Schools id32831 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the US Education sector cataloged as a ransomware victim in the threat-intelligence index. The domain prefix wm.k12.nm.us indicates a school-management or educational institution context in the state of New Mexico, reflecting operational infrastructure relevant to K-12 environments. As a ransomware victim listing, the entry documents the entity's association with threat actor interlock, providing cyber-threat-intelligence analysts with contextual linkage for risk assessment and sector-focused monitoring. This description maintains neutrality regarding specific incident details, avoiding assumptions about data exfiltration, ransom demands, or confirmed breach specifics. The listing serves to index the entity's role within the interlock threat actor's operational footprint across education infrastructure. |
||||||
| Ransomware | Wagon Mound Public Schools id32831 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entry categorized as a ransomware victim within the US Education sector. The entity name references a K12 educational context in New Mexico, indicating its operational footprint and sector classification. As part of a ransomware victim listing associated with the threat actor interlock, this entry provides structured intelligence for security professionals monitoring education-sector threats and related attacker activity. The description remains neutral and factual, focusing on the entity's classification, sector, geographic context, and association without speculating on incident details. This catalog entry supports threat-intelligence workflows by contextualizing the victim profile alongside identified threat actor relationships. |
||||||
| Ransomware | Wagon Mound Public Schools id32831 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the United States Education sector. The entity name indicates a K12 educational context in New Mexico, suggesting operational relevance to school or educational institution environments. As part of a threat-intelligence index, this listing type documents the entity's association with the threat actor interlock, providing structured intelligence for security analysts and defenders monitoring ransomware activity in critical education infrastructure. The description remains neutral regarding unverified incident details, focusing on the entity's classification, geographic and sectoral context, and its linkage to the identified threat actor. |
||||||
| Ransomware | Wagon Mound Public Schools id32831 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The domain name indicates a K12 (primary and secondary education) context in New Mexico, suggesting institutional infrastructure serving students and educators. It is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing provides context for monitoring educational institution security postures and correlating ransomware activity with identified actors. The description remains factual and neutral, focusing on sector classification, geographic association, and the verified linkage to interlock without disclosing unconfirmed incident details. |
||||||
| Ransomware | Wagon Mound Public Schools id32833 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the US Education sector. The entity name indicates a North American school or educational institution context, with offerings and operational scope aligned to K-12 education environments. As part of the threat-intelligence index, this listing type identifies affected organizations linked to the interlock threat actor. The description remains factual and neutral, avoiding invented details regarding data stolen, records impacted, ransom demands, or confirmed breach specifics. It serves as a reference point for security teams assessing ransomware exposure in educational infrastructure across the United States. |
||||||
| Ransomware | Wagon Mound Public Schools id32833 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the United States education sector. The domain name structure indicates a K12 context, suggesting involvement in school or educational institution environments where cybersecurity incidents are particularly impactful. This entity is cataloged within a threat-intelligence index as a ransomware victim associated with the interlock threat actor. The listing type identifies the relationship between this educational organization and interlock in threat intelligence reporting. The description reflects the entity's classification without asserting unverified incident details such as data stolen, ransom demands, or specific breach confirmations. Its inclusion emphasizes monitoring educational infrastructure against ransomware threats linked to identified actors. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity associated with the Education sector located in the United States, cataloged within a threat-intelligence index as a ransomware victim. The domain name references a K12 and New Mexico context, indicating operational relevance to educational institutions or systems in that geographic and sector classification. This listing type identifies the entity as having been impacted by ransomware activity, with interlock cited as the associated threat actor or source. The description remains factual and neutral, avoiding speculation regarding specific attack vectors, data handling, or confirmed breach details. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name references a K12 educational environment in New Mexico, indicating its operational context spans school or institutional education infrastructure. As part of the threat-intelligence index, this listing type identifies affected entities subject to ransomware activity and associated adversary analysis. The entity is linked to the threat actor or source interlock, providing context for its inclusion in cyber threat intelligence records. This description remains factual and neutral regarding the incident specifics, focusing on sector, location, entity classification, and associated threat actor. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The name indicates a K12 educational context, with NM denoting New Mexico as the geographic region, suggesting operational presence or affiliation in U.S. public or institutional education environments. As cataloged in this threat-intelligence index, the entity represents a ransomware incident listing tied to the threat actor interlock. This entry provides structured intelligence for analysts tracking ransomware activity across education infrastructure, supporting threat correlation and risk assessment without disclosing unverified incident details. The listing type identifies wm.k12.nm.us specifically as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the United States education sector. The designation wm.k12.nm.us aligns with K-12 educational infrastructure context, reflecting the organization's role in the education vertical and its geographic presence in the US. This listing type categorizes the entity based on its association with a specific threat actor, interlock, within the ransomware incident framework of the index. The description remains factual and neutral, focusing on sector classification, location context, and the index's attribution without elaborating on unverified technical or operational details of any potential incident. