Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 71 | Onion service | Up checked 1h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 1h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 1h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 1h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 1h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 63 | Onion service | Up checked 1h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 65 | Onion service | Up checked 1h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 64 | Onion service | Up checked 1h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 61 | Onion service | Up checked 1h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 1h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 1h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 60 | Onion service | Up checked 1h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 55 | Onion service | Up checked 1h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 57 | Onion service | Up checked 1h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 56 | Onion service | Up checked 1h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 54 | Onion service | Up checked 1h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 1h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Up checked 1h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 1h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 1h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 1h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 1h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Down checked 1h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 62 | Onion service | Down checked 1h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 1h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 1h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 1h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 1h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 1h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 1h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 1h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 1h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 36 | Onion service | Down checked 1h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 38 | Onion service | Down checked 1h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 1h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 37 | Onion service | Down checked 1h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 1h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 32 | Onion service | Down checked 1h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 33 | Onion service | Down checked 1h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 1h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 29 | Onion service | Down checked 1h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 31 | Onion service | Down checked 1h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 1h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 1h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 1h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 28 | Onion service | Down checked 1h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 24 | Onion service | Down checked 1h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 1h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 25 | Onion service | Down checked 1h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 22 | Onion service | Down checked 1h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 1h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 1h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 1h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 1h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 1h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 1h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 1h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 1h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 1h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 1h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 1h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 1h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 8 | Onion service | Down checked 1h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 1h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 1h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 6 | Onion service | Down checked 1h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 5 | Onion service | Down checked 1h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 1h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 1h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 8101–8200 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | The Salvation Army id32819 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with a location associated with the United States. The domain represents an organization whose infrastructure was identified within threat-intelligence records as a ransomware victim. Its inclusion reflects cybersecurity monitoring of entities impacted by coordinated cyber activity, specifically associated with the threat actor interlock. This listing type documents the relationship between the entity and the identified threat actor without disclosing unverified incident details. The catalog entry provides neutral context for researchers and defenders assessing exposure patterns across non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32822 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity provides organizational services aligned with non-profit and association frameworks, though specific operational details remain limited in public records. This listing identifies saladarmy.org as a ransomware victim within the threat-intelligence index, explicitly associated with threat actor interlock. The classification reflects observed security event correlations and does not confirm specific breach details, data exfiltration, or financial impact. Understanding such victim profiles supports threat-intelligence analysis for sector-focused risk assessment and defensive planning. |
||||||
| Ransomware | The Salvation Army id32824 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector coordination activities. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's presence within the ransomware incident dataset tied to interlock's activity, without disclosing confirmed breach details, stolen data, or operational specifics. This description maintains neutrality while documenting the relationship between the organization, its sector, location, listing type, and associated threat actor for analytical reference. |
||||||
| Ransomware | The Salvation Army id32829 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As cataloged in the threat-intelligence index, it is classified as a ransomware victim linked to the interlock threat actor group. This designation reflects its inclusion within incident records tied to cybercrime activity targeting organizational entities in this sector. The listing serves to document the relationship between the entity, its operational context, and the associated threat actor for defensive and analytical purposes. No specific incident details, such as data exfiltration scope or ransom demands, are confirmed or included in this description. |
||||||
| Ransomware | The Salvation Army id32830 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, documented within this threat-intelligence index under the ransomware victim listing type. The association is specifically linked to threat actor interlock in the index records. This catalog entry provides neutral context regarding the entity's classification and its verified relationship with the identified threat actor for cybersecurity monitoring and analysis purposes. |
||||||
| Ransomware | The Salvation Army id32831 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a digital organization providing services or resources aligned with its sector identity. It has been cataloged within this threat-intelligence index under the designation ransomware victim, associated with threat actor interlock. This listing reflects the entity's relationship to identified cyber threat activity without disclosing unverified incident details. The entry serves as a structured reference for security analysts tracking affected organizations and their linked threat actors. |
||||||
