Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 60 88.2%
- Pending 7 10.3%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 74 | Onion service | Up checked 6h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 72 | Onion service | Up checked 6h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 73 | Onion service | Up checked 6h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 71 | Onion service | Up checked 6h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 70 | Onion service | Up checked 6h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 69 | Onion service | Up checked 6h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 6h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 6h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 65 | Onion service | Up checked 6h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 6h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 61 | Onion service | Up checked 6h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 62 | Onion service | Up checked 6h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 60 | Onion service | Up checked 6h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 59 | Onion service | Up checked 6h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 58 | Onion service | Up checked 6h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 56 | Onion service | Up checked 6h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Up checked 6h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 6h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 45 | Onion service | Up checked 6h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 6h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 6h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 6h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 6h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 68 | Onion service | Down checked 6h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 64 | Onion service | Down checked 6h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 57 | Onion service | Down checked 6h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 53 | Onion service | Down checked 6h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 51 | Onion service | Down checked 6h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Down checked 6h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 49 | Onion service | Down checked 6h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 6h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 46 | Onion service | Down checked 6h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 47 | Onion service | Down checked 6h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 6h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 6h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 6h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 39 | Onion service | Down checked 6h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 40 | Onion service | Down checked 6h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 6h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 6h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 6h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 6h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 6h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 6h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 6h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 6h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 6h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 6h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 6h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 6h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 6h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 6h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 6h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 6h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 6h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 6h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 6h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 6h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 6h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 17 | Onion service | Down checked 6h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 6h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 16 | Onion service | Down checked 6h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 14 | Onion service | Down checked 6h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 13 | Onion service | Down checked 6h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 12 | Onion service | Down checked 6h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 6h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 6h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 6h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 6h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 6 | Onion service | Down checked 6h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 7 | Onion service | Down checked 6h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 4 | Onion service | Down checked 6h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 5 | Onion service | Down checked 6h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 3 | Onion service | Down checked 6h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 16801–16900 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions aligned with enterprise IT infrastructure and support needs. It is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects its inclusion within cybersecurity threat records concerning ransomware activity linked to interlock. The description maintains factual neutrality regarding the incident details, focusing solely on the entity's classification and contextual threat association. |
||||||
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions relevant to enterprise infrastructure and digital operations. Within our threat-intelligence index, intech-ind.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor within our monitored dataset. The entry serves as a reference point for security analysts tracking ransomware campaigns and their affected targets across sectors and geographies. |
||||||
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions aligned with its industry classification. Within the threat-intelligence index, intech-ind.com is cataloged specifically as a ransomware victim linked to the interlock threat actor. This listing reflects its documented association with this actor in the intelligence dataset. The description remains neutral, focusing solely on the entity's sector, location, and its designated status within the ransomware victim category tied to interlock. |
||||||
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States, providing technology-focused services and solutions. As part of our threat-intelligence index, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing reflects observed connections within cyber threat databases and serves to inform security teams monitoring adversary activity in the technology sector. This entry contributes contextual data for analysts assessing ransomware campaigns, victim profiles, and associated threat actor methodologies. The description remains neutral and factual, focusing solely on the indexed classification without elaborating on unverified incident details. |
||||||
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the information technology sector and is headquartered in the United States. The entity provides IT-focused services and solutions, though specific operational details remain limited in public threat-intelligence records. This listing categorizes intech-ind.com as a ransomware victim linked to the threat actor interlock. The association indicates exposure to ransomware activity within the IT sector context. This entry serves as a reference point in the threat-intelligence index for monitoring adversary connections and victim profiles. |
||||||
