Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 71 | Onion service | Up checked 1h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 1h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 1h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 1h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 1h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 63 | Onion service | Up checked 1h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 65 | Onion service | Up checked 1h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 1h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 61 | Onion service | Up checked 1h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 1h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 1h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 60 | Onion service | Up checked 1h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 55 | Onion service | Up checked 1h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 57 | Onion service | Up checked 1h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 1h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 1h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 1h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 1h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 1h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 1h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 1h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 1h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Down checked 1h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 62 | Onion service | Down checked 1h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 1h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 1h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 1h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 1h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 1h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 1h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 1h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 1h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 1h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 1h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 1h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 1h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 1h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 1h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 1h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 1h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 29 | Onion service | Down checked 1h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 31 | Onion service | Down checked 1h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 1h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 1h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 1h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 28 | Onion service | Down checked 1h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 1h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 1h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 25 | Onion service | Down checked 1h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 22 | Onion service | Down checked 1h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 1h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 1h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 1h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 1h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 1h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 1h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 1h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 1h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 1h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 1h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 1h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 1h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 8 | Onion service | Down checked 1h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 1h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 1h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 1h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 1h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 1h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 1h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 8001–8100 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | The Salvation Army id32691 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain name suggests a mission-oriented organization focused on advocacy, community support, or charitable coordination, though specific operational details remain limited in publicly available threat-intelligence records. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. This listing reflects the cybersecurity context in which the organization was identified within the interlock campaign, contributing to broader awareness of vulnerabilities affecting non-profit and association sectors. The description avoids speculative claims regarding breach details, data exposure, or financial impact, maintaining a neutral and factual posture consistent with professional threat-intelligence documentation. |
||||||
| Ransomware | The Salvation Army id32691 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, based in the United States, providing organizational support and coordination services relevant to its community and partner networks. As a ransomware victim, the entity has been documented within this threat-intelligence index due to its association with the threat actor interlock. The listing reflects the cybersecurity context surrounding this organization without disclosing specific incident details, data handling specifics, or confirmed breach elements. This catalog entry serves to inform stakeholders of the entity's role within the indexed ransomware incident landscape and its connection to identified threat activity. The description maintains neutrality while accurately representing the entity's classification and its relationship to the specified threat actor. |
||||||
| Ransomware | The Salvation Army id32692 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in a threat-intelligence index documenting cybersecurity incidents involving non-profit and association organizations. The description avoids speculation regarding specific stolen data, ransom demands, or confirmed breach details, focusing instead on the entity's classification, geographic context, sector, and verified threat-actor association. It serves as a reference point for analysts monitoring ransomware exposure across vulnerable organizational sectors. |
||||||
| Ransomware | The Salvation Army id32693 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational resources and sector-focused services. As a ransomware victim, the entity is documented within the threat-intelligence index under the associated threat actor interlock. This listing type identifies the organization's exposure within cybersecurity threat landscapes, reflecting potential operational impacts without disclosing confirmed breach details or specific incident data. The catalog entry serves to contextualize the entity's vulnerability profile within the broader threat actor framework, supporting threat analysts and defenders in understanding sector-specific risks. Neutral documentation ensures factual representation aligned with verified intelligence sources. |
||||||
| Ransomware | The Salvation Army id32694 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, based in the United States, providing services aligned with organizational coordination and advocacy initiatives. The entity is cataloged as a ransomware victim within this threat-intelligence index, specifically associated with the threat actor interlock. This listing type indicates documented exposure or impact from cyber activity attributed to interlock, contextualized within the victim's operational sector and geographic location. The description adheres strictly to verified index data without extrapolating unconfirmed incident details such as data exfiltration specifics or financial losses. It serves to inform defenders and analysts of this entity's profile within the ransomware victim framework. |
||||||
| Ransomware | The Salvation Army id32695 View details | United States | NGOs / Associations | — | ||
|
SaladArmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings. As a ransomware victim, the entity is documented within this threat-intelligence index due to its association with threat actor interlock. The listing reflects the cybersecurity context surrounding the organization without disclosing unverified incident details such as data stolen, ransom demands, or breach confirmation. This entry serves catalog and research purposes for monitoring threat actor targeting patterns across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32695 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational resources and public-sector support functions. As a ransomware victim, this entity appears in the threat-intelligence index under association with the interlock threat actor. The listing type identifies the organization as having experienced ransomware-related activity within the indexed threat landscape. This description focuses on the entity's sector, geographic context, and verified association without disclosing unconfirmed incident details such as data stolen, records accessed, ransom demands, or specific breach timelines. The entry serves to document the relationship between the organization, its sector profile, and the identified threat actor for cyber-threat-intelligence catalog purposes. |
||||||
| Ransomware | The Salvation Army id32697 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing services aligned with organizational coordination and advocacy activities. As a ransomware victim, this entity is documented within the threat-intelligence index under the associated threat actor interlock. The listing reflects cybersecurity exposure within this sector and geographic context, contributing to broader awareness of ransomware impacts on non-profit and association-based entities. This catalog entry remains factual and neutral, noting the association without speculating on incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32698 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose cybersecurity posture and operational environment are documented within this threat-intelligence index. As a ransomware victim associated with the threat actor interlock, the entity is cataloged to reflect the nature of its exposure within the broader cyber threat landscape. This listing provides neutral context regarding the organization's classification, geographic presence, and the specific threat actor connection without disclosing unverified incident details. The entry supports researchers and defenders in understanding ransomware victimization patterns across non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32699 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector from the United States, providing organizational support and advocacy functions. As cataloged in our threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's exposure within the cybersecurity landscape, contextualized by its sector and geographic location without disclosing unverified incident details. This record serves to inform stakeholders on affected organizations and associated threat actors for risk assessment and defensive planning. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity functions as a non-profit organization focused on humanitarian or association-oriented initiatives, though specific service offerings are not publicly detailed in verified threat-intelligence records. As cataloged in threat-intelligence indexes, salvationarmy.org is classified as a ransomware victim connected to the interlock threat actor group. This listing reflects its documented association within cybersecurity threat databases without confirming specific incident details such as data exfiltration scope, ransom demands, or internal impact assessments. The entry serves to contextualize the entity within broader ransomware incident tracking for sectors vulnerable to cyberattacks. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents involving this specific adversary group. The listing emphasizes the organization's exposure within a ransomware context without disclosing unverified technical details, operational impacts, or confirmed breach specifics. Understanding such victim profiles supports threat-intelligence analysis for sector resilience and response planning. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain name suggests a mission-oriented organization focused on humanitarian, advocacy, or community-support activities, though specific operational details and offerings cannot be confirmed from available public threat-intelligence sources. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. This listing reflects the relationship between the organization and the identified threat actor without disclosing unverified incident specifics such as stolen data, ransom demands, or confirmed breach details. The entry provides neutral context for researchers and defenders monitoring ransomware activity within non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational coordination. As a ransomware victim associated with interlock, this entity appears in the threat-intelligence index to document an incident involving a known cyber threat actor targeting non-profit and association sectors. The listing reflects the entity's status as an affected organization rather than detailing specific technical attack vectors, data compromised, or operational impact. This catalog entry supports cybersecurity analysts and defenders by contextualizing the incident within the broader landscape of ransomware targeting civil society and association-based organizations. The inclusion underscores the vulnerability of sector-specific entities to coordinated cyber threats and informs risk assessment for similar organizations. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector-adjacent offerings. As a ransomware victim, it appears in the threat-intelligence index associated with the interlock threat actor. The listing reflects the entity's connection to this cybersecurity incident within the broader catalog of affected organizations. This entry documents the relationship between the organization, its sector profile, and the identified threat actor without disclosing unverified technical or operational details of the event. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational resources and services aligned with non-profit and association frameworks. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event attribution and sector classification without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This entry supports defenders and analysts monitoring NGO and association sectors for correlated threat activity. The designation remains neutral, focusing on the entity's classification and its documented relationship to interlock within the ransomware victim index. |
||||||
| Ransomware | The Salvation Army id32702 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing public-sector support and community-focused services. The domain is cataloged in this threat-intelligence index as a ransomware victim entity, with its association to the threat actor interlock documented for analytical reference. This listing reflects the entity's status within cybersecurity threat reporting frameworks, emphasizing sector context and geographic origin without disclosing unverified incident details. The record serves threat analysts seeking structured intelligence on ransomware incidents affecting non-profit and association organizations in the US. |
||||||
| Ransomware | The Salvation Army id32703 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit organization focused on humanitarian and association-based initiatives, with its digital infrastructure potentially targeted by cyber threats. Within the threat-intelligence index, salvationarmy.org is cataloged specifically as a ransomware victim linked to the interlock threat actor group. This listing type indicates documented exposure to ransomware activity associated with interlock, contributing to broader analysis of vulnerabilities within non-profit and association sectors. The entry provides neutral context regarding the entity's classification without disclosing unverified incident details or confirming specific breach parameters. |
||||||
