Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 71 | Onion service | Up checked 19m ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 19m ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 20m ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 20m ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 20m ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 63 | Onion service | Up checked 20m ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 65 | Onion service | Up checked 20m ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 20m ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 61 | Onion service | Up checked 20m ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 20m ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 20m ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 60 | Onion service | Up checked 20m ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 55 | Onion service | Up checked 20m ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 57 | Onion service | Up checked 21m ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 21m ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 21m ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 21m ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 21m ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 21m ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 22m ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 22m ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 29m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 29m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 29m ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 19m ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Down checked 19m ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 62 | Onion service | Down checked 20m ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 21m ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 21m ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 21m ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 22m ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 22m ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 22m ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 22m ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 22m ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 23m ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 23m ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 23m ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 23m ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 23m ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 23m ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 24m ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 24m ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 29 | Onion service | Down checked 24m ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 31 | Onion service | Down checked 24m ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 24m ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 24m ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 25m ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 28 | Onion service | Down checked 25m ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 25m ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 25m ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 25 | Onion service | Down checked 25m ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 22 | Onion service | Down checked 25m ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 25m ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 26m ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 26m ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 26m ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 26m ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 26m ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 26m ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 27m ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 27m ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 27m ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 27m ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 27m ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 8 | Onion service | Down checked 27m ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 28m ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 28m ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 28m ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 28m ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 28m ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 28m ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 7901–8000 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Hunneman id32832 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States real estate sector, providing commercial real estate services and related offerings. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the threat actor interlock. This designation reflects the cybersecurity event classification associated with the entity and its connection to interlock's activity. The description remains neutral and factual, focusing on the entity's sector, geographic location, listing type, and associated threat actor without elaborating on unverified incident details such as data stolen, ransom demands, or specific breach metrics. |
||||||
| Ransomware | Hunneman id32832 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is based in the United States. The entity represents a business organization whose infrastructure was impacted by a ransomware incident, as documented in this threat-intelligence index under the listing type ransomware victim. The association with threat actor interlock indicates a confirmed link between this organization and the identified cyber threat activity. This entry serves as a reference point for analysts tracking ransomware campaigns, victim profiles, and threat actor attribution across sectors and geographies. No specific technical details regarding data handling, breach confirmation, or recovery measures are provided here, maintaining factual neutrality per catalog standards. |
||||||
| Ransomware | Hunneman id32833 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an entity within the US Services sector cataloged as a ransomware victim in the threat-intelligence index. The listing is associated with threat actor interlock, providing context for threat actors operating within this sector and geographic region. The entity's classification reflects its documented status as a victim of ransomware activity, contributing valuable intelligence for defenders assessing risks in service-oriented organizations. This entry serves to index and contextualize the incident without disclosing specific technical or operational details beyond the verified association. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32833 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged within this threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. This listing type indicates that the organization was affected by ransomware activity associated with interlock, providing critical context for defenders assessing potential exposure and threat actor patterns. The description focuses on the entity's identity, operational context, and the verified association with the identified threat actor without elaborating on unconfirmed incident details. This entry supports threat intelligence workflows by clearly documenting the relationship between the victim organization, its sector and geography, and the responsible threat actor. |
||||||
| Ransomware | Hunneman id32833 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is headquartered in the United States. The entity represents a business organization identified within threat-intelligence indexing frameworks as a ransomware victim linked to the interlock threat actor. Threat-intelligence catalogs document such associations to support defensive awareness, risk assessment, and incident response planning across affected service-oriented environments. This listing type categorizes the entity based on its observed relationship to a specific cyber threat actor, emphasizing the importance of vigilance for organizations in similar sectors and geographic regions. The record neutrally states it was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32833 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The entity represents a business organization whose infrastructure was impacted by malicious activity documented in threat intelligence records. It is formally cataloged under the classification ransomware victim, with interlock identified as the associated threat actor or source. This listing reflects the observed relationship between the entity and the threat actor without disclosing unverified details regarding attack vectors, data handling, or recovery efforts. The entry serves to inform defenders and analysts about this specific incident within the broader landscape of cyber threats targeting service-sector organizations. |