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity within the United States Education sector, cataloged as a ransomware victim in the threat-intelligence index. Its designation reflects its role as an affected institution operating in the K-12 educational domain of New Mexico, where cybersecurity incidents pose significant risks to student data, operational continuity, and institutional infrastructure. The listing type identifies its status within the index as a ransomware victim associated with the threat actor interlock, providing contextual intelligence for defenders and analysts monitoring education-sector threats. This entry contributes to a broader catalog of security events, emphasizing the importance of vigilance across critical public and educational systems against evolving cyber threats. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the United States Education sector identified as a ransomware victim in the threat-intelligence index. The domain structure and contextual metadata align with a K12 (primary and secondary education) institution in New Mexico, indicating its operational focus and geographic scope. As a ransomware victim listing, this entry documents the association with threat actor interlock, providing catalog intelligence for security professionals monitoring education infrastructure threats. The description maintains neutrality regarding specific incident details, as confirmed specifics are not publicly attributed to this entity in official records. This entry serves as a reference point within the ransomware victim index for entities affected by interlock's activity in U.S. educational environments. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name indicates its classification within the threat-intelligence index, reflecting its association with the ransomware incident and the threat actor interlock. Its context is positioned within cybersecurity monitoring for educational institutions, where ransomware activity can disrupt operations, services, and institutional continuity. This listing type documents the entity's relationship to the identified threat actor without disclosing unverified incident details such as data stolen, records affected, ransom demands, or confirmed breach specifics. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32834 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating in the Education sector and located in the United States. The designation reflects its classification in relation to cybersecurity incidents affecting educational institutions or entities within that sector. Associated with the threat actor interlock, this entry documents the relationship between the entity and the identified source without disclosing unverified incident details. The listing serves as a reference point for threat-intelligence analysts tracking ransomware activity across regional and sectoral contexts. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32835 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the United States Education sector. The domain name indicates a K12 (primary and secondary education) context based in New Mexico, suggesting institutional infrastructure relevant to student and academic services. This listing type categorizes the entity as a confirmed ransomware victim associated with the threat actor interlock. The description focuses on the entity's classification, sector context, geographic origin, and the specific threat actor linkage without elaborating on unverified incident details. It serves as a structured reference point for analysts tracking ransomware activity in educational institutions across the US. |
||||||
| Ransomware | Wagon Mound Public Schools id32840 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the United States Education sector identified as a ransomware victim in threat-intelligence indexing. The designation wm.k12.nm.us aligns with K12 and Nevada-associated educational infrastructure contexts, reflecting its operational environment and sector classification. This listing type documents the entity's association with the threat actor interlock within cybersecurity intelligence frameworks. The catalog entry provides neutral, factual context for researchers and defenders analyzing ransomware activity across educational institutions in the US. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32853 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The domain name indicates a school or educational institution context, specifically referencing New Mexico (NM) within the K12 framework, suggesting operations or assets serving primary and secondary education communities in that region. This listing type identifies the entity as a victim of ransomware activity, contributing contextual intelligence for threat-index analysis. The associated threat actor and source field specifies interlock, providing attribution linkage within the threat-intelligence catalog. This entry neutrally records that wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32853 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim entity within the United States Education sector. The entity name references a K12 (primary and secondary education) context and a New Mexico location, indicating its operational footprint is associated with educational institutions or systems in that region. As part of the threat-intelligence index, it is documented to support threat actor attribution and sector-focused risk assessment. This listing type identifies the entity as a ransomware victim associated with the threat actor interlock. The entry provides neutral catalog context for security teams monitoring education sector threats and cross-referencing incident relationships. |
||||||
| Ransomware | Wagon Mound Public Schools id32854 View details | United States | Education | — | ||
|