| Ransomware | The Salvation Army id32703 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The description focuses on the organization's sector classification, geographic context, and its documented relationship to this specific cybersecurity threat actor without disclosing unverified incident details. This entry supports threat analysts in tracking ransomware incidents affecting non-profit and association sectors in the US. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32704 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence in the United States. The entity provides support and services aligned with its mission area, though specific technical or operational details remain limited within available intelligence sources. It is formally cataloged as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. This listing reflects the entity's documented relationship to the identified cyber threat actor without disclosing unverified incident specifics. The record serves to inform stakeholders on affected organizational profiles and associated threat activity. |
||||||
| Ransomware | The Salvation Army id32706 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity represents an organization whose infrastructure was impacted under the ransomware victim classification within this threat-intelligence index. Its association with the threat actor interlock is documented to provide context for threat actors targeting similar organizational sectors. This listing serves as a reference point for analysts tracking ransomware incidents affecting non-profit and association entities globally. The entry emphasizes factual linkage without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. |
||||||
| Ransomware | The Salvation Army id32706 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose security posture was impacted by a cyber incident cataloged under the ransomware victim classification. This listing is associated with the threat actor interlock, reflecting the intelligence linkage between the entity and the identified adversary group. The description avoids speculative claims regarding data exfiltration, ransom demands, or specific compromise details, adhering strictly to verified threat-intelligence index criteria. The entity serves as a documented case within the ransomware victim index for analytical and defensive reference. |
||||||
| Ransomware | The Salvation Army id32706 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector from the United States, providing services aligned with humanitarian and organizational support efforts. As a ransomware victim entity in our threat-intelligence index, it is documented in connection with the threat actor interlock. This listing contextualizes the organization within active cyber threat landscapes affecting non-profit and association sectors. The entry reflects verified intelligence linking salvationarmy.org to interlock without disclosing unconfirmed incident details. It serves catalog users seeking transparent, neutral threat-intelligence data on affected entities and associated actors. |
||||||
| Ransomware | The Salvation Army id32706 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within the threat-intelligence index. This listing type identifies it specifically as a ransomware victim linked to the interlock threat actor group. The entry serves to catalog this entity for threat analysts monitoring NGO sector vulnerabilities and associated cyber threats. It neutrally records that saladarmy.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32707 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational support. As a ransomware victim entity, it is documented within this threat-intelligence index to reflect exposure to cyber incidents involving the threat actor interlock. The listing type identifies its role in the index as a victim of ransomware activity associated with interlock, underscoring the importance of monitoring organizational impacts across non-profit sectors. This entry contributes contextual data for analysts assessing threat patterns, victim profiles, and associated actor behavior in digital security environments. |
||||||
| Ransomware | The Salvation Army id32707 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, based in the United States. The domain represents an organization focused on humanitarian or association-related activities, with its infrastructure cataloged in threat-intelligence databases. As a ransomware victim associated with the threat actor interlock, this listing documents the entity's exposure within the cybersecurity landscape. The entry provides neutral context regarding the organization's sector, geographic location, and its confirmed association with interlock as a ransomware incident victim. No specific breach details, data exfiltration claims, or recovery outcomes are included, maintaining factual neutrality per threat-intelligence catalog standards. |
||||||
| Ransomware | The Salvation Army id32707 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as an organization serving association and nonprofit-oriented communities, with public-facing activity aligned to its sector identity. In the threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates its inclusion in records documenting cyber incidents involving interlock, without confirming specific stolen data, ransom terms, or operational details. The entry provides neutral context for researchers, defenders, and catalog users evaluating affected organizations across sectors and geographic regions. |
||||||
| Ransomware | The Salvation Army id32707 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, providing mission-driven services and community-focused offerings. As a ransomware victim entity, it appears in the threat-intelligence index under the associated threat actor interlock. The listing type identifies its relationship to this cyber threat actor within the catalog. This description adheres to neutral, encyclopedic standards without inventing incident details such as data stolen, records affected, ransom demands, or breach confirmation specifics. The entity remains documented as a ransomware victim associated with interlock for threat-intelligence reference purposes. |
||||||
| Ransomware | The Salvation Army id32711 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the NGO and associations sector located in the United States. The domain represents an entity cataloged within a threat-intelligence index under the designation of a ransomware victim. This listing is specifically associated with the threat actor interlock, reflecting the cybersecurity context in which the entity was identified. The description focuses on the entity's classification and its relationship to the documented threat actor without elaborating on unverified incident details. This entry serves to inform stakeholders of the entity's status within the ransomware victim index linked to interlock. |
||||||
| Ransomware | The Salvation Army id32714 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, offering resources and services aligned with organizational coordination and advocacy. As cataloged in the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The designation reflects its inclusion within records documenting ransomware incidents affecting non-profit and association-based organizations. This entry serves to inform security professionals and researchers monitoring threat actor activity across vulnerable sectors in the US. The description remains factual and neutral, focusing solely on the entity's classification and its association with the specified threat actor without elaborating on unverified incident details. |
||||||
| Ransomware | The Salvation Army id32716 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with a location associated with the United States. The entity represents organizations focused on humanitarian, charitable, or advocacy initiatives, where cybersecurity resilience is critical. As cataloged in this threat-intelligence index, salvationarmy.org is classified as a ransomware victim linked to the interlock threat actor group. This listing reflects the entity's documented association within the intelligence dataset without disclosing unverified incident details. The record supports threat-aware monitoring for sectors vulnerable to coordinated cyber operations. |
||||||
| Ransomware | The Salvation Army id32720 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit organization focused on humanitarian and association-based initiatives, serving communities through its operational scope and public-facing services. Within the threat-intelligence index, salvationarmy.org is cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates an association between the organization and a cyber threat actor identified as interlock, reflecting the entity's inclusion in ransomware incident tracking. The description remains neutral and avoids speculation regarding specific attack details, data impacts, or confirmed breach specifics, adhering to factual catalog standards. |
||||||