||||||
| Ransomware | Hunneman id32833 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a United States-based entity operating within the Real Estate sector, publicly cataloged as a ransomware victim within the threat-intelligence index. The listing reflects observed or attributed threat activity linking the entity to the interlock threat actor group. This designation contributes structured intelligence regarding ransomware exposure patterns across specific industries and geographic markets. The description remains neutral and avoids confirming unverified incident details, as no official first-party disclosure date or specific breach evidence is confidently attributable to the company. Such entries support researchers and defenders in mapping victim profiles, actor relationships, and sector-specific risk indicators. |
||||||
| Ransomware | Hunneman id32834 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector based in the United States, providing commercial and professional services. The entity is cataloged as a ransomware victim within this threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects an assessed cybersecurity event where the organization was impacted by ransomware activity linked to interlock. The description remains factual and neutral, focusing on the entity's classification without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This entry serves to inform security professionals and defenders about known ransomware victim profiles and associated threat actor methodologies within the Services sector. |
||||||
| Ransomware | Hunneman id32834 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with an associated threat actor identified as interlock. This listing reflects the cybersecurity intelligence assessment linking the organization to this specific threat actor profile. The description focuses on the entity's classification, geographic context, sector, and the neutral attribution of the ransomware victim status tied to interlock, without disclosing unverified incident details. All information presented adheres strictly to publicly attributable catalog metadata and threat-intelligence indexing standards. |
||||||
| Ransomware | Hunneman id32835 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The entity represents a business organization whose infrastructure was impacted by malicious activity. It is cataloged within the threat-intelligence index specifically as a ransomware victim linked to the interlock threat actor. This listing reflects the association between the entity and the identified threat actor without disclosing unverified incident specifics. The classification supports threat monitoring and context for security professionals analyzing ransomware campaigns in the Services sector. |
||||||
| Ransomware | Hunneman id32835 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged in the threat-intelligence index as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the cybersecurity assessment linking the organization to this specific threat actor profile within the ransomware incident context. The description remains factual and neutral, focusing solely on the entity's classification, sector, geographic location, and verified threat association without elaborating on unconfirmed incident details. It serves as a reference point for threat analysts tracking ransomware activity in the Services sector across the US. |
||||||
| Ransomware | Hunneman id32836 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The entity represents a business organization cataloged in this threat-intelligence index due to its association with the ransomware incident attributed to threat actor interlock. The listing type identifies it specifically as a ransomware victim, providing context for security analysts tracking active cyber threats and their impact across sectors and geographies. This entry reflects the observed relationship between the entity and the identified threat actor without disclosing unverified technical details or incident specifics. The classification supports comprehensive threat monitoring and situational awareness for defense teams monitoring ransomware campaigns. |
||||||
| Ransomware | Hunneman id32837 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector based in the United States, offering commercial and professional services under its domain identity. This entity is cataloged within a threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing type identifies the organization's exposure to ransomware activity, contributing contextual data for analysts tracking cyber incidents across sectors and geographies. The description relies solely on verified index classification without asserting specific breach details, data impacts, or operational outcomes. This neutral record supports comprehensive threat monitoring and informed risk assessment for security professionals monitoring interlock-related campaigns. |
||||||
| Ransomware | Hunneman id32840 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident classification where the organization was affected by ransomware activity tied to interlock. The description focuses on the entity's sector, geographic context, and its verified association within the intelligence dataset without speculating on unconfirmed technical details, data exposure, or operational impact. Neutral reporting ensures accuracy and adherence to threat-intelligence catalog standards. |
||||||
| Ransomware | Hunneman id32841 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is based in the United States. The entity represents a business organization whose infrastructure was impacted by an incident associated with the threat actor interlock. This listing identifies it within a threat-intelligence index as a ransomware victim, contributing contextual data for defenders assessing organizational exposure and attacker targeting patterns. The description focuses solely on the verified association and sector profile without disclosing unconfirmed technical or operational details regarding the event. Such catalog entries support comprehensive cybersecurity monitoring and threat-response intelligence. |
||||||
| Ransomware | Hunneman id32841 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents a company operating within the Services sector located in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index. Its association with the threat actor interlock has been documented by the indexing platform. This listing reflects the entity's classification based on observed threat activity and attributed actor data. No specific incident details, such as data stolen or ransom demands, are provided here to maintain factual neutrality and avoid speculation regarding the event. |
||||||
| Ransomware | Hunneman id32841 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing services aligned with property management and related commercial offerings. The entity is formally cataloged within this threat-intelligence index under the designation ransomware victim. Its association with threat actor interlock indicates a documented cybersecurity incident classification relevant to enterprise risk monitoring and sector-specific threat awareness. This listing serves to inform stakeholders of known threat exposure patterns affecting Real Estate organizations in the US. The record remains neutral, describing only the verified categorization without elaborating on unconfirmed technical or operational details of the incident. |
||||||
| Ransomware | Hunneman id32841 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing services aligned with property and estate management domains. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, explicitly associated with the threat actor interlock. This listing reflects observed threat-intelligence linkages between the organization and interlock's activity without confirming specific incident details such as data access, encryption events, or breach scope. The record serves to inform security professionals and stakeholders about potential exposure within this sector and geographic context. It underscores the importance of vigilance for Real Estate entities operating in the US against identified threat actor campaigns. |