| Ransomware | In'Tech Industries id32908 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is associated with the US. The entity is represented in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The catalog entry documents the relationship between this organization, the cyber threat actor interlock, and the ransomware context without disclosing unverified incident details. This description provides neutral, authoritative context for researchers and defenders assessing threat exposure and entity associations. intech-ind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | In'Tech Industries id32949 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity is documented in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects observed threat-intelligence linkages relevant to cybersecurity risk assessment and incident tracking. No specific incident details, such as stolen data categories, record counts, ransom demands, or confirmed breach specifics, are included to maintain factual neutrality. The listing serves as a reference point for analysts monitoring ransomware activity and associated actor footprints across IT infrastructure. |
||||||
| Ransomware | In'Tech Industries id33116 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity represents a business organization whose infrastructure or data may have been targeted by cyber activity. Within this threat-intelligence index, it is categorized as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to this specific threat actor profile in aggregated cyber threat intelligence records. The description avoids speculative claims regarding breach details, data exposure, or operational impact, maintaining strict neutrality per catalog standards. |
||||||
| Ransomware | In'Tech Industries id33117 View details | United States | IT | — | ||
|
intech-ind.com operates within the information technology sector and is headquartered in the United States. The entity provides IT-focused services and solutions, though specific operational details remain limited in public threat-intelligence records. Within this threat-intelligence index, intech-ind.com is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with interlock in cybersecurity threat reporting and does not confirm specific breach details, data handling practices, or incident outcomes. The designation serves to document the relationship between this IT-sector organization and the identified threat actor for monitoring and risk-assessment purposes. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the information technology sector and is headquartered in the United States. The entity provides IT-focused services or infrastructure, positioning it within a sector frequently targeted by cyber threats. Within the threat-intelligence index, intech-ind.com is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to this specific ransomware campaign without disclosing unverified incident details. The entry serves to inform security professionals and analysts about affected organizations and associated threat actor activity. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the United States IT sector, providing technology-focused services and solutions for enterprise and organizational needs. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event correlations and intelligence linkages without disclosing confirmed breach details, data exfiltration specifics, or operational impact metrics. This entry serves catalog and analytical purposes for threat-aware stakeholders monitoring cyber incidents across sectors and geographies. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the US-based IT sector, providing technology services and solutions to clients requiring robust infrastructure and cybersecurity support. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This association indicates a documented security incident classification relevant to cyber threat monitoring and intelligence analysis. The entry reflects the entity's role within the broader landscape of ransomware activity targeting IT organizations in the United States. All details regarding the specific incident remain confined to verified intelligence sources to maintain factual accuracy and neutrality. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is located in the United States. The entity functions as an information technology organization, providing relevant digital services or infrastructure within its geographic and sectoral context. Within the threat-intelligence index, intech-ind.com is cataloged specifically as a ransomware victim linked to the threat actor interlock. This classification reflects its documented association with this actor in intelligence records. The description remains factual and neutral, focusing on the entity's sector, location, and its designated listing type without elaborating on unverified incident details. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector based in the United States, providing technology-focused services and solutions. As a ransomware victim entity indexed in the threat-intelligence catalog, it is formally associated with the threat actor interlock. This listing reflects the entity's documented involvement within cybersecurity threat intelligence records, highlighting its status as a compromised organization linked to interlock's activity. The description maintains neutrality regarding specific incident details, focusing on the verified association and sector classification for analytical and cataloging purposes. |
||||||
| Ransomware | In'Tech Industries id33118 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector based in the United States, providing technology-focused services and solutions. As a ransomware victim entity indexed in the threat-intelligence catalog, it is formally associated with the threat actor interlock. This listing reflects the entity's documented involvement within cybersecurity threat intelligence records, highlighting its status as a compromised organization linked to interlock's activity. The description maintains neutrality regarding specific incident details, focusing on the verified association and sector classification for analytical and cataloging purposes. |
||||||
| Ransomware | In'Tech Industries id32915 View details | United States | IT | — | ||
|
intech-ind.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions catering to enterprise and organizational needs across digital infrastructure and support domains. Within our threat-intelligence index, intech-ind.com is formally cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects verified intelligence concerning the entity's association with this specific cyber threat actor, contributing to broader awareness of ransomware activity within the IT sector. The entry supports security teams in monitoring adversary-targeted environments and strengthening defensive postures. |
||||||
| Ransomware | In'Tech Industries id32915 View details | United States | IT | — | ||
|
InTech Industries, Inc. specializes in full-service manufacturing, offering services such as 3D printing, design, tooling, injection molding, and precision CNC machining. They serve a wide range of industries, including life sciences, medical devices, dental, and personal safety. Their clients include businesses in a variety of sectors, such as pharmaceuticals, home care devices, and the optical industry. |
||||||
| Ransomware | Kettering Health id20434 View details | United States | Healthcare / Pharma | — | ||
|
Kettering Health - is an organization headquartered in Kettering, Ohio, that operates hospitals, freestanding acute care facilities, clinics, and Kettering College. Kettering Health serves residents of Greater Dayton and surrounding communities. It includes nine hospitals, 12 freestanding acute care facilities, 188 clinics, more than 1,900 physicians, and more than 14,000 employees. |
||||||
| Ransomware | Kettering Health id32585 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and organizational functions aligned with medical care delivery. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim linked to the interlock threat actor. This listing type indicates documented exposure or impact associated with malicious cyber activity targeting healthcare infrastructure. The description remains neutral and avoids speculation regarding specific breach details, data handling, or operational consequences. The entry serves to contextualize ketteringhealth.org within broader ransomware incident tracking for sector-focused threat intelligence. |