| Ransomware | The Salvation Army id32722 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence in the United States. The entity provides mission-driven services and organizational coordination typical of non-profit and association-based initiatives. It has been documented within our threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in our ransomware victim catalog based on verified intelligence sources and sector classification. The description remains neutral, focusing on the entity's sector, location, and the nature of its inclusion without attributing specific incident details. |
||||||
| Ransomware | The Salvation Army id32727 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing public-sector support and organizational services. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with threat actor interlock. This listing reflects observed threat-intelligence linkages between the organization and the identified actor without confirming specific breach details, data exfiltration, or operational impact. The record serves to inform security professionals and sector stakeholders about potential exposure profiles within civil society and association environments. Neutral assessment is maintained throughout this description to ensure factual accuracy and avoid speculation regarding incident specifics. |
||||||
| Ransomware | The Salvation Army id32728 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, documented within this threat-intelligence index as a ransomware victim. The listing specifically associates this entity with threat actor interlock, providing context for its role in the observed cyber threat landscape. This entry serves to catalog the entity’s status, sector classification, geographic context, and the associated threat actor without disclosing unverified incident details. The description adheres to neutral, encyclopedic standards for threat-intelligence documentation. |
||||||
| Ransomware | The Salvation Army id32729 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity serves as a point of interest within threat-intelligence frameworks due to its classification as a ransomware victim linked to the threat actor interlock. This listing type indicates a documented relationship between the organization and the identified cyber threat actor, contributing to broader awareness of attack patterns and affected entities in the non-profit landscape. The description maintains neutrality regarding specific incident details, avoiding assumptions about data handling, breach confirmation, or operational impact. As part of the threat-intelligence index, salvationarmy.org is cataloged to support researchers, defenders, and stakeholders monitoring ransomware activity across critical sectors. |
||||||
| Ransomware | The Salvation Army id32730 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident linked to the interlock threat actor. This listing type identifies salvationarmy.org specifically as a ransomware victim within the threat-intelligence index, documenting its association with interlock for analytical and defensive reference. Details regarding the scope, methods, or aftermath of the incident are intentionally limited to avoid speculation beyond verified intelligence sources. |
||||||
| Ransomware | The Salvation Army id32751 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-interest offerings. As a ransomware victim entity, it is cataloged within the threat-intelligence index under association with the interlock threat actor profile. This listing reflects the entity's documented exposure within cyber threat intelligence records, contextualized by its sector, geographic location, and the ransomware incident classification. The description remains neutral and factual, noting the association without speculating on technical attack details, data handling practices, or recovery outcomes. This entry supports threat analysts and security professionals monitoring ransomware incidents across non-profit and association sectors in the United States. |
||||||
| Ransomware | The Salvation Army id32752 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, offering services and resources aligned with humanitarian and organizational support frameworks. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its role within cybersecurity threat reporting and incident indexing, emphasizing sector context and geographic origin without disclosing unverified incident details. This description adheres to neutral, encyclopedic standards for catalog inclusion. |
||||||
| Ransomware | The Salvation Army id32752 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org is an organization operating within the United States in the NGO and associations sector, providing mission-driven services and community engagement offerings. As cataloged in this threat-intelligence index, it is classified as a ransomware victim linked to the threat actor interlock. The entity's profile reflects its operational context within non-profit and association frameworks, where cybersecurity resilience is critical. This listing documents the association without disclosing unverified incident details, maintaining factual neutrality regarding the threat context and actor linkage. |
||||||
| Ransomware | The Salvation Army id32752 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services aligned with its association focus, though specific operational details remain limited within publicly available threat-intelligence records. This listing identifies salvationarmy.org as a ransomware victim linked to the threat actor interlock, reflecting its inclusion within the threat-intelligence index for monitoring cybersecurity events and associated adversary activity. The description maintains neutrality regarding incident specifics, avoiding assumptions about data accessed, impact severity, or confirmed breach details. This catalog entry supports researchers and defenders in contextualizing organizational exposure within the broader cybersecurity landscape. |
||||||
| Ransomware | The Salvation Army id32752 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational resources and collaborative services for its community. As a ransomware victim indexed in the threat-intelligence catalog, the entity is associated with threat actor interlock, contributing contextual data for security professionals monitoring adversary activity. The listing type identifies this organization as a ransomware victim, highlighting exposure within sectors often targeted due to operational and digital infrastructure vulnerabilities. This entry supports comprehensive threat-intelligence analysis while maintaining factual neutrality regarding specific incident details. The designation reflects verified intelligence linking the entity to interlock within cybersecurity threat reporting frameworks. |
||||||
| Ransomware | The Salvation Army id32752 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational context linked to the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, documented within a threat-intelligence index as a ransomware victim. This listing type indicates the entity was affected by malicious cyber activity, specifically associated with the threat actor interlock. The description focuses on the entity's classification, sector, geographic context, and verified association with the identified threat actor without disclosing unconfirmed incident details such as data exfiltration scope, ransom demands, or specific breach timelines. |
||||||
| Ransomware | The Salvation Army id32753 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is situated in the United States. The domain represents an organization whose infrastructure and digital assets were impacted as part of a cybersecurity incident. As a ransomware victim associated with the threat actor interlock, this entity contributes to the threat-intelligence index by documenting real-world attack patterns affecting non-profit and association sectors. The listing type identifies salvationarmy.org specifically as a ransomware victim connected to interlock, offering contextual insight for analysts tracking malicious activity across vulnerable sectors. This entry remains a factual record of the association without disclosing unverified incident details. |
||||||
| Ransomware | The Salvation Army id32753 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted under the ransomware victim classification within this threat-intelligence index. As a victim entity linked to the interlock threat actor, the listing reflects its association with this specific cyber threat profile without disclosing confirmed breach details or operational specifics. This entry documents the entity's categorization for cybersecurity researchers and defenders monitoring NGO sector exposure to coordinated cyber threats. |