||||||
| Ransomware | Hunneman id32841 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing commercial real estate services and related offerings. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects the cybersecurity context of the organization's exposure to ransomware activity, without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The entry serves to document the victim profile, sector classification, geographic origin, and affiliated threat actor for analytical and defensive reference. Neutral documentation supports threat-intelligence workflows focused on identifying ransomware-targeted entities and their associated actors. |
||||||
| Ransomware | Hunneman id32843 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The entity represents a business organization cataloged as a ransomware victim within the threat-intelligence index. Its listing is specifically associated with the threat actor interlock, reflecting an observed security event linked to this actor's activity. The catalog entry provides neutral documentation of the entity's status and its connection to the identified threat actor, without disclosing unverified technical or operational details. This description serves to contextualize the entity within the ransomware victim classification for analytical and informational purposes. |
||||||
| Ransomware | Hunneman id32843 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing commercial real estate services and related offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects its inclusion in cyber threat intelligence records for monitoring and risk assessment purposes. The description remains neutral and avoids speculative claims regarding specific attack details, data exposure, or operational impact. It neutrally states that htpps:www.hunnemanre.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The domain identifies an organization whose security posture was impacted by a ransomware incident linked to the interlock threat actor. This listing type categorizes the entity as a ransomware victim within the threat-intelligence index, reflecting observed adversary activity targeting its infrastructure. The description avoids speculative details regarding data exfiltration, ransom demands, or specific compromise mechanisms. It neutrally states that htpps:www.hunnemanre.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is an entity identified within the threat-intelligence catalog as a ransomware victim. Operating within the Services sector and located in the United States, the organization's public profile and operational offerings are contextualized by its designation in this intelligence index. The listing explicitly associates this entity with the threat actor interlock, reflecting the cybersecurity community's attribution framework for tracking malicious activity. This description maintains strict neutrality regarding unverified incident details, avoiding speculation on data exfiltration, ransom demands, or confirmed breach metrics. The catalog entry serves as a structured reference point for threat researchers monitoring ransomware incidents across service-oriented organizations in the US. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Real Estate sector and is based in the United States. The entity provides standard real estate-related services and business offerings consistent with its sector classification. Within the threat-intelligence index, this listing identifies htpps:www.hunnemanre.com specifically as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in cybersecurity monitoring records for entities impacted by malicious activity tied to interlock. The description adheres strictly to verified index metadata without extrapolating unconfirmed incident details. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents a company operating within the Services sector located in the United States. The entity is cataloged within this threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. This listing reflects documented intelligence concerning the organization's involvement with this cyber threat profile. The entry provides neutral context for security professionals monitoring ransomware activity across targeted sectors and geographic regions. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is based in the United States. The entity represents a business organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence catalog. The listing explicitly identifies it as a ransomware victim linked to the threat actor interlock. This entry provides a neutral, factual reference point for cybersecurity professionals monitoring adversary activity and victim impact across service-oriented organizations. No specific technical details regarding data exfiltration, ransom demands, or breach confirmation are included, consistent with strict factual reporting protocols. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing services aligned with commercial property and client-facing offerings. This entity is documented within the threat-intelligence index under the classification of ransomware victim, associated with the threat actor interlock. The listing reflects observed security-related activity tied to this organization and its operational environment. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included here, adhering to factual neutrality and analytical rigor. This catalog entry serves to index the entity's security posture and threat association for research purposes. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The entity serves as a catalog entry representing a ransomware victim linked to the threat actor interlock. This listing type identifies the organization as having experienced ransomware activity under interlock's operational scope. The description reflects the threat-intelligence index classification without asserting unverified incident details such as data stolen, ransom demands, or specific breach timelines. The entity's inclusion underscores interlock's targeting patterns within the Services sector across the US. |
||||||
| Ransomware | Hunneman id32844 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is cataloged as a ransomware victim within a threat-intelligence index. The entity operates in the Services sector and is associated with the US country context. Its listing type identifies it as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in cybersecurity intelligence records documenting adversary-related incidents. The entity description remains neutral, focusing on its indexed classification without disclosing unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32845 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The entity represents a business organization whose security posture and incident history are cataloged within threat-intelligence indexing frameworks. This listing identifies it specifically as a ransomware victim associated with the threat actor interlock, contributing verified intelligence on attack attribution and victim exposure within critical service industries. The description maintains factual neutrality regarding operational details while documenting the cybersecurity significance of the entity within the index. No specific incident details, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Hunneman id32850 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an entity operating within the Services sector based in the United States. Its domain identifies it as a potential ransomware victim within the threat-intelligence index. The listing explicitly associates this entity with the threat actor interlock, reflecting its inclusion in records documenting ransomware incidents and related cyber threats. This catalog description provides neutral, factual context regarding the entity's classification without speculating on unverified incident details, operational specifics, or confirmed breach attributes. The entry serves to inform stakeholders about the entity's status and associated threat actor within the indexed intelligence framework. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32863 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States Real Estate sector, providing services aligned with property management and related commercial offerings. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim associated with the threat actor interlock. This listing reflects observed threat intelligence data concerning the organization's exposure profile and the identified adversary group responsible for the incident. The description remains factual and neutral, focusing on the entity's sector, geographic location, and its classification within the ransomware victim index. No additional incident details, such as data stolen, ransom demands, or specific breach confirmations, are included per strict reporting protocols. |