| Ransomware | The Salvation Army id32832 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity, documented within threat-intelligence indexing frameworks. As a ransomware victim entry, the listing reflects observed adversary association with interlock, a threat actor identified in cybersecurity intelligence databases. This catalog description maintains neutrality regarding unconfirmed technical details, incident specifics, or disclosure timelines. The entry serves threat-intelligence consumers seeking structured context on affected entities, their sector classification, geographic context, and adversary linkages. |
||||||
| Ransomware | The Salvation Army id32832 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity represents an organization whose infrastructure was impacted by a ransomware incident. This listing identifies saladarmy.org as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description focuses on the entity's classification, geographic context, sector relevance, and its verified association with interlock without disclosing unconfirmed incident details. This catalog entry supports threat-aware analysis for organizations monitoring ransomware exposure across non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32833 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit or association organization focused on humanitarian or advocacy-related initiatives, though specific operational details are limited in public threat-intelligence records. It is cataloged as a ransomware victim linked to the threat actor interlock, indicating a cybersecurity incident within its digital infrastructure. This listing reflects the entity's status within a threat-intelligence index rather than confirming specific breach details, data exfiltration, or operational impact. The record serves to contextualize the organization's exposure within the broader landscape of ransomware activity targeting non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32833 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational coordination aligned with humanitarian and association-focused activities. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the interlock threat actor, contributing contextual data for cybersecurity analysts tracking adversary activity across non-profit and association sectors. This listing reflects the association between the organization and the identified threat actor without confirming specific breach details, data exfiltration claims, or operational impact. Understanding such victim profiles supports broader threat-intelligence workflows, including sector-specific risk assessment and defensive awareness for organizations in similar domains. |
||||||
| Ransomware | The Salvation Army id32833 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector coordination activities. As cataloged in this threat-intelligence index, it is classified as a ransomware victim linked to the interlock threat actor group. The entity reflects the exposure profile of organizations within sensitive civic and association sectors to cyber threats. This listing documents the association between the organization, its sector context, and the identified threat actor without disclosing unverified incident details or confirmed breach specifics. The record serves as a structured reference for threat-intelligence analysis and catalog indexing purposes. |
||||||
| Ransomware | The Salvation Army id32833 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The entity represents an organization whose infrastructure was impacted by a ransomware incident, documented within this threat-intelligence index as a ransomware victim. The association's classification aligns with non-profit and organizational sectors commonly targeted by cyber threats, where coordinated attacks may compromise operational continuity and data integrity. This entry catalogs the relationship between the organization and the identified threat actor interlock without disclosing unverified incident details. The listing serves as a neutral record of the entity's status within the ransomware victim index associated with interlock. |
||||||
| Ransomware | The Salvation Army id32833 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services aligned with humanitarian and organizational support initiatives. As cataloged in our threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity context without disclosing confirmed breach details, data exfiltration specifics, or operational impact metrics. This entry serves to document the entity's relationship to identified cyber threats for security monitoring and risk assessment purposes. |
||||||
| Ransomware | The Salvation Army id32834 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within the threat-intelligence index under the listing type ransomware victim. This entry is associated with threat actor interlock, contributing contextual intelligence for defenders assessing organizational exposure and attack patterns within non-profit and association environments. The description remains factual and neutral, focusing on the entity's classification, sector context, geographic location, and verified association with the specified threat actor without elaborating on unconfirmed incident details. This catalog entry supports comprehensive threat monitoring and risk assessment workflows. |
||||||
| Ransomware | The Salvation Army id32834 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and Associations sector based in the United States, providing organizational services and advocacy functions typical of non-profit and association entities. As cataloged in the threat-intelligence index, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context surrounding the organization's exposure to this threat actor's activity without disclosing unverified incident specifics such as data exfiltration details, ransom demands, or confirmed breach metrics. This entry serves to inform stakeholders of the entity's status within the ransomware victim classification and its connection to interlock for threat-aware analysis and risk assessment. |
||||||
| Ransomware | The Salvation Army id32834 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident linked to the threat actor interlock. This listing type identifies salvationarmy.org as a ransomware victim within the threat-intelligence index, reflecting the security event and associated adversary context documented for catalog purposes. The description remains neutral, focusing on the entity's sector, geographic location, and verified association with the interlock actor without disclosing unconfirmed incident details such as data exfiltration specifics or financial impact. |
||||||
| Ransomware | The Salvation Army id32834 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is associated with the NGO and associations sector and operates within the United States. The entity is represented in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. Catalog entry provides context for assessing organizational exposure, sector-specific risk patterns, and intelligence linkage relevant to cybersecurity monitoring and incident response frameworks. This description avoids inventing unverified incident details such as data scope, breach confirmation, ransom terms, or specific operational impact. It neutrally states that salvationarmy.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32834 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational support. As a ransomware victim, the entity has been documented within this threat-intelligence index in connection with threat actor interlock. The listing reflects the cybersecurity context surrounding this organization without disclosing unverified incident details such as data exfiltration specifics, ransom demands, or breach confirmation. This entry serves to catalog the entity’s profile alongside its associated threat actor for threat-researchers and defenders. The description maintains neutrality and avoids speculative claims regarding the nature or scope of the incident. |
||||||
| Ransomware | The Salvation Army id32835 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing services and resources aligned with its organizational mission. The entity is cataloged in this threat-intelligence index as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the cybersecurity context in which the organization was impacted, documented neutrally for analytical reference. No specific incident details such as data stolen, ransom demands, or breach confirmation are included, per strict factual constraints. The entry serves to index the relationship between the entity, its sector, location, listing type, and threat actor association. |
||||||