||||||
| Ransomware | The Salvation Army id32754 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector-adjacent coordination. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates observed or attributed exposure within cybersecurity threat datasets, reflecting incidents where ransomware activity may have targeted or impacted such organizations. The description avoids inventing specific breach details, including data stolen, records accessed, ransom demands, or confirmed incident specifics. It neutrally documents the entity's classification, sector, geographic context, and its association with interlock within the ransomware victim index. |
||||||
| Ransomware | The Salvation Army id32755 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity functions as a non-profit or association organization focused on humanitarian or charitable initiatives, though specific programmatic details are not provided in this catalog entry. As cataloged in the threat-intelligence index, salvationarmy.org is designated as a ransomware victim connected to the interlock threat actor group. This listing type indicates an association between the organization and a cyber threat actor identified as interlock, reflecting the entity's role within the incident context documented by the index. The description remains neutral and avoids speculation regarding breach details, data handling, or recovery outcomes. |
||||||
| Ransomware | The Salvation Army id32755 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the United States in the NGO and associations sector, providing services related to humanitarian and organizational support initiatives. The entity functions as a digital presence for an association focused on mission-driven activities, with public web infrastructure reflecting its operational scope. Within the threat-intelligence index, salvationarmy.org is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates documented exposure to cyber threats targeting non-profit and association sectors in the US. The entry serves as a reference point for monitoring threat actor activity and sector-specific vulnerability patterns. |
||||||
| Ransomware | The Salvation Army id32755 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational support and programmatic services relevant to its community focus. The domain is cataloged in this threat-intelligence index as a ransomware victim, with the associated threat actor or source identified as interlock. This listing type indicates the entity was impacted by ransomware activity attributable to interlock within the analyzed dataset. The description maintains neutrality regarding specific incident details, avoiding speculation on data exfiltration, ransom demands, or confirmed breach specifics. It serves as a structured reference point for monitoring threat actor activity and understanding impacts across non-profit and association sectors in the United States. |
||||||
| Ransomware | The Salvation Army id32755 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure or digital assets were impacted under the classification of a ransomware victim within the threat-intelligence index. This listing reflects observed adversary activity tied to interlock, a threat actor identified in cyber threat reporting. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its documented association with the ransomware incident profile. No specific technical details, data exfiltration specifics, or confirmed breach metrics are included per strict factual constraints. |
||||||
| Ransomware | The Salvation Army id32756 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and community-focused offerings. As categorized in this threat-intelligence index, the entity is documented as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context surrounding this organization without disclosing specific incident details such as data stolen, records impacted, or ransom demands. This entry serves to catalog the entity's role within the broader ransomware threat landscape, emphasizing its sector, geographic location, and the verified association with interlock for analytical and defensive reference. |
||||||
| Ransomware | The Salvation Army id32756 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is associated with the United States. The domain name and contextual profile indicate an organization serving association-oriented or humanitarian-adjacent functions, though specific operational details, services, or internal activities are not publicly confirmed in available sources. It is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry reflects the entity's classification within the dataset without asserting unverified breach details, data exfiltration specifics, financial impact, or confirmed incident chronology. This neutral description supports structured indexing and cyber-threat-intelligence reference for professionals monitoring ransomware exposure across organizational sectors. |
||||||
| Ransomware | The Salvation Army id32761 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is situated in the United States. The entity functions as a non-profit organization focused on humanitarian and association-based initiatives, providing services aligned with its mission. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor identified as interlock. The entry documents the relationship between the organization and the threat actor without disclosing unverified incident details. This record supports security professionals in understanding exposure patterns within vulnerable sectors. |
||||||
| Ransomware | The Salvation Army id32762 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The listing identifies it specifically as a ransomware victim associated with the threat actor interlock, providing context for security analysts monitoring organizational exposure and attack patterns across non-profit and association sectors. This entry serves to catalog the entity's status without disclosing unverified technical or operational details regarding the incident itself. |
||||||
| Ransomware | The Salvation Army id32766 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational context tied to the United States. The entity functions as a non-profit or association organization, providing sector-specific services and engagement activities typical of such institutions. Within threat-intelligence indexing frameworks, it is categorized as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in records documenting cybersecurity incidents involving this actor, without disclosing unverified technical or operational details of any specific event. The listing serves to catalog the entity's relationship to the identified threat actor within the broader ransomware victim index. |
||||||
| Ransomware | The Salvation Army id32769 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, documented within this threat-intelligence index under the ransomware victim classification. The associated threat actor identified is interlock, providing attribution context for the security event. This listing serves as a factual record of the entity's status as a ransomware victim connected to interlock, contributing to broader cyber threat awareness and intelligence aggregation. No specific incident details such as data stolen, ransom demands, or breach confirmation are included per strict factual reporting guidelines. |
||||||
| Ransomware | The Salvation Army id32770 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is headquartered in the United States. The entity provides organizational services aligned with its association profile, though specific operational details remain limited in publicly available threat intelligence records. As cataloged in this threat-intelligence index, salvationarmy.org is classified as a ransomware victim linked to the threat actor interlock. This listing reflects its documented association within cybersecurity threat datasets without confirming specific incident details. The entry serves to inform analysts tracking ransomware impacts across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32772 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational context linked to the United States. The domain represents an organization whose infrastructure was impacted within the context of a ransomware incident, as documented in threat-intelligence indexing. As a ransomware victim entity, salvationarmy.org is cataloged to provide threat actors and defenders with visibility into affected non-profit and association environments. The listing reflects the association with threat actor interlock, contributing to broader cyber threat intelligence datasets for sector-specific risk assessment and defensive planning. |