wm.k12.nm.us is a threat-intelligence index entry categorized as a ransomware victim within the Education sector, located in the United States. The entity name indicates a K12 context with New Mexico relevance, suggesting it pertains to a school, educational institution, or education-sector organization operating in that geographic and sectoral setting. It is associated with the threat actor interlock, a source identified within the ransomware victim listing for this entity. The entry provides neutral catalog context for cybersecurity professionals monitoring education infrastructure threats, attacker campaigns, and victim exposure patterns. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity cataloged within the threat-intelligence index as a ransomware victim. Its naming convention and sector designation indicate a US-based Education environment, aligning with institutional infrastructure commonly targeted by ransomware campaigns. The listing type identifies it specifically as a ransomware victim associated with the threat actor interlock. This entry contributes contextual intelligence for security teams monitoring Education sector exposure and adversary activity in the United States. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The identifier wm.k12.nm.us reflects its role in a threat-intelligence catalog focused on cybersecurity incidents affecting educational institutions and related organizations. This listing type categorizes the entity as a ransomware victim associated with the threat actor interlock, providing context for threat-intelligence monitoring and sector-specific risk analysis. The description remains factual and neutral, avoiding speculation regarding specific attack vectors, data exposure, or operational impact. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity operating within the Education sector and located in the United States. The entity name references a K12 (Kindergarten through 12th grade) context within New Mexico, indicating its association with educational infrastructure and institutional services. As cataloged in this threat-intelligence index, wm.k12.nm.us is classified specifically as a ransomware victim linked to the interlock threat actor. This listing type highlights its role within incident attribution frameworks, providing context for defenders monitoring Education sector threats in US regions. The entry contributes to broader cyber threat intelligence by documenting victim profiles tied to identified actors. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the US Education sector. The domain prefix wm.k12.nm.us indicates a focus on K-12 educational infrastructure, with NM denoting New Mexico as the geographic context, reflecting services or presence within U.S. school systems. As a ransomware victim listing associated with the threat actor interlock, this entry catalogs the entity's exposure profile for threat analysts monitoring educational sector cyber incidents. The description remains neutral regarding specific incident mechanics, data impacts, or recovery status, adhering strictly to verified index associations. This listing supports comprehensive threat-intelligence reporting for cybersecurity stakeholders tracking ransomware activity in U.S. educational environments. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name indicates a North American educational environment, aligning with the specified country and sector classification used in the threat-intelligence index. This listing type identifies the organization or system as having been affected by ransomware activity, with interlock designated as the associated threat actor or source for attribution purposes. The description maintains neutrality regarding unverified incident details, avoiding speculation about data handling, operational impact, or specific compromise elements. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is identified within the threat-intelligence index as a ransomware victim operating in the Education sector and associated with the US. The entity name indicates a school-system or educational institution context, with NM commonly denoting New Mexico as the geographic reference. Its inclusion reflects cybersecurity monitoring of an organization affected by ransomware activity linked to the interlock threat actor group. This listing type documents the relationship between the entity, its sector, geographic location, and the associated threat actor without asserting unverified incident details such as data stolen, ransom demands, or confirmed breach scope. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity cataloged within a threat-intelligence index as a ransomware victim operating within the United States education sector. The name and context indicate a school, educational institution, or education-related organization located in New Mexico, with offerings and exposure framed within cybersecurity threat monitoring. This listing type identifies the entity as having been associated with ransomware activity under the attributed threat actor interlock. The description remains factual and neutral, avoiding invented details regarding data stolen, records impacted, ransom demands, or confirmed breach specifics. It serves as a reference point for threat-intelligence professionals assessing ransomware exposure across education environments in the US. |
||||||
| Ransomware | Wagon Mound Public Schools id32856 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the United States Education sector cataloged as a ransomware victim in the threat-intelligence index. The designation wm.k12.nm.us aligns with K12 educational infrastructure, reflecting its operational context and regional focus in Nevada, United States. This listing type identifies the entity's involvement with malicious activity, specifically under the associated threat actor interlock. The entry provides structured intelligence for defenders analyzing ransomware campaigns targeting educational institutions. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id32872 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity within the United States Education sector, cataloged as a ransomware victim in the threat-intelligence index. Its designation reflects its role as an affected institution within the K-12 education domain, specifically associated with New Mexico, where cybersecurity threats targeting educational infrastructure are monitored and documented. The listing type identifies its status as a ransomware victim, with interlock cited as the associated threat actor or source, providing context for its inclusion in threat-intelligence records. This entry serves as a reference point for analysts tracking security incidents across educational sectors. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id33064 View details | United States | Education | — | ||
|