| Ransomware | The Salvation Army id32835 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit or association-oriented organization, with public web presence under its domain name. In the threat-intelligence index catalog, salvationarmy.org is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's relationship to this cyber threat profile without confirming specific incident details such as stolen data, ransom demands, or breach scope. This entry provides neutral context for monitoring organizational exposure, sector-wide risk patterns, and the interlock actor's targeting or impact profile. |
||||||
| Ransomware | The Salvation Army id32836 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware event, formally cataloged in this threat-intelligence index under the listing type ransomware victim. The incident is associated with threat actor interlock, which is documented alongside the entity for analytical and security intelligence purposes. This description maintains neutrality regarding confirmed technical details, avoiding speculation about data exfiltration, ransom demands, or specific breach metrics. The entry serves to inform defenders and analysts about the entity's exposure profile within the indexed threat landscape. |
||||||
| Ransomware | The Salvation Army id32836 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity is cataloged as a ransomware victim within this threat-intelligence index, with interlock identified as the associated threat actor or source. Its inclusion reflects the cybersecurity context surrounding its organization, emphasizing sector vulnerability and the specific threat actor connection documented in the index. This listing provides neutral, encyclopedic context for threat researchers, defenders, and security analysts monitoring ransomware activity across non-profit and association sectors in the US. The entry does not confirm stolen data, record counts, ransom amounts, or specific breach details, maintaining factual and objective reporting standards. |
||||||
| Ransomware | The Salvation Army id32837 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and community-focused offerings. As a ransomware victim entity, it is documented within this threat-intelligence index due to its association with the threat actor interlock. The listing reflects the entity's status within cybersecurity threat reporting rather than disclosing specific incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics. This catalog entry serves to inform defenders and analysts about affected organizations in critical sectors like non-profit and association work, highlighting exposure risks from coordinated cyber threats. The record remains neutral, noting only the factual linkage to interlock as the associated threat actor. |
||||||
| Ransomware | The Salvation Army id32838 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-facing offerings aligned with its mission and sector identity. Within the threat-intelligence index catalog, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context in which the organization was identified, emphasizing its role in the incident profile without disclosing unverified details such as data stolen, ransom demands, or specific breach metrics. This neutral description serves catalog purposes by accurately contextualizing the entity's sector, geographic location, listing classification, and associated threat actor for analytical and informational use. |
||||||
| Ransomware | The Salvation Army id32841 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is situated in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident linked to the interlock threat actor group. This listing type identifies the entity as a ransomware victim within our threat-intelligence catalog, reflecting observed security event associations. Details regarding specific attack vectors, data handling practices, or recovery outcomes remain limited to verified intelligence sources. The entry provides contextual awareness for stakeholders monitoring threats against non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32842 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence in the United States. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented in the threat-intelligence index. This listing type identifies the entity as a ransomware victim associated with the threat actor interlock. The entry provides neutral context regarding the organization's sector, geographic location, and its classification within cybersecurity threat reporting. It neutrally states it was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32842 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity represents a non-profit or association organization whose infrastructure was identified within threat-intelligence records as a ransomware victim. Its inclusion reflects an assessed security event tied to the threat actor interlock, a group documented in cyber threat intelligence contexts. This listing type categorizes salvationarmy.org specifically as a ransomware victim associated with interlock, providing context for threat analysts tracking organizational impacts. The description maintains neutrality regarding confirmed breach details, avoiding speculation on data exfiltration, financial demands, or specific incident timelines. |
||||||
| Ransomware | The Salvation Army id32842 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational services and public-interest coordination. As a ransomware victim entity, it is documented within this threat-intelligence index due to its association with the interlock threat actor. The listing reflects the entity's status in cybersecurity incident records, emphasizing sector exposure and geographic context without disclosing unverified technical or operational details. This catalog entry supports researchers and defenders in understanding ransomware patterns affecting non-profit and association infrastructure in the US. |
||||||
| Ransomware | The Salvation Army id32842 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit organization focused on humanitarian and association-related initiatives, with its digital infrastructure potentially targeted by cyber threats. In the threat-intelligence catalog, salvationarmy.org is formally categorized as a ransomware victim linked to the interlock threat actor group. This listing reflects its documented association with interlock within our intelligence framework without disclosing unverified incident details such as data exfiltration scope, ransom demands, or specific breach timelines. The record serves to contextualize organizational exposure within cyber threat landscapes affecting non-commercial entities. |
||||||
| Ransomware | The Salvation Army id32842 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational context linked to the United States. The entity functions as a victim organization within the threat-intelligence index catalog, where it is formally categorized as a ransomware victim associated with the threat actor interlock. This listing reflects the organization's documented relationship with the identified cyber threat actor in intelligence records. The description adheres to neutral, authoritative reporting standards without speculating on unconfirmed incident details such as data exfiltration scope, ransom demands, or specific breach timelines. |
||||||
| Ransomware | The Salvation Army id32844 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit organization focused on advocacy and association activities, with its public identity centered on mission-driven work. Within the threat-intelligence index, it is cataloged specifically as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's documented association with this actor within cybersecurity threat records, without disclosing unverified incident details such as data exfiltration specifics or financial impact. The entry serves to contextualize the organization within broader ransomware incident landscapes affecting non-profit sectors. |
||||||