||||||
| Ransomware | Hunneman id32863 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The entity represents a business organization whose security posture was assessed as part of threat-intelligence monitoring. It is formally cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in the ransomware victim index connected to interlock's activity profile. The description maintains neutrality regarding incident details, focusing solely on the verified classification and associated threat actor. |
||||||
| Ransomware | Hunneman id32864 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged within a threat-intelligence index specifically under the designation of ransomware victim, with an associated threat actor identified as interlock. This listing type indicates the entity's inclusion in intelligence records tied to cyber incidents involving ransomware activity. The description reflects the index's classification without asserting unverified details regarding the nature, scope, or outcome of any potential incident affecting the organization. It neutrally records that htpps:www.hunnemanre.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an organization operating within the Services sector located in the United States. The entity is documented within this threat-intelligence index under the classification of ransomware victim, specifically associated with the threat actor interlock. This listing serves to inform security professionals and stakeholders about potential cyber threats targeting similar service-oriented businesses in the region. The entry provides context for monitoring and defensive strategies against ransomware campaigns linked to this actor group. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector based in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the interlock threat actor. No specific incident details, such as data stolen, ransom demands, or confirmed breach evidence, are provided in this listing. This entry serves as a neutral reference point for cybersecurity professionals monitoring ransomware activity across the Services sector in the US. The association with interlock indicates the entity was identified within threat actor attribution frameworks. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an organization operating within the Services sector located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type identifies the organization's role in a cyber incident involving this specific threat actor, providing context for monitoring and defense purposes. The description focuses on the entity's operational profile and its documented association within the ransomware threat landscape, without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This entry serves as a reference point for cybersecurity analysts tracking interlock activity and affected service-sector organizations. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector based in the United States. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, specifically linked to the threat actor interlock. This listing reflects an assessed cybersecurity event where the organization was impacted by ransomware activity attributable to interlock. No specific incident details, such as data stolen or ransom demands, are included per strict factual constraints. The entry serves to document the association for threat-intelligence monitoring and risk assessment purposes. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an organization operating within the Services sector located in the United States. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. Publicly available information does not confirm specific incident details such as data exfiltration scope, ransom demands, or precise breach timelines. This listing reflects the entity's association with the identified threat actor based on aggregated threat-intelligence records. The company's own first official notification or disclosure of this incident remains unverified through authoritative sources. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The entity represents a business organization that has been identified within threat-intelligence indexing as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion in cybersecurity threat databases where ransomware incidents and associated actors are cataloged for defensive analysis and risk assessment. The listing underscores the importance of monitoring such entities for threat actors targeting service-oriented organizations. It neutrally states that htpps:www.hunnemanre.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the United States real estate sector and represents a business entity documented in the threat-intelligence index under the ransomware victim classification. The domain name and sector context indicate commercial activity focused on real estate services or operations. This listing reflects the entity's association with interlock, a threat actor identified within cybersecurity threat intelligence frameworks. The catalog entry provides neutral context for monitoring ransomware exposure within specific industry sectors and geographic regions without disclosing unverified incident details. This record supports cybersecurity professionals in assessing organizational risk profiles related to known threat actor activity. |
||||||
| Ransomware | Hunneman id32866 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an entity within the Services sector based in the United States. The domain and associated listing classify it as a ransomware victim within a threat-intelligence index. This entry is explicitly associated with the threat actor interlock, reflecting the cybersecurity context in which the entity is cataloged. The description maintains neutrality regarding specific incident details, focusing on the entity's classification, geographic context, sector, and its documented relationship to the identified threat actor. This catalog entry serves to inform threat-intelligence stakeholders about the entity's status and associated risk profile. |
||||||
| Ransomware | Hunneman id32882 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is based in the United States. The entity is cataloged as a ransomware victim within this threat-intelligence index, linked to the threat actor interlock. This listing type indicates the organization was affected by ransomware activity attributed to interlock, providing context for threat researchers and defenders analyzing attack patterns in the Services sector. The description remains neutral and factual, focusing solely on the entity's classification and associated threat actor without disclosing unverified incident details such as data stolen, ransom demands, or confirmed breach specifics. This entry supports comprehensive monitoring of ransomware campaigns targeting US-based service organizations. |
||||||
| Ransomware | Hunneman id33074 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the interlock threat actor. Catalog entries of this nature document observed adversary activity and victim profiles without confirming specific incident details such as data accessed or ransom demands. This listing serves to inform security professionals and stakeholders about potential exposure within the Services industry under the interlock campaign. The description remains neutral and relies solely on verified index classification data. |
||||||