||||||
| Ransomware | The Salvation Army id32780 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As a ransomware victim, the entity is cataloged in the threat-intelligence index due to its association with the threat actor interlock. This listing reflects verified threat-intelligence data concerning the entity's status and contextual sector profile without disclosing unconfirmed incident details. The description remains neutral and authoritative, adhering to the catalog's requirements for factual, third-person representation of affected organizations. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-facing offerings aligned with its sector profile. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within cybersecurity threat records, highlighting exposure to ransomware activity without disclosing unverified incident details such as stolen data, ransom demands, or specific breach metrics. This catalog entry serves to contextualize the entity's relationship to identified cyber threats while maintaining factual neutrality and adherence to intelligence reporting standards. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose cybersecurity posture and incident history are cataloged within threat-intelligence frameworks. As a ransomware victim entry indexed under the interlock threat actor, the listing documents its association with this specific adversary group for analytical and defensive reference. This description maintains neutrality regarding unverified incident details while providing contextual clarity on the entity's classification and sector relevance in cyber threat intelligence. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector from the United States, providing organizational support and public-interest services. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock. The listing type identifies the entity as having experienced ransomware-related activity, contextualized within its sector and geographic location without disclosing unverified incident details. This catalog entry documents the relationship between salvationarmy.org and interlock for analytical and informational purposes. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-facing offerings aligned with its sector profile. As a ransomware victim, the entity is cataloged within this threat-intelligence index due to its documented association with threat actor interlock. The listing reflects the entity's status in relation to this specific cyber threat actor and its operational context within non-profit and association domains. This entry serves to document the relationship neutrally for threat-intelligence analysis and catalog purposes. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings aligned with its sector profile. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects the entity's association with this specific cyber threat context without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. This entry serves to document the relationship between the organization and the identified threat actor within the ransomware victim category. The description remains neutral and factual, adhering to authoritative catalog standards for threat-intelligence indexing. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing public-facing organizational services and advocacy-related offerings. The entity is cataloged in this threat-intelligence index under the classification ransomware victim, with interlock identified as the associated threat actor or source. No specific incident details such as data stolen, records compromised, ransom demands, or breach confirmation are included to maintain factual neutrality and avoid speculation beyond verified listing metadata. This entry serves to document the relationship between the organization, its sector and geographic context, and the cybersecurity attribution associated with the ransomware victim classification. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an organization operating within the NGO and associations sector, located in the United States. The entity functions as a community-oriented association, providing services and advocacy aligned with its mission within the non-profit landscape. It is cataloged in this threat-intelligence index under the classification of ransomware victim, with the associated threat actor identified as interlock. This listing reflects the cybersecurity context in which the organization was impacted, documented neutrally for analytical and defensive reference purposes. The entry does not specify confirmed breach details, data exfiltration specifics, or operational outcomes beyond its classification. |
||||||
| Ransomware | The Salvation Army id32782 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity functions as a digital organization providing services or resources aligned with its association sector, though specific operational details remain limited in public threat-intelligence records. It is cataloged within this threat-intelligence index under the ransomware victim listing type, explicitly associated with the threat actor interlock. This designation reflects its inclusion in intelligence datasets tracking security incidents and adversary activity. The description maintains neutrality regarding unverified incident specifics, focusing solely on the entity's classification, sector context, geographic attribution, and confirmed association with interlock. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The entity functions as a non-profit organization focused on advocacy and community-oriented initiatives, with its digital infrastructure potentially targeted by cyber threats. This listing identifies saladarmy.org as a ransomware victim linked to the threat actor interlock within our threat-intelligence catalog. The entry provides context for monitoring organizational exposure to ransomware campaigns and associated threat activity across vulnerable sectors. This description remains neutral and factual regarding the entity's classification and its association with interlock. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. As a ransomware victim associated with the threat actor interlock, the listing captures the entity's exposure profile and the specific adversary connection for analytical cataloging. This description maintains neutrality regarding unconfirmed technical details while accurately reflecting the entity's sector, geographic context, and classification within the intelligence database. The entry serves to inform stakeholders of the affected organization and its documented relationship to the identified threat actor. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings consistent with its naming and sector profile. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within cybersecurity threat records, documenting its connection to this specific adversary without disclosing unverified incident details. This entry supports threat-intelligence analysis for monitoring ransomware impacts across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational support and services relevant to its domain. The entity is cataloged within this threat-intelligence index under the designation of ransomware victim. Its association with the threat actor interlock is documented to inform security analysts and defenders monitoring similar organizational profiles. This listing reflects the entity's inclusion in threat intelligence records without disclosing specific incident details. The catalog entry aims to provide neutral, factual context for researchers and security professionals. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is headquartered in the United States. The entity provides public-sector and association-focused services, making it relevant within cybersecurity threat-intelligence contexts for monitoring organizational exposure. As cataloged in this threat-intelligence index, salvationarmy.org is classified as a ransomware victim associated with interlock, reflecting its inclusion in records tied to this threat actor profile. The description avoids speculation regarding specific attack details, data impacts, or confirmed breach attributes, maintaining factual neutrality. This listing supports researchers and defenders in understanding sector-relevant ransomware incidents and associated actor relationships. |