| Ransomware | The Salvation Army id32844 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector support functions. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the cybersecurity relationship between the organization and the identified threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific operational impact. This entry serves threat analysts and defenders by contextualizing the entity within the ransomware incident landscape and the interlock threat actor profile. The description adheres to neutral, encyclopedic standards for catalog documentation. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence in the United States. The domain represents an organization whose infrastructure was impacted by malicious activity linked to the interlock threat actor. As cataloged in this premium threat-intelligence index, salvationarmy.org is formally categorized as a ransomware victim connected to interlock. This entry provides neutral context regarding the entity's sector, geographic location, and its association with the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector in the United States, providing organizational services and public-facing offerings for its membership and partner community. As a ransomware victim indexed in this threat-intelligence catalog, the entity is associated with the threat actor interlock. The listing type identifies this organization as a victim of ransomware activity, contributing contextual intelligence for defenders monitoring NGO and association sectors against coordinated cyber threats. This description maintains factual neutrality regarding the incident specifics while documenting the entity's sector, geographic location, and verified association with the interlock threat actor. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services aligned with non-profit and association frameworks. As cataloged in this threat-intelligence index, the entity is designated as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion within incident records tied to this specific adversary group, highlighting exposure within digital security contexts relevant to vulnerable organizational sectors. This description maintains neutrality regarding unconfirmed incident details while documenting the verified association and sector classification. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is associated with the United States. The entity is cataloged as a ransomware victim connected to the threat actor interlock, reflecting its inclusion in threat-intelligence records for cybersecurity monitoring and sector risk awareness. The listing provides a neutral overview of the entity’s classification without disclosing unconfirmed incident details, operational specifics, or unverified claims regarding attacker activity. This description aligns with the objective of documenting ransomware victim profiles within a threat-intelligence index for researchers, defenders, and sector stakeholders. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity linked to the interlock threat actor. This listing type identifies the entity as a ransomware victim within the threat-intelligence index. The description reflects the association between the organization, its sector and geographic location, and the specific threat actor connection without detailing unverified incident specifics. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity provides public-facing organizational resources and serves association communities, though specific operational details remain limited in publicly available threat intelligence records. As cataloged in this threat-intelligence index, the listing identifies salvationarmy.org as a ransomware victim associated with the threat actor interlock. This classification reflects the entity's documented relationship to the identified threat actor within the ransomware incident context. The entry serves to inform security professionals and stakeholders regarding affected organizations in critical non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational support and programmatic services. As a ransomware victim entity, it is cataloged within this threat-intelligence index due to its association with threat actor interlock. The listing reflects observed threat-intelligence linkages without disclosing confirmed breach details, stolen data types, or operational specifics. This entry serves catalog and analytical purposes for monitoring security posture and threat actor impact across non-profit and association sectors. |
||||||
| Ransomware | The Salvation Army id32845 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The domain represents an organization whose infrastructure and operational activities are cataloged within a threat-intelligence index as a ransomware victim. Its inclusion reflects its relationship to the threat actor interlock, a source associated with ransomware activity targeting similar organizational sectors. The description avoids speculative claims regarding specific stolen data, record counts, ransom demands, or confirmed breach details, focusing instead on the entity's classification, sector, geographic context, and threat association. This listing provides neutral, authoritative catalog information for analysts monitoring ransomware incidents affecting non-profit and association-based organizations. |
||||||
| Ransomware | The Salvation Army id32846 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States as an NGO and associations sector organization, providing its sector-specific services and community-focused offerings. This entity has been cataloged within our threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking this organization to malicious activity attributed to interlock. This entry contributes to broader monitoring of ransomware impacts across non-profit and association sectors in the US. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32851 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The domain name and organizational context indicate a mission-oriented entity serving association or nonprofit functions, though specific operational details remain limited in the provided intelligence profile. This listing identifies salvationarmy.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The entry provides neutral catalog context for researchers, defenders, and security teams monitoring affected organizations across vulnerable sectors. No incident specifics, breach confirmations, stolen data details, or financial claims are included in this description. |
||||||
| Ransomware | The Salvation Army id32864 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector from the United States, providing organizational services and public-interest offerings. As cataloged in the threat-intelligence index under the ransomware victim listing type, it is associated with the threat actor interlock. The entity description focuses on its sector, geographic context, and verified association within the intelligence dataset without disclosing unconfirmed incident details. This entry supports threat-aware cataloging for security professionals monitoring ransomware activity across non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32864 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States. The entity represents an organization whose infrastructure was impacted by a ransomware incident, formally cataloged as a ransomware victim within the threat-intelligence index. The associated threat actor identified for this listing is interlock, which contextualizes the cyber threat profile linked to the affected organization. This description maintains neutrality regarding specific incident details, as confirmed facts regarding breach scope, data exfiltration, or financial impact are not provided here. The entry serves to document the relationship between the organization, its sector and geographic location, and the threat actor responsible in the intelligence record. |
||||||
| Ransomware | The Salvation Army id32865 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org is an entity operating within the NGO and associations sector, located in the United States. The domain and organization are cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This entry documents the entity's relationship to the observed threat context without disclosing confirmed breach details, stolen data categories, record counts, ransom terms, or unverified claims. The description maintains a neutral, encyclopedic tone and references the entity, sector, country, listing classification, and threat actor for catalog and analytical use. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational presence linked to the United States. The entity functions as a digital organization providing mission-driven services and public-sector collaborations within its domain. It has been formally cataloged within this threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. This listing reflects verified intelligence concerning the entity's security posture and incident classification without disclosing unconfirmed technical or operational details of any potential compromise. The record serves to inform stakeholders about the relationship between this organization and identified cyber threats. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector collaboration frameworks. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The entry documents the organizational context and security implications without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This neutral record supports researchers and defenders in understanding ransomware targeting entities within non-profit and association sectors in the US. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity functions as a non-profit organization focused on its designated sector activities and community engagement. It has been formally cataloged in this threat-intelligence index under the ransomware victim listing type, with interlock identified as the associated threat actor or source. This entry documents the organizational context and security incident classification without disclosing unverified technical details or confirmed breach specifics. The listing serves to inform stakeholders about the entity's exposure profile within the indexed threat landscape. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector and is located in the United States. The entity represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The listing type identifies it specifically as a ransomware victim associated with the threat actor interlock. This entry provides neutral context regarding the organization's sector, geographic location, and its documented relationship to the identified cyber threat actor. The information reflects the index's classification without elaborating on unverified technical details or incident specifics. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org is an organization operating within the NGO and associations sector, based in the United States. Its presence in this threat-intelligence index is categorized as a ransomware victim, with interlock identified as the associated threat actor or source. The entity represents an organization that may have experienced cybersecurity compromise within the broader context of ransomware activity targeting non-profit and association sectors. This listing provides neutral catalog context for researchers, defenders, and stakeholders monitoring threat actor relationships and victim profiles across sectors and geographies. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing mission-driven services and organizational support to its community. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type reflects documented exposure to ransomware activity within its operational context. The entry serves to inform stakeholders about organizational vulnerability patterns and threat actor relationships relevant to non-profit and association sectors in the US. No specific incident details, such as data stolen or ransom demands, are included per strict factual reporting guidelines. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector, with operational context linked to the United States. The domain represents an organization whose security posture and digital infrastructure were assessed within a threat-intelligence index as a ransomware victim. This listing type indicates documented association with interlock, a threat actor identified in cyber threat intelligence records. The entry provides neutral catalog context for monitoring entity exposure, sector vulnerability, and attacker attribution without disclosing unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id32867 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and community-focused offerings. As a ransomware victim entity in the threat-intelligence index, it is documented in relation to the threat actor interlock. The listing type identifies this organization as having experienced ransomware-related activity within the indexed threat landscape. This description maintains neutral, encyclopedic tone per catalog standards, focusing on sector, location, and the verified association with interlock without extrapolating unconfirmed incident details. The entry serves threat analysts and security professionals seeking contextual intelligence on affected entities. |
||||||
| Ransomware | The Salvation Army id32883 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the United States NGO and associations sector, providing organizational services and public-facing offerings aligned with non-profit and association frameworks. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The description maintains neutrality regarding specific incident details, avoiding assertions about confirmed breach scope, data stolen, or operational impact based solely on available index metadata. This entry serves to document the entity's sector, geographic context, and its recognized association with interlock within ransomware victim intelligence records. |
||||||
| Ransomware | The Salvation Army id33075 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is associated with the US. The entity functions as a non-profit organization providing mission-driven services, likely focused on humanitarian or community support initiatives. It has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing reflects the entity's status in relation to cybersecurity incidents and does not specify confirmed breach details, data stolen, or operational impact. The record serves to document the relationship between this organization, its sector context, and the identified threat actor for analytical and indexing purposes. |
||||||
| Ransomware | The Salvation Army id33076 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-sector support functions. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context in which salvationarmy.org was identified, emphasizing its sector, geographic presence, and the threat actor connection without disclosing unverified incident details. This entry serves to document the relationship between the organization and the specified cyber threat actor within the ransomware victim category. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is located in the United States. The entity provides mission-oriented support and coordination services aligned with its organizational sector. It has been indexed as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's presence within the threat-intelligence catalog based on verified intelligence linkages. No specific incident details, data impacts, or confirmed breach specifics are included here, consistent with neutral catalog reporting standards. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is situated in the United States. The domain represents an organization whose infrastructure was impacted by ransomware activity linked to the threat actor interlock. This listing type identifies salvationarmy.org as a ransomware victim within the threat-intelligence index, reflecting its exposure to cyber incidents targeting non-profit and association entities. The catalog entry provides neutral context regarding the entity's sector, geographic location, and association with interlock for threat-researchers and security professionals monitoring organizational impacts. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector, with operational presence associated with the United States. The entity functions as a non-profit or association organization focused on its designated mission area, and its inclusion in this threat-intelligence index reflects its status as a ransomware victim connected to the interlock threat actor. This listing contributes contextual data for analysts tracking cyber incidents across vulnerable sectors, emphasizing organizational resilience and threat attribution within public and association infrastructures. The description remains factual and neutral, documenting the entity's classification without speculating on unverified incident details, data impacts, or recovery outcomes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the United States NGO and associations sector, providing mission-oriented organizational services and public-interest coordination. As cataloged in threat-intelligence indexes, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects its documented relationship within cybersecurity intelligence records without confirming specific intrusion details, data exfiltration scope, or operational impact. The entry serves as a reference point for monitoring ransomware exposure patterns affecting non-profit and association-sector organizations in the US. Neutral treatment ensures factual alignment with available intelligence sources. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is headquartered in the United States. The entity provides mission-driven organizational services consistent with its sector profile. In the threat-intelligence index, salvationarmy.org is formally listed as a ransomware victim associated with threat actor interlock. This classification reflects the entity's documented relationship to interlock within the ransomware incident catalog. The entry serves to contextualize the organization's exposure within the broader cyber threat landscape without disclosing unverified incident details. |
||||||
| Ransomware | The Salvation Army id33077 View details | United States | NGOs / Associations | — | ||
|