| Ransomware | Hunneman id33075 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents a ransomware victim entity operating within the Services sector and based in the United States. The domain identifies the organization involved in an incident cataloged within the threat-intelligence index. This listing type denotes the entity's status as a ransomware victim associated with the threat actor interlock. The description reflects the indexed classification without elaborating on unverified technical details or confirmed incident specifics. The entity's presence in this ransomware victim category aligns with threat actor interlock activity documented in the intelligence source. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident classification linked to this specific adversary group. The description focuses on the entity's profile, sector, geographic context, and confirmed threat relationship without speculating on unverified technical or operational details. This entry supports threat-intelligence analysis for security professionals monitoring ransomware activity across service-sector organizations. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an entity within the Services sector located in the United States. The domain identifies a business whose infrastructure was involved in an incident categorized as a ransomware victim within threat-intelligence indexing frameworks. This listing type indicates observed malicious activity targeting the organization, associated specifically with the threat actor interlock. The description adheres strictly to verified categorical metadata without extrapolating unconfirmed technical details, data impacts, or operational outcomes. It neutrally records the entity's classification within the threat-intelligence index as a ransomware victim linked to interlock. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com is a company operating within the Services sector located in the United States. The entity is cataloged within a threat-intelligence index as a ransomware victim, specifically associated with the threat actor interlock. This listing type indicates its inclusion in records documenting cyber incidents where ransomware activity was observed or attributed. The description focuses on the entity's classification, geographic and sectoral context, and its verified association with the identified threat actor without disclosing unconfirmed incident details. It serves as a reference point for threat analysts tracking ransomware campaigns and their affected targets across service-oriented organizations. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com represents an entity within the Services sector based in the United States. The domain identifies a specific online presence associated with the organization operating in this service industry context. Within the threat-intelligence index catalog, this entity is formally categorized as a ransomware victim. The association with threat actor interlock provides critical context regarding the nature of the cybersecurity event tied to this listing. This entry serves to document the relationship between the affected entity and the identified threat actor for analytical purposes. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps://www.hunnemanre.com operates within the United States Real Estate sector, providing domain-based services aligned with property management and related commercial offerings. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index. Its association with threat actor interlock indicates a documented cybersecurity incident linked to this actor. This listing serves as a neutral reference point for security professionals monitoring ransomware activity across real estate organizations. The description avoids speculation regarding data stolen, ransom demands, or technical attack vectors, focusing solely on verified index classification. |
||||||
| Ransomware | Hunneman id33076 View details | United States | Services | — | ||
|
htpps://www.hunnemanre.com operates within the United States Real Estate sector, providing domain-based services aligned with property management and related commercial offerings. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index. Its association with threat actor interlock indicates a documented cybersecurity incident linked to this actor. This listing serves as a neutral reference point for security professionals monitoring ransomware activity across real estate organizations. The description avoids speculation regarding data stolen, ransom demands, or technical attack vectors, focusing solely on verified index classification. |
||||||
| Ransomware | Hunneman id32873 View details | United States | Services | — | ||
|
htpps:www.hunnemanre.com operates within the Services sector and is situated in the United States. The domain represents an organization cataloged in the threat-intelligence index under the ransomware victim classification. This listing is associated with the threat actor interlock, indicating a connection to ransomware activity targeting this entity. No specific incident details, such as data stolen or ransom demands, are confirmed or disclosed by the entity itself. The entry serves as a neutral record of the association between this Services sector company and the identified threat actor. |
||||||
| Ransomware | Hunneman id32873 View details | United States | Services | — | ||
|
Hunneman, founded in Boston in 1929, is a real estate firm that offers a full range of real estate brokerage, leasing investment sales, and management services. |
||||||
| Ransomware | The Salvation Army id25082 View details | United States | NGOs / Associations | — | ||
|
The Salvation Army, established in 1865, has been offering an array of social services that range from providing food for the hungry, relief for disaster victims, assistance for the disabled, outreach to the elderly and ill, clothing and shelter to the homeless and opportunities for underprivileged children. |
||||||
| Ransomware | The Salvation Army id32543 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational resources and services aligned with non-profit and association frameworks. As a ransomware victim entity in the threat-intelligence index, it is associated with the threat actor interlock, reflecting the cybersecurity risk profile of this organization within the dataset. The listing type identifies the entity's status as a ransomware victim connected to interlock's activity, contributing to broader awareness of threats targeting non-profit sectors. This description maintains a neutral, encyclopedic tone while contextualizing the entity's role in threat intelligence reporting without disclosing unverified incident details. |
||||||
| Ransomware | The Salvation Army id32543 View details | United States | NGOs / Associations | — | ||
|
The Salvation Army, established in 1865, has been offering an array of social services that range from providing food for the hungry, relief for disaster victims, assistance for the disabled, outreach to the elderly and ill, clothing and shelter to the homeless and opportunities for underprivileged children. |
||||||
| Ransomware | The Salvation Army id32649 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence in the United States. The entity functions as an organization focused on association-level initiatives and serves as a subject within threat-intelligence indexing. It has been cataloged specifically as a ransomware victim linked to the threat actor interlock. This listing type indicates documented threat-actor association within cybersecurity intelligence records. The description remains neutral regarding unconfirmed incident details, avoiding speculation about data handling, financial impact, or specific breach characteristics. The entry provides authoritative context for researchers and defenders analyzing ransomware activity within non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32650 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector coordination activities. As a ransomware victim entity, it is cataloged in this threat-intelligence index due to its association with the threat actor interlock. The listing reflects the cybersecurity event context tied to this organization without disclosing unverified breach details such as stolen data, affected records, ransom demands, or confirmed incident specifics. This entry serves to document the relationship between the entity, its sector and geographic location, the ransomware victim classification, and the interlock threat actor for analytical and defensive reference purposes. |
||||||
| Ransomware | The Salvation Army id32650 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the United States NGO and associations sector, providing organizational services and public-interest offerings aligned with its mission. As a ransomware victim entity in this threat-intelligence index, it is documented alongside the associated threat actor interlock for analytical and defensive reference. The listing reflects the entity's classification within cybersecurity threat reporting without disclosing unverified incident details, attack specifics, or confirmed breach outcomes. This entry supports researchers and defenders in understanding ransomware exposure patterns across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32651 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, based in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The listing identifies the entity specifically as a ransomware victim associated with the threat actor interlock. This entry provides structured context regarding the organization's sector, geographic location, and its documented relationship to the identified cyber threat actor for cybersecurity monitoring and intelligence purposes. |