wm.k12.nm.us is cataloged as a ransomware victim within the Education sector, located in the United States. The entity name references a K12 and New Mexico context, indicating its relevance to educational institution environments and associated threat monitoring. This listing type identifies the entity as having been affected by ransomware activity, with interlock cited as the associated threat actor or source in the threat-intelligence index. The description remains neutral regarding specific incident details, as no confirmed breach specifics, data claims, or operational outcomes are attributed here. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id33065 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within the threat-intelligence index as a ransomware victim operating within the United States education sector. The designation wm.k12.nm.us reflects its context within a K-12 educational environment in Nevada, US, where cybersecurity threats frequently target institutional infrastructure. This listing type categorizes the entity based on its association with ransomware activity, specifically tied to the threat actor interlock. The description remains neutral regarding incident details, avoiding speculation on data exfiltration, operational impact, or recovery specifics. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us is identified as a ransomware victim entity within the United States Education sector. The entity name indicates a K12 (primary and secondary education) context in New Mexico, suggesting institutional infrastructure relevant to student and administrative systems. As part of the threat-intelligence index, this listing type categorizes the entity based on its association with the threat actor interlock. The description focuses on sector classification, geographic context, and the verified linkage to interlock without disclosing unconfirmed incident details. This entry supports threat analysts in mapping ransomware exposure patterns across education-focused organizations in the US. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us represents an entity within the United States Education sector, cataloged as a ransomware victim in the threat-intelligence index. The domain notation wm.k12.nm.us aligns with a U.S.-based educational institution or organization, reflecting its operational context and sector classification. This listing type identifies it as a victim of ransomware activity, providing context for threat-intelligence analysis and defensive awareness within the Education sector. The association with threat actor interlock is documented neutrally within the index, contributing to broader cybersecurity intelligence tracking. The description remains factual and avoids speculation regarding specific attack vectors, data impacts, or confirmed breach details. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States Education sector. The entity name indicates a K12 (primary and secondary education) context associated with New Mexico, reflecting its operational scope and sector classification. This listing type identifies it as a victim of ransomware activity within the threat-intelligence index. The association with threat actor interlock contextualizes the incident within known cyber threat activity affecting educational infrastructure. This entry provides neutral catalog information for threat-intelligence professionals analyzing ransomware incidents across US education environments. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us is an entity identified within a threat-intelligence index under the ransomware victim listing type. Its designation aligns with the K12 education sector and a United States geographic context, indicating relevance to educational institution environments where cyber incidents are a persistent concern. The entity is cataloged alongside threat actor interlock, providing analysts with linkage context for threat attribution, sector-specific risk assessment, and defensive intelligence workflows. This listing serves as a structured reference point for monitoring ransomware activity within U.S. education infrastructure. wm.k12.nm.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States education sector. The identifier reflects a school or educational institution context associated with the K12 environment in New Mexico, with operational relevance to threat-intelligence indexing. It is cataloged as a ransomware victim linked to the interlock threat actor, providing context for monitoring and analysis within cybersecurity intelligence frameworks. This listing type highlights the entity's role in threat reporting without disclosing unverified incident details. The entry supports structured analysis of education-sector exposure and associated actor activity. |
||||||
| Ransomware | Wagon Mound Public Schools id33066 View details | United States | Education | — | ||
|
wm.k12.nm.us is a ransomware victim entity within the United States education sector. The identifier reflects a school or educational institution context associated with the K12 environment in New Mexico, with operational relevance to threat-intelligence indexing. It is cataloged as a ransomware victim linked to the interlock threat actor, providing context for monitoring and analysis within cybersecurity intelligence frameworks. This listing type highlights the entity's role in threat reporting without disclosing unverified incident details. The entry supports structured analysis of education-sector exposure and associated actor activity. |
||||||
| Ransomware | Abbott Media Productions id26596 View details | United States | Services | — | ||
|
Abbott Media Productions, based in Tucson, Arizona, specializes in 3D animation, technical animation, and a full range of video production services. They provide animation services and interactive applications, incident reenactments, product animation, and motion graphics. Their primary clients include government agencies, defense contractors, and commercial organizations. |
||||||
| Ransomware | Abbott Media Productions id32533 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is based in the United States. The entity provides animation and related creative or service-oriented offerings, though specific operational details remain limited in public records. This listing type identifies it as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The entry reflects observed threat-intelligence linkages without confirming breach specifics, data exfiltration details, or financial impact. Neutral cataloging ensures transparency for security professionals monitoring actor-victim relationships across sectors and geographies. |
||||||
| Ransomware | Abbott Media Productions id32533 View details | United States | Services | — | ||
|