salvationarmy.org operates within the NGO and associations sector and is headquartered in the United States. The entity provides mission-driven organizational services consistent with its sector profile. In the threat-intelligence index, salvationarmy.org is formally listed as a ransomware victim associated with threat actor interlock. This classification reflects the entity's documented relationship to interlock within the ransomware incident catalog. The entry serves to contextualize the organization's exposure within the broader cyber threat landscape without disclosing unverified incident details. |
||||||
| Ransomware | The Salvation Army id32874 View details | United States | NGOs / Associations | — | ||
|
saladarmy.org operates within the NGO and associations sector based in the United States, providing organizational services and public-interest offerings. As cataloged in this threat-intelligence index, it is formally listed as a ransomware victim associated with the threat actor interlock. The entry reflects the entity's relationship to this specific cyber incident within the index's ransomware victim category. No additional incident details such as data stolen, records accessed, ransom demands, or breach confirmation are provided here, adhering to strict factual boundaries and neutrality in reporting. |
||||||
| Ransomware | The Salvation Army id32874 View details | United States | NGOs / Associations | — | ||
|
The Salvation Army, established in 1865, has been offering an array of social services that range from providing food for the hungry, relief for disaster victims, assistance for the disabled, outreach to the elderly and ill, clothing and shelter to the homeless and opportunities for underprivileged children. |
||||||
| Ransomware | Swartz Campbell id25006 View details | United States | Services | — | ||
|
Swartz Campbell LLC is a law firm with multiple locations across the East Coast specializing in areas including class action, employment, medical malpractice, and divorce. The law firm was founded in 1921 and is headquartered in Philadelphia, Pennsylvania. |
||||||
| Ransomware | Swartz Campbell id32544 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is headquartered in the United States. The entity provides professional and business-oriented services, though specific service offerings remain undisclosed in publicly available threat-intelligence records. According to the threat-intelligence index, this organization was cataloged as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between the entity and the associated cyber threat without confirming specific incident details such as data exfiltration scope, ransom demands, or breach confirmation. This entry serves to inform security analysts and defenders about potential attack pathways and victim profiles within the Services sector landscape. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32544 View details | United States | Services | — | ||
|
Swartz Campbell LLC is a law firm with multiple locations across the East Coast specializing in areas including class action, employment, medical malpractice, and divorce. The law firm was founded in 1921 and is headquartered in Philadelphia, Pennsylvania. |
||||||
| Ransomware | Swartz Campbell id32650 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is based in the United States. The entity functions as a commercial organization offering services, though specific service offerings are not detailed in public threat-intelligence records. Within the threat-intelligence index, this listing type identifies SwartzCampbell.com as a ransomware victim associated with the threat actor interlock. The entry provides neutral context for cybersecurity analysts monitoring ransomware incidents across sectors and geographies. No confirmed breach details, data exfiltration specifics, or financial impact are included per strict factual constraints. This description supports catalog integrity while maintaining encyclopedic neutrality regarding the incident association. |
||||||
| Ransomware | Swartz Campbell id32651 View details | United States | Services | — | ||
|
swartzcampbell.com operates within the Services sector based in the United States and provides professional services. It has been documented within a threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat activity, contributing to broader awareness of ransomware patterns in the services industry. The catalog entry remains neutral, focusing solely on the verified association without disclosing unconfirmed incident details. Such entries support threat analysts and organizations in identifying risks and strengthening defensive postures. |
||||||
| Ransomware | Swartz Campbell id32651 View details | United States | Services | — | ||
|
Swartz Campbell is a United States-based services sector entity cataloged within this threat-intelligence index under the ransomware victim listing type. The domain https;www.swartzcampbell.com represents an organization operating within professional services, with operational context aligned to the US region and Services industry classification. Within threat intelligence records, this entity is documented as a ransomware victim associated with the interlock threat actor. This listing type identifies the relationship between the organization and the specified malicious actor without disclosing unverified incident details. The catalog entry serves to index verified threat-intelligence linkages for analytical and defensive reference purposes. |
||||||
| Ransomware | Swartz Campbell id32652 View details | United States | Services | — | ||
|
SwartzCampbell.com is a United States-based entity operating within the Services sector, identified within the threat-intelligence index as a ransomware victim. The domain represents an organization that experienced cybersecurity compromise, with its incident cataloged under the threat actor interlock. This listing type documents the entity's status as affected by ransomware activity, providing context for threat analysts tracking service-sector incidents across the US. The description maintains neutrality regarding unconfirmed specifics, focusing solely on the verified classification within the intelligence index. Such entries support comprehensive monitoring of ransomware impacts within targeted sectors and geographic regions. |
||||||
| Ransomware | Swartz Campbell id32656 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional services and digital solutions. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects the organization's documented relationship with the identified cyber threat actor for analytical and security intelligence purposes. The description remains neutral, focusing on the entity's classification, geographic context, sector relevance, and the verified association with interlock without disclosing unconfirmed incident details. |
||||||
| Ransomware | Swartz Campbell id32656 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is based in the United States. The entity represents a ransomware victim entry within a threat-intelligence index, linked to the interlock threat actor profile. This listing type documents the association between the organization and interlock without disclosing unverified incident details. The description adheres to neutral, authoritative standards for cataloging cybersecurity events, focusing on verified entity attributes, sector classification, geographic origin, and the confirmed threat actor association as reported in the index. |
||||||
| Ransomware | Swartz Campbell id32664 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is located in the United States. The entity provides professional services and maintains an online presence, with its profile included in a threat-intelligence index as a ransomware victim. The listing is associated with the threat actor interlock, reflecting its documented relationship within cybersecurity threat intelligence records. This entry serves to inform stakeholders about entities impacted by ransomware activity and their connections to identified threat actors. All details are presented neutrally based on established threat-intelligence indexing practices. |
||||||
| Ransomware | Swartz Campbell id32666 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and technical services to clients. As a ransomware victim entity, it appears in threat-intelligence indexes documenting cyber incidents and associated threat actor activity. The listing explicitly ties this entity to the interlock threat actor within the ransomware victim classification. This entry serves catalog purposes for threat analysts tracking attack patterns, victim profiles, and actor relationships across the Services sector in the US. The description remains factual and neutral regarding the nature of the cybersecurity event. |