||||||
| Ransomware | Kettering Health id32585 View details | United States | Healthcare / Pharma | — | ||
|
Kettering Health - is an organization headquartered in Kettering, Ohio, that operates hospitals, freestanding acute care facilities, clinics, and Kettering College. Kettering Health serves residents of Greater Dayton and surrounding communities. It includes nine hospitals, 12 freestanding acute care facilities, 188 clinics, more than 1,900 physicians, and more than 14,000 employees. |
||||||
| Ransomware | Kettering Health id32691 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented in relation to the threat actor interlock. The listing type reflects an incident where ransomware activity was associated with this organization, without disclosing unconfirmed details such as data stolen, records impacted, ransom demands, or specific breach timelines. This entry serves as a neutral reference point for cybersecurity researchers, defenders, and stakeholders monitoring healthcare sector threats and affiliated threat actors. The description adheres to factual, encyclopedic standards and avoids speculative claims beyond the verified association with interlock. |
||||||
| Ransomware | Kettering Health id32692 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the healthcare and medicine sector based in the United States, providing healthcare-related services and infrastructure. It is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the entity's inclusion in records correlating healthcare organizations to specific cyber threats. The description remains neutral regarding incident details, avoiding speculation on data exposure, operational impact, or resolution specifics. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32692 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As part of our threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity context and does not confirm specific incident details, data exfiltration, or operational impact. This entry supports security professionals in tracking ransomware exposure across critical healthcare infrastructure and identifying correlated threat actor behavior. |
||||||
| Ransomware | Kettering Health id32693 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing health-related services and digital infrastructure. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects cybersecurity intelligence regarding an incident affecting this organization within the healthcare domain. No specific incident details, such as stolen data volumes or ransom terms, are included per strict factual guidelines. The designation underscores the critical need for healthcare sector vigilance against evolving cyber threats. |
||||||
| Ransomware | Kettering Health id32697 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and organizational functions. This entity is documented in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The catalog entry reflects cybersecurity intelligence findings concerning this organization's exposure to ransomware activity without disclosing unverified incident details. The description maintains neutrality regarding specific breach characteristics, data impacts, or recovery outcomes. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32697 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within records documenting cybersecurity incidents affecting healthcare organizations. The entry emphasizes the sector context and the specific threat actor connection without disclosing unverified details regarding data loss, ransom demands, or breach specifics. Neutral documentation supports threat-aware assessment and industry risk monitoring. |
||||||
| Ransomware | Kettering Health id32705 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing health-related services and digital infrastructure. As cataloged in this threat-intelligence index, it is listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents targeting healthcare organizations. The entry remains neutral, focusing on the entity's sector context and its association with the specified threat actor without disclosing unverified incident details. Such listings support threat-intelligence analysis for sector-specific risk awareness and defense planning. |
||||||
| Ransomware | Kettering Health id32707 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with patient care, clinical operations, and health-system functions. As a designated ransomware victim in this threat-intelligence index, the entity is documented in connection with the threat actor interlock. The listing type identifies ketteringhealth.org as a ransomware incident victim linked to interlock within the catalog. This entry contributes contextual intelligence regarding healthcare sector exposure to cyber threats, supporting defenders and analysts monitoring targeted environments. The description remains factual and neutral, reflecting the indexed association without speculating on unconfirmed details such as data exfiltration, ransom demands, or specific breach timelines. |
||||||
| Ransomware | Kettering Health id32707 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, it is listed as a ransomware victim associated with threat actor interlock. This designation reflects the entity's inclusion in cybersecurity intelligence records documenting ransomware incidents and linked adversary activity. The entry provides neutral context for monitoring threat patterns within critical healthcare infrastructure. No specific incident details, such as data stolen, records compromised, ransom amounts, or confirmed breach specifics, are included per strict factual guidelines. |
||||||
| Ransomware | Kettering Health id32708 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing services aligned with patient care, health administration, and medical services delivery. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented alongside threat actor interlock for analytical and defensive reference. This listing reflects the association between ketteringhealth.org and interlock within the ransomware incident context, without disclosing unverified details such as data scope, breach confirmation, ransom terms, or operational impact. The entry supports threat-aware monitoring and context for security professionals assessing healthcare-sector exposure. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. The entity is documented in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects observed connections between the organization and the identified threat actor within cybersecurity intelligence records. The description remains neutral and avoids speculation regarding breach details, data impacts, or remediation specifics. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients and stakeholders. As documented in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor Interlock. The entry reflects the cybersecurity context surrounding the incident without disclosing unconfirmed specifics such as data stolen, record counts, ransom demands, or technical exploit details. This catalog description serves to inform analysts and defenders about the entity's sector profile, geographic location, and its classification alongside Interlock within ransomware threat intelligence records. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing digital health services and healthcare-related offerings to patients and stakeholders. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The entry documents the cybersecurity incident classification without disclosing unverified breach details such as data stolen, records impacted, ransom demands, or confirmed loss metrics. The classification reflects the organization's status as a healthcare entity affected by ransomware activity attributable to interlock, contextualized within its sector and geographic location. This neutral record supports threat-index analysis while maintaining factual restraint on unconfirmed incident specifics. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure relevant to patient care, clinical operations, and organizational