||||||
| Ransomware | The Salvation Army id32655 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational resources and public-facing services aligned with its sector focus. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents involving this specific adversary group. The listing emphasizes the entity's role within the broader landscape of organizations impacted by coordinated cyber threats targeting non-profit and association sectors. Neutral treatment ensures factual accuracy without extrapolating beyond verified intelligence sources. |
||||||
| Ransomware | The Salvation Army id32655 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operations or presence associated with the United States. The domain name and organizational context indicate a non-profit or association-focused entity, though specific services, beneficiaries, or internal activities are not publicly confirmed. It is cataloged in the threat-intelligence index as a ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the entity's relationship to the interlock threat actor within the index's ransomware victim classification. No confirmed details regarding stolen data, ransom demands, or incident specifics are provided in the available knowledge base. |
||||||
| Ransomware | The Salvation Army id32663 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational support and advocacy services. As a ransomware victim indexed in the threat-intelligence catalog, this entity is documented in connection with threat actor interlock. The listing type identifies salvationarmy.org specifically as a ransomware victim, reflecting its inclusion within cybersecurity incident records. This entry serves to catalog the relationship between the organization, its sector and geographic location, and the associated threat actor interlock without disclosing unverified incident specifics. |
||||||
| Ransomware | The Salvation Army id32665 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with a location associated with the United States. The entity represents organizations focused on humanitarian, advocacy, or association-based initiatives, where cybersecurity resilience is critical. As cataloged in the threat-intelligence index, salvationarmy.org is designated as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion within the intelligence dataset for monitoring and understanding cyber incidents affecting non-profit and association sectors in the US. The description maintains a neutral, encyclopedic tone regarding its classification and associated threat context. |
||||||
| Ransomware | The Salvation Army id32665 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational support and programmatic services. The entity is cataloged as a ransomware victim within this threat-intelligence index, with its association explicitly linked to threat actor interlock. This listing reflects the entity's documented status in relation to the identified cyber threat activity without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. The entry serves to contextualize salvationarmy.org as part of the broader ransomware victim landscape associated with interlock, contributing to analytical visibility for sector-focused threat monitoring. |
||||||
| Ransomware | The Salvation Army id32666 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the entity's inclusion in records documenting cybersecurity incidents affecting non-profit and association organizations. The description remains neutral regarding specific incident details, as confirmed specifics such as data stolen, records impacted, ransom demands, or exact breach timelines are not provided here. The listing serves to inform threat analysts and defenders of entities linked to this actor within relevant sectors. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services and resources aligned with humanitarian and organizational support initiatives. The entity was formally cataloged as a ransomware victim within the threat-intelligence index, with its association explicitly tied to threat actor interlock. This listing reflects the organization's documented exposure within the cyber threat landscape, contributing contextual data for defenders and analysts monitoring NGO sector security postures. The description remains neutral and factual, focusing solely on the entity's classification and verified linkage without extrapolating unconfirmed incident details. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the NGO and associations sector, based in the United States. Its domain name suggests a mission-oriented or advocacy-focused entity, though specific operational details, services, or public offerings are not independently verifiable from public sources. In the context of this threat-intelligence catalog, salvationarmy.org is classified as a ransomware victim entity associated with threat actor interlock. The listing reflects its documented relationship within cybersecurity intelligence records rather than providing confirmed technical incident details. This entry supports threat analysts, defenders, and index maintainers with structured context regarding affected organizations, sectors, geographic scope, and linked threat actors. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with its operational context situated in the United States. The domain represents an organization whose security posture was assessed within the threat-intelligence catalog as a ransomware victim. This listing type indicates its inclusion in records correlating affected entities with the interlock threat actor profile. The description focuses on the entity's sector classification, geographic attribution, and its designated association with interlock within the ransomware victim index. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included to maintain factual neutrality and avoid speculation beyond verified catalog metadata. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services or functions aligned with humanitarian and organizational support efforts. As a ransomware victim entity, it is documented within this threat-intelligence index with an associated threat actor identified as interlock. The listing type categorizes salvationarmy.org specifically as a ransomware victim connected to this actor profile. This entry contributes contextual intelligence regarding sector exposure and threat actor targeting patterns relevant to organizations in this domain. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity functions as an organization focused on association and nonprofit coordination, serving as a recognized entry within a threat-intelligence index. It is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing type reflects the entity's documented relationship to a cyber threat campaign without disclosing unverified technical, financial, or operational details. The entry provides neutral context for security professionals assessing affected organizations, sectors, and threat actor connections. |
||||||
| Ransomware | The Salvation Army id32669 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity provides organizational services and functions typical of non-profit or association-based initiatives. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's classification within cybersecurity threat reporting, highlighting its connection to this specific threat actor without disclosing unverified incident details. This entry supports threat analysts and defenders in understanding organizational exposure within critical sectors. |
||||||
| Ransomware | The Salvation Army id32670 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity serves association-oriented functions and is cataloged within this threat-intelligence index as a ransomware victim. Its inclusion reflects threat-intelligence analysis connecting the organization to the interlock threat actor profile. This listing provides context for security professionals assessing ransomware exposure within civil society and non-profit sectors. The record remains neutral regarding specific incident details, as confirmed specifics are not provided in the available intelligence. |