||||||
| Ransomware | Swartz Campbell id32666 View details | United States | Services | — | ||
|
https;www.swartzcampbell.com operates within the Services sector based in the United States, providing professional services and digital offerings to clients and partners. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This classification reflects the security context surrounding the entity's inclusion without disclosing unverified incident details. The record serves as part of a broader monitoring framework for identifying and contextualizing ransomware-related incidents across sectors and geographies. It neutrally states that swartzcampbell.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32667 View details | United States | Services | — | ||
|
SwartzCampbell.com is a United States-based Services sector organization cataloged as a ransomware victim within the threat-intelligence index. The entity operates within professional services and is documented in relation to the threat actor interlock, reflecting its inclusion in cybersecurity threat reporting. This listing type indicates the entity was identified as a victim of ransomware activity linked to interlock, providing context for threat analysts tracking service-sector impacts. The description remains factual and neutral, focusing on the entity's sector, geographic location, listing classification, and associated threat actor without speculating on unconfirmed technical details. This entry supports comprehensive monitoring of ransomware campaigns targeting Services sector organizations in the United States. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional services and digital solutions to clients. The entity is cataloged in this threat-intelligence index as a ransomware victim, with its association explicitly linked to the threat actor interlock. This listing reflects verified intelligence correlating the organization with interlock activity within the cybersecurity landscape. The description maintains factual neutrality regarding the nature and scope of the incident, adhering to strict disclosure protocols. It serves as a reference point for threat analysts monitoring ransomware patterns and actor footprints across service-oriented industries in the US. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is based in the United States, providing professional and related service offerings. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association explicitly linked to the threat actor interlock. This listing reflects the cybersecurity community's documentation of an organization impacted by ransomware activity, contextualized by its sector and geographic location. The entry serves as a reference point for threat actors, defenders, and analysts monitoring ransomware campaigns targeting service-oriented organizations in the US. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and commercial services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock is documented neutrally within the index records. This entry contributes contextual intelligence regarding cybersecurity incidents affecting service-oriented organizations in the US. The description adheres to factual reporting standards without speculating on unverified breach details. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is located in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source designated as interlock. The entry documents the relationship between the entity and the identified threat actor without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. This description provides neutral, authoritative context for researchers and defenders monitoring ransomware activity and associated actor footprints. The listing neutrally states that SwartzCampbell.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
swartzcampbell.com operates within the United States Services sector and represents a ransomware victim entry within the threat-intelligence index. The entity is cataloged with an associated threat actor identified as interlock, reflecting the attribution framework applied to this listing type. Publicly available information about the organization emphasizes its service-oriented positioning in the US market, while specific technical incident details, such as data accessed or recovery actions, are not disclosed by the entity itself. This description maintains neutrality regarding the ransomware context, focusing on the verified classification of the listing. The entry documents the association between swartzcampbell.com and the interlock attribution within the intelligence catalog. |
||||||
| Ransomware | Swartz Campbell id32670 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and business-oriented digital services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor identified as interlock. This designation reflects the cybersecurity context in which the organization was impacted, contributing valuable intelligence for threat monitoring and defense strategies. The entry remains strictly factual, focusing on the verified association without elaborating on unconfirmed technical details or incident specifics. It serves as a reference point for analysts tracking ransomware activity and affiliated threat actors across the Services sector. |
||||||
| Ransomware | Swartz Campbell id32671 View details | United States | Services | — | ||
|
swartzcampbell.com operates within the Services sector and is based in the United States, providing professional services under its domain identity. This entity is cataloged as a ransomware victim within the threat-intelligence index, with an associated threat actor identified as interlock. The listing type reflects the cybersecurity context in which the organization was impacted, documented neutrally for analytical and indexing purposes. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included to maintain factual accuracy and avoid speculation. This entry serves to inform stakeholders on the relationship between this Services sector company and the interlock threat actor within the ransomware victim classification. |
||||||
| Ransomware | Swartz Campbell id32671 View details | United States | Services | — | ||
|
SwartzCampbell.com is a website operating within the Services sector based in the United States. It is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The entity represents a service-oriented organization referenced within cybersecurity intelligence records concerning ransomware activity. This description maintains factual neutrality regarding the relationship to the identified threat actor without speculating on unconfirmed incident details. The listing reflects the entity's classification within the index based on verified threat-intelligence linkages. |
||||||
| Ransomware | Swartz Campbell id32674 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the United States Services sector, providing digital and professional services. This entity is cataloged in the threat-intelligence index under the designation ransomware victim, with an associated threat actor identified as Interlock. The listing reflects cybersecurity intelligence compiled regarding the entity's involvement in this threat context. All descriptions remain factual and neutral, focusing on the verified associations within the intelligence framework. This entry supports threat analysts in tracking ransomware incidents across service-oriented organizations. |
||||||
| Ransomware | Swartz Campbell id32674 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and business-oriented offerings relevant to enterprise contexts. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects observed cyber-threat intelligence data concerning this organization's association with interlock without disclosing unverified incident details. This entry supports security teams in understanding ransomware exposure patterns across the Services sector in the US. The description remains neutral, focusing solely on the verified indexing classification and contextual entity profile. |
||||||
| Ransomware | Swartz Campbell id32675 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and technical services to clients and partners. The entity is formally listed in the threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity context surrounding the organization's security posture and the threat landscape in which it operates. The catalog entry aims to provide neutral, factual context for defenders and analysts monitoring ransomware activity across service-oriented sectors in the US. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32675 View details | United States | Services | — | ||
|