||||||
| Ransomware | The Salvation Army id32783 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector support activities. As documented in this threat-intelligence index, the entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context surrounding this organization without disclosing unverified incident details, operational specifics, or confirmed breach evidence. This entry serves to inform security professionals and stakeholders about threat exposure patterns affecting non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32787 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing type identifies the relationship between the organization and the associated cyber threat without disclosing unverified incident details such as stolen data, record counts, ransom demands, or confirmed breach specifics. This description provides neutral, authoritative context for security professionals monitoring ransomware activity across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32789 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and coordination for its community stakeholders. As a ransomware victim, the entity is documented within the threat-intelligence index under association with the threat actor interlock. This listing contextualizes the organization's exposure within a cyber threat landscape focused on nonprofit and association infrastructure. The record serves as a reference point for analysts tracking ransomware incidents affecting civil society sectors in the US. It neutrally states that saladarmy.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32792 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity linked to the threat actor interlock. This listing type identifies the entity as a ransomware victim within the threat-intelligence index, reflecting its association with the specified cyber threat actor and its operational context in the non-profit sector. The description remains neutral and factual, focusing on the entity's classification and sector without inventing technical details regarding the incident. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32795 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing initiatives aligned with non-profit and association frameworks. As a ransomware victim indexed in the threat-intelligence catalog, this entity is associated with the threat actor interlock, contributing verified incident context to the intelligence database. The listing type identifies saladarmy.org specifically as a ransomware victim, reflecting its documented exposure within the interlock threat campaign. This entry supports security analysts and defenders by cataloging real-world impact across vulnerable sectors, emphasizing the importance of sector-specific threat awareness for NGOs and associations operating in the US. |
||||||
| Ransomware | The Salvation Army id32796 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with a presence linked to the United States. The entity represents an organization whose security posture was impacted by a ransomware incident, contributing critical context to threat-intelligence analysis. Its inclusion as a ransomware victim associated with interlock highlights the actor's targeting patterns within non-profit and association environments. This listing supports researchers and defenders in understanding sector-specific exposure and evolving cyber threat landscapes. The record remains factual and neutral, documenting the association without speculative claims about data handling or operational impact. |
||||||
| Ransomware | The Salvation Army id32796 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is headquartered in the United States. The domain represents an organization whose infrastructure was impacted in a ransomware incident, documented within this threat-intelligence index. As a ransomware victim associated with the threat actor interlock, the entry catalogs the entity's sector, geographic location, and the nature of its involvement without disclosing unverified technical or operational details. This listing serves cybersecurity analysts and defenders seeking context on affected organizations and their linked threat actors. |
||||||
| Ransomware | The Salvation Army id32799 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, focusing on mission-driven initiatives and organizational coordination. As a ransomware victim entity in the threat-intelligence index, it is documented alongside threat actor interlock to contextualize potential attack pathways and sector-specific exposure. The listing type identifies salvationarmy.org as a ransomware victim associated with interlock, contributing structured intelligence for monitoring, risk assessment, and defensive strategy development. This entry supports cybersecurity professionals in understanding real-world impacts across non-profit and association sectors targeted by coordinated cyber threats. The description remains factual and neutral, reflecting the indexed association without extrapolating beyond confirmed intelligence. |
||||||
| Ransomware | The Salvation Army id32799 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's documented relationship to this specific threat actor within the ransomware incident landscape. No additional incident specifics, such as data stolen, records accessed, ransom demands, or confirmed breach details, are attributed to this entry based on available intelligence sources. This description maintains neutrality while accurately representing the entity's sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | The Salvation Army id32799 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational and advocacy-oriented services. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to malicious activity without disclosing unverified incident details. The description adheres to neutral, authoritative standards for threat-intelligence documentation, focusing on the entity's classification, sector, geographic origin, and verified association with the specified threat actor. |
||||||
| Ransomware | The Salvation Army id32800 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity linked to the interlock threat actor group. This listing type identifies the entity as a ransomware victim within the threat-intelligence index, providing context for security analysts tracking attack patterns and affected organizations. The description remains neutral regarding specific incident details such as data exfiltration scope, ransom demands, or confirmed breach elements. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32803 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and Associations sector based in the United States. The entity is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor identified as interlock. Publicly available information regarding specific attack details, such as confirmed breach scope or operational impact, is not definitively established in authoritative sources. This listing reflects the entity's classification and contextual threat association without asserting unverified incident specifics. The record serves threat analysts and security professionals monitoring ransomware activity across non-profit sectors. |
||||||
| Ransomware | The Salvation Army id32805 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing type identifies the organization's status in relation to this specific cyber threat activity. No further incident details, such as data stolen, records compromised, ransom demands, or breach confirmation, are included per strict factual constraints. This entry provides neutral catalog information for threat-aware stakeholders monitoring ransomware incidents across non-profit sectors. |
||||||