||||||
| Ransomware | The Salvation Army id32670 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, providing public-sector and association-focused services. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its status within the ransomware incident catalog, contextualized by its sector and geographic origin without disclosing unverified incident details. This entry supports threat-intelligence analysis for monitoring organizational exposure and correlating ransomware activity across sectors. |
||||||
| Ransomware | The Salvation Army id32673 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the NGO and associations sector, with operational presence in the United States. The entity represents a civil-society association whose infrastructure was identified within threat-intelligence records as a ransomware victim. The listing associates this victim with threat actor interlock, a known adversary identified in cyber threat analysis. This catalog entry documents the relationship between salvationarmy.org and interlock without disclosing unverified incident details such as stolen data, ransom demands, or specific breach metrics. The description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence indexing standards. |
||||||
| Ransomware | The Salvation Army id32673 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity represents organizations focused on humanitarian and association-based initiatives, where cybersecurity resilience is critical. As cataloged in the threat-intelligence index, salvationarmy.org is officially classified as a ransomware victim connected to the interlock threat actor group. This listing reflects documented exposure within the cybersecurity landscape, highlighting vulnerabilities in non-profit infrastructure. The entry serves to inform defenders and stakeholders about risks targeting similar organizational sectors globally. |
||||||
| Ransomware | The Salvation Army id32674 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose security posture was assessed within a threat-intelligence catalog context. It is formally categorized as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and associated adversary activity. The description remains neutral, focusing on the entity's classification and verified associations without speculating on unconfirmed technical details or incident specifics. |
||||||
| Ransomware | The Salvation Army id32674 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted as part of an incident cataloged as a ransomware victim within this threat-intelligence index. The listing explicitly associates this entity with threat actor interlock, indicating the ransomware campaign or attack vector linked to this actor in the intelligence record. This description focuses on the entity's classification, operational context, and verified threat attribution without speculating on unconfirmed technical details, data exfiltration specifics, or recovery outcomes. The entry serves to inform analysts monitoring ransomware incidents affecting non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32675 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure was identified within the threat-intelligence index under the ransomware victim classification. This listing reflects the entity's association with interlock, a threat actor identified in cyber threat intelligence records. The description maintains a neutral, encyclopedic tone regarding the entity's classification and sector context without attributing confirmed breach details. The entry documents the relationship between salvationarmy.org, its sector profile, and the interlock attribution within the index framework. |
||||||
| Ransomware | The Salvation Army id32675 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, providing mission-driven services aligned with humanitarian and organizational association work. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects observed cybersecurity exposure within its sector and geographic context without disclosing unverified incident details, stolen data specifics, or confirmed breach metrics. This entry supports threat actor correlation, sector risk assessment, and intelligence aggregation for organizations monitoring ransomware activity across NGO and association environments. |
||||||
| Ransomware | The Salvation Army id32680 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity functions as a non-profit organization focused on humanitarian or association-based initiatives, though specific operational details remain limited within available intelligence sources. As cataloged in this threat-intelligence index under the ransomware victim listing type, salvationarmy.org is associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity records documenting potential ransomware exposure within its sector and geographic context. The entry provides neutral, factual context for researchers and defenders analyzing threat patterns affecting non-profit organizations. |
||||||
| Ransomware | The Salvation Army id32680 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the NGO and associations sector, located in the United States. Its domain and operational profile are cataloged within a threat-intelligence index under the designation ransomware victim. The entity is associated with threat actor interlock, reflecting the threat context in which it appears in the index. This listing provides neutral descriptive context regarding sector, geographic location, and the relationship to the identified threat actor without asserting unverified breach details. The record emphasizes authoritative classification rather than speculative claims about data handling, attacker methodology, or recovery outcomes. |
||||||
| Ransomware | The Salvation Army id32682 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org is an organization operating within the NGO and associations sector, located in the United States. The entity functions as a service provider or representative organization within this sector, though specific operational details remain limited in public threat-intelligence records. It has been cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the association between the organization and the identified threat actor within cybersecurity monitoring frameworks. The entry provides contextual information for analysts tracking ransomware incidents across non-profit sectors in the US. |
||||||
| Ransomware | The Salvation Army id32682 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity represents an organization whose infrastructure was impacted by cyber activity associated with the threat actor interlock. As a ransomware victim, this listing documents the incident within a threat-intelligence index for monitoring and defensive reference. The description avoids speculative details regarding data exfiltration, financial impact, or specific technical exploitation vectors. This entry serves to formally associate the organization with interlock under the ransomware victim classification. |
||||||
| Ransomware | The Salvation Army id32683 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose infrastructure was affected by a ransomware incident linked to the threat actor interlock. As a ransomware victim entry in this threat-intelligence index, salvationarmy.org is cataloged to document the entity's exposure within the cybersecurity landscape. This listing provides neutral, factual context regarding the organization's status and its association with interlock, supporting threat-researchers and defenders in tracking real-world incident patterns across non-profit sectors. |
||||||
| Ransomware | The Salvation Army id32683 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational resources and sector-focused services. As a ransomware victim, the entity is documented within the threat-intelligence index under association with the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to ransomware activity and serves as a reference point for monitoring related threat patterns and defensive insights. The entry emphasizes factual categorization without disclosing unverified incident details, maintaining neutrality for catalog and analytical use. |
||||||