Swartz Campbell is a services-sector business based in the United States offering professional services and operational support to clients within its domain. The entity https;www.swartzcampbell.com is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing type indicates a documented security incident where ransomware activity was observed or attributed to the organization, contextualized by its sector and geographic location. The description remains neutral regarding specific technical details, data impacts, or remediation outcomes, adhering strictly to verified index classifications. The association with interlock provides threat-context for analysts monitoring service-sector vulnerabilities in US environments. |
||||||
| Ransomware | Swartz Campbell id32676 View details | United States | Services | — | ||
|
Swartz Campbell is a United States-based Services sector organization documented within a threat-intelligence index under the ransomware victim listing type. The entity operates within the professional services domain and its inclusion reflects threat-intelligence analysis correlating its profile with the interlock threat actor group. This catalog entry provides neutral context regarding the association without disclosing unverified incident details such as breach confirmation, data exfiltration specifics, or ransom terms. The listing type identifies Swartz Campbell as a ransomware victim connected to interlock, serving as a reference point for cybersecurity professionals monitoring service-sector threats across the United States. |
||||||
| Ransomware | Swartz Campbell id32676 View details | United States | Services | — | ||
|
swartzcampbell.com operates within the Services sector and is situated in the United States. As a ransomware victim entry within a threat-intelligence index, this entity represents an organization documented in relation to the interlock threat actor. The listing type identifies swartzcampbell.com specifically as a ransomware victim linked to interlock, providing context for threat analysts tracking associated actors and impacted entities. This description adheres to neutral, encyclopedic standards without inventing details regarding breach specifics, data exposure, or resolution outcomes. The entity serves as a reference point in cybersecurity intelligence for understanding ransomware incidents tied to interlock activity. |
||||||
| Ransomware | Swartz Campbell id32681 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and maintains a presence based in the United States. The entity provides professional and technical services, aligning with the Services industry classification noted in the catalog. Within the threat-intelligence index, this listing type identifies SwartzCampbell.com as a ransomware victim associated with the threat actor Interlock. This designation reflects the cybersecurity context in which the entity was documented. The entry serves as part of a structured repository for monitoring ransomware incidents and their associated actors. |
||||||
| Ransomware | Swartz Campbell id32681 View details | United States | Services | — | ||
|
swartzcampbell.com is a United States-based entity operating within the Services sector, providing professional and technical services to clients. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry documents the relationship between this organization and the interlock threat actor without disclosing unverified incident details. This record serves threat analysts and security professionals seeking context on ransomware-related entities, sector exposure, geographic location, and linked threat actor activity. The classification reflects the entity's status as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32683 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector based in the United States, providing professional and technical services to clients. The entity is documented within our threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the inclusion of the organization in intelligence records tied to interlock's activity profile. The entry serves to inform security professionals and stakeholders about potential exposure contexts within the Services sector. It neutrally records that SwartzCampbell.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Swartz Campbell id32683 View details | United States | Services | — | ||
|
swartzcampbell.com operates within the Services sector based in the United States, providing professional services and digital solutions to clients. The entity is formally listed within the threat-intelligence index under the designation of ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity context in which the organization was identified within the intelligence database. The catalog entry documents the relationship between the entity, its operational sector and geographic location, and the specific threat actor connection without disclosing unverified incident details. This neutral description supports threat-intelligence research and awareness efforts. |
||||||
| Ransomware | Swartz Campbell id32684 View details | United States | Services | — | ||
|
SwartzCampbell.com is a services-sector organization based in the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This entry reflects the cybersecurity context surrounding the organization's inclusion in the catalog, emphasizing its sector, geographic location, and relationship to the specified threat actor without disclosing unverified incident details. The description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence documentation standards. |
||||||
| Ransomware | Swartz Campbell id32684 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is identified as a ransomware victim within a threat-intelligence index. The entity represents an organization in the United States whose security posture and operational profile are cataloged for threat-intelligence analysis. Its inclusion reflects documented association with the interlock threat actor, contributing to broader cybersecurity intelligence datasets. This description maintains factual neutrality regarding the entity's nature, sector, geographic context, and listed threat-intelligence classification without speculating on unconfirmed incident details. |
||||||
| Ransomware | Swartz Campbell id32685 View details | United States | Services | — | ||
|
SwartzCampbell.com operates within the Services sector and is based in the United States. The entity provides professional services and maintains an online presence focused on its sector-specific offerings and client engagements. As part of our premium threat-intelligence index, this listing identifies SwartzCampbell.com as a ransomware victim associated with the threat actor interlock. This designation contributes to comprehensive cybersecurity monitoring and contextualizes potential risk patterns within the Services industry landscape. The entry reflects verified intelligence linking the entity to this specific threat actor profile without disclosing unconfirmed incident details. |
||||||
| Ransomware | Swartz Campbell id32689 View details | United States | Services | — | ||
|
Swartz Campbell is a services-sector company based in the United States, operating within professional and commercial service offerings. This entity is cataloged as a ransomware victim within the threat-intelligence index, with its association specifically linked to the interlock threat actor. The listing type identifies the organization as having experienced ransomware-related activity, contextualized within the broader cyber threat landscape. The description reflects the indexed classification without confirming specific incident details such as breach scope or data compromised. This entry serves to document the verified relationship between Swartz Campbell and the interlock threat actor for threat-intelligence purposes. |
||||||
| Ransomware | Swartz Campbell id32689 View details | United States | Services | — | ||
|
https;www.swartzcampbell.com operates within the Services sector based in the United States, offering services relevant to threat intelligence and cybersecurity awareness. The entity is cataloged as a ransomware victim linked to the threat actor interlock, reflecting its inclusion in threat-intelligence indexing frameworks. This listing type indicates documented cybersecurity incident association, providing context for analysts tracking ransomware campaigns and associated actors. The description remains factual and neutral, focusing on the entity's classification, sector, geographic location, and verified threat-intelligence linkage without alleging specific breach details or unconfirmed claims. Such catalog entries support comprehensive monitoring of ransomware exposure and actor-related intelligence. |
||||||