Abbott Media Productions, based in Tucson, Arizona, specializes in 3D animation, technical animation, and a full range of video production services. They provide animation services and interactive applications, incident reenactments, product animation, and motion graphics. Their primary clients include government agencies, defense contractors, and commercial organizations. |
||||||
| Ransomware | Abbott Media Productions id32639 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is based in the United States, providing animation and related creative services. As cataloged by the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects the association between the organization and the identified threat actor without disclosing specific incident details, breach confirmations, or operational specifics. This entry serves as a reference point for monitoring cyber threats within the Services sector and understanding actor-entity relationships in ransomware contexts. |
||||||
| Ransomware | Abbott Media Productions id32640 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is associated with the US. The entity is documented in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics, are provided here to maintain factual neutrality. This entry serves to record the verified association between the organization, the threat actor interlock, and the ransomware context within the catalog. The description adheres to authoritative, encyclopedic standards for catalog copy. |
||||||
| Ransomware | Abbott Media Productions id32640 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is located in the United States, providing animation and related creative services. The entity is formally listed within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was identified, without disclosing unverified details regarding the incident. The catalog entry serves to document the relationship between the entity, its sector profile, and the associated threat actor for threat-intelligence purposes. |
||||||
| Ransomware | Abbott Media Productions id32641 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and serves animation-related creative and professional services from the United States. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. This designation reflects the intelligence assessment linking the organization to this specific cyber threat actor within the index database. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its recorded association without speculating on incident details. abbottanimation.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Abbott Media Productions id32645 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector, based in the United States, and provides animation-related creative and professional services. This entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor identified as interlock. The inclusion reflects its documented relationship to this specific cyber threat actor within the index's dataset. This description maintains a neutral, factual perspective consistent with premium catalog copy standards for threat intelligence analysis. |
||||||
| Ransomware | Abbott Media Productions id32645 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is based in the United States, providing animation and related creative services. This entity is formally listed within the threat-intelligence index under the designation of ransomware victim, with the associated threat actor or source identified as interlock. The listing reflects the cybersecurity context in which the organization was identified, without disclosing specific incident details such as data stolen, ransom demands, or confirmed breach metrics. This catalog entry supports threat-intelligence analysis for monitoring ransomware activity across service-sector entities in the US. The record serves as a documented reference point for security professionals assessing risks associated with the interlock threat actor profile. |
||||||
| Ransomware | Abbott Media Productions id32653 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is based in the United States, providing animation and related creative services to clients and partners. The entity has been cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents involving this actor. The description avoids speculation regarding breach details, data impacts, or recovery specifics, maintaining a neutral and factual tone consistent with authoritative catalog standards. The listing serves to inform stakeholders about the entity's relationship to identified cyber threats within the indexed dataset. |
||||||
| Ransomware | Abbott Media Productions id32655 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is based in the United States, providing animation and related creative services to clients and partners. This entity is formally listed within the threat-intelligence index under the designation ransomware victim, with the associated threat actor or source identified as interlock. The listing reflects observed cybersecurity intelligence correlating the organization with this specific adversary activity and incident classification. The description remains neutral, focusing on verified catalog metadata without asserting unconfirmed breach details, data exfiltration specifics, or financial impact. This entry supports threat-aware decision-making for security teams monitoring service-sector organizations against evolving ransomware campaigns. |
||||||
| Ransomware | Abbott Media Productions id32655 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and is headquartered in the United States, providing animation and related creative services. This entity has been documented within our threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. The listing reflects observed security intelligence correlating the organization with this adversary group's activity profile. Our catalog maintains neutral, factual records to support threat analysts and defenders in tracking cyber incidents across sectors and geographies. This entry serves as a reference point for monitoring ransomware-related exposures in the Services industry. |
||||||
| Ransomware | Abbott Media Productions id32656 View details | United States | Services | — | ||
|
abbottanimation.com operates within the Services sector and serves animation-related creative and professional services from the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This entry contributes contextual intelligence regarding organizational exposure patterns and adversary targeting within service-oriented industries. The catalog description maintains factual neutrality without disclosing unverified incident details, preserving integrity for security analysts and defenders. |
||||||