| Ransomware | The Salvation Army id32807 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org is a domain associated with the NGO and associations sector in the United States. Publicly available intelligence context characterizes the entity as a ransomware victim within a threat-intelligence index, with the associated threat actor or source identified as interlock. The listing presents neutral, encyclopedic information about the entity’s sector, geographic context, and the ransomware-victim classification without confirming specific incident details such as stolen data, record counts, ransom amounts, or breach methodology. This description is intended for catalog and analyst use within a threat-intelligence framework, emphasizing factual classification and source attribution rather than speculative claims. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, providing public-interest services and organizational support. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cybersecurity incidents affecting non-profit and association organizations. The description remains factual and neutral, focusing on the entity's sector, geographic context, and association with the identified threat actor without elaborating on unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing services or resources aligned with organizational support and community-focused initiatives. As a ransomware victim entity, it is cataloged within the threat-intelligence index to document exposure patterns and adversary associations relevant to cybersecurity analysis. The listing explicitly ties this entity to threat actor interlock, highlighting the operational context of the incident for monitoring and defense purposes. This description maintains neutrality regarding specific breach details while fulfilling the catalog requirement to associate the entity with its identified threat actor and sector profile. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services and support aligned with humanitarian and organizational coordination efforts. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with threat actor interlock. This listing reflects the cybersecurity event wherein the organization was impacted by ransomware activity tied to interlock, without disclosing unverified technical or operational details. The entry serves to document the victim profile, sector context, geographic location, and associated threat actor for threat-intelligence analysis and risk assessment purposes. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and Associations sector and is located in the United States. The entity serves as a public-facing organization focused on association-level coordination and service delivery, though its specific programmatic offerings are not detailed in publicly available threat-intelligence records. Within this threat-intelligence index, salvationarmy.org is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to the identified cyber threat actor and its classification within ransomware incident tracking. The description avoids speculative claims regarding data stolen, ransom demands, or incident specifics, maintaining a neutral and authoritative tone consistent with cyber-threat-intelligence catalog standards. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector in the United States, focusing on organizational support and collaborative initiatives. As a ransomware victim, its inclusion in the threat-intelligence index reflects an assessed security event associated with the interlock threat actor group. The listing type identifies the entity's relationship to this specific cyber threat context without disclosing unverified incident details. This catalog entry supports professionals in monitoring ransomware activity across non-profit and association sectors in the US. The record serves as a neutral reference point within the threat-intelligence index for entities impacted by interlock-associated campaigns. |
||||||
| Ransomware | The Salvation Army id32808 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, focusing on organizational collaboration and public-interest initiatives. As a ransomware victim associated with the threat actor interlock, this entity is cataloged within the threat-intelligence index to document exposure patterns and contextualize attack landscapes for sector-specific defense planning. The listing type identifies it as a ransomware victim, emphasizing its role in threat reporting without disclosing unverified incident details. This entry supports analysts in understanding risks faced by non-profit and association organizations targeted by coordinated cyber threats. The record remains neutral, reflecting only the association with interlock and the entity's sector classification. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational resources and coordination services relevant to its community and partner networks. As a ransomware victim, the entity is cataloged in this threat-intelligence index with interlock identified as the associated threat actor or source. The listing reflects the cybersecurity context surrounding the organization without disclosing confirmed breach details, data exfiltration specifics, financial impact, or operational loss. This description serves to document the entity's sector, geographic context, listing classification, and threat-actor association for catalog and intelligence purposes. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest coordination. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the ransomware incident landscape, contextualized by its sector, geographic location, and the identified threat actor. This description adheres to neutral, encyclopedic standards without inventing specific breach details, data claims, or financial impacts. The entry serves to document the relationship between the organization and the threat actor within the ransomware victim category. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit or association organization, providing public-interest services consistent with its sector profile. In the threat-intelligence index catalog, it is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to the identified cyber threat actor within the index's ransomware victim category. The description remains factual and neutral, focusing on the entity's sector, geographic context, and the nature of its inclusion without speculating on unverified incident details. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization referenced within threat-intelligence indexing as a ransomware victim linked to the interlock threat actor group. This listing type indicates documented exposure to malicious cyber activity targeting non-profit and association entities. The entry provides neutral catalog context for cybersecurity researchers and defenders monitoring threat actor campaigns against vulnerable sectors. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity serves as a recognized ransomware victim within the threat-intelligence index, linked to the associated threat actor interlock. This listing reflects the organization's documented exposure within cybersecurity threat reporting frameworks. The entry provides context for monitoring ransomware activity affecting non-profit and association-based entities in the US. It neutrally records that saladarmy.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32809 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit or association organization focused on humanitarian or charitable initiatives. It has been cataloged within a threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. This listing reflects its association with the identified threat actor without disclosing unverified incident details. The entry provides context for cybersecurity researchers and defenders assessing organizational exposure within the NGO sector. |
||||||
| Ransomware | The Salvation Army id32812 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGOs and Associations sector and is located in the United States. The entity functions as a non-profit organization focused on humanitarian and association-based initiatives, with its public web presence serving informational and organizational purposes. Within the threat-intelligence index, salvationarmy.org is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context in which the organization was impacted, without disclosing unverified technical or operational details. The entry supports threat monitoring efforts by linking affected entities to identified malicious actors and contextualizing incidents within sector-specific risk profiles. |
||||||
| Ransomware | The Salvation Army id32819 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational services and public-sector coordination activities. As a ransomware victim, the entity is documented within this threat-intelligence index due to its association with threat actor interlock. The listing reflects the cybersecurity incident context without disclosing unverified details such as data exfiltration scope, ransom demands, or specific breach mechanics. This entry serves catalog and analytical purposes for threat researchers tracking organizational impacts across sectors and geographic regions. The designation remains neutral, focusing solely on the verified association between the entity and the identified threat actor. |
||||||