| Ransomware | The Salvation Army id32684 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the United States NGO and associations sector, providing organizational support and programmatic services. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the security community's documented relationship between the organization and the identified threat actor's activity. No specific breach details, data exfiltration claims, or incident metrics are included here, adhering to factual neutrality and avoiding invention of unverified specifics. The entry serves to contextualize the organization's exposure within the broader cybersecurity landscape and threat actor mapping. |
||||||
| Ransomware | The Salvation Army id32688 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services or functions aligned with its organizational mission. As documented in this threat-intelligence index, the entity is categorized as a ransomware victim linked to the interlock threat actor. The listing reflects observed security event associations without disclosing unverified incident specifics such as data stolen, ransom demands, or confirmed breach details. This entry serves to inform defenders and analysts about organizational exposure patterns within critical non-profit sectors facing cyber threats from identified actors. |
||||||
| Ransomware | The Salvation Army id32688 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with a country presence in the United States. The domain represents an organization whose infrastructure was affected by cyber activity linked to the interlock threat actor. This listing type identifies salvationarmy.org as a ransomware victim within the threat-intelligence index, reflecting its connection to this specific adversary group. The description avoids speculative details regarding data exfiltration, ransom demands, or confirmed breach specifics, maintaining factual neutrality. The entity is cataloged to support threat intelligence analysis, sector-focused risk assessment, and awareness of ransomware impacts within non-profit and association environments. |
||||||
| Ransomware | The Salvation Army id32688 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org functions as a digital presence representing an organization within the NGO and associations sector based in the United States. The entity serves as a catalog entry within this threat-intelligence index, specifically categorized as a ransomware victim. Its inclusion reflects the cybersecurity impact observed on this sector and location, with interlock identified as the associated threat actor or source responsible for the attack vector. This description maintains neutrality regarding unverified incident details, focusing solely on the entity's classification and its documented relationship to the threat actor. The listing underscores the vulnerability landscape affecting non-profit and association-based organizations in the US. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The entity is documented in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. Catalog entries of this nature provide context regarding organizational exposure, sector vulnerability, and attribution for security professionals monitoring cyber incidents. This listing reflects the entity's documented relationship with interlock without disclosing unverified technical details or incident specifics. The record supports threat-intelligence analysis across affected sectors and geographic regions. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational support aligned with humanitarian and advocacy initiatives. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the organization's documented exposure within the cybersecurity threat landscape, highlighting vulnerabilities relevant to non-profit and association sectors. The description remains neutral and factual, focusing solely on the entity's classification, sector context, geographic location, and the verified association with interlock as a ransomware incident victim. No specific technical details, breach confirmations, or unverified claims regarding data loss or financial impact are included. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with a location in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, documented within our threat-intelligence index under the classification of ransomware victim. This listing reflects the entity's association with interlock, a threat actor identified in cybersecurity intelligence records. The description remains neutral and focuses on the verified relationship between the entity, its sector context, and the attributed threat actor without disclosing unconfirmed operational details. This catalog entry supports threat analysts tracking ransomware activity across non-profit and association sectors globally. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity, documented within a threat-intelligence index as a ransomware victim. The associated threat actor interlock is referenced in the cataloging context, providing attribution linkage for cybersecurity monitoring and incident analysis. This listing serves as a factual reference point for defenders assessing exposure patterns across non-profit and association sectors in the US. The entry remains neutral, focusing solely on the verified association between the entity, its sector classification, and the ransomware incident linkage. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational services and public-sector coordination functions. As a ransomware victim, the entity is documented within this threat-intelligence index due to its association with the threat actor interlock. The listing type identifies the organization as having experienced ransomware-related activity linked to this specific adversary group. This entry serves to catalog the entity’s profile alongside its geographic location, sector classification, and threat context for cybersecurity professionals and intelligence analysts monitoring network threats. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, providing mission-driven services and organizational support. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects the entity's association with this specific cyber threat profile without disclosing unverified incident details. This entry documents the relationship between the organization, its sector context, and the identified threat actor for analytical and defensive reference purposes. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the United States NGO and associations sector, providing mission-driven services and public-interest offerings. It has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the entity's status in relation to cybersecurity incidents and aligns with the index's focus on mapping victim profiles to active threat actors. The description remains neutral, emphasizing sector context and the verified association without disclosing unconfirmed incident details. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association to the threat actor interlock documented as part of the incident record. This listing type indicates that the organization was affected by ransomware activity connected to interlock, without disclosing specific technical findings, data details, or confirmed breach specifics. The description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence catalog standards, focusing on verified entity attributes and the nature of the association rather than speculative claims. The inclusion reflects the organization's role in the indexed incident context and its sector classification. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing initiatives aligned with non-profit and association frameworks. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context in which the organization was identified within incident databases and threat actor attribution frameworks. The description remains neutral regarding specific attack details, as confirmed incident specifics are not attributed here. This entry serves to document the entity's role within the ransomware victim category tied to interlock. |
||||||
| Ransomware | The Salvation Army id32690 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational services and public-facing offerings aligned with its sector profile. As a ransomware victim, the entity is cataloged within this threat-intelligence index due to its association with the threat actor interlock. The listing reflects the entity's status as a compromised organization rather than detailing specific incident mechanics, data handling practices, or confirmed breach elements. This entry supports threat-aware analysis for monitoring ransomware campaigns affecting non-profit and association sectors in the US. It was listed as a ransomware victim associated with interlock. |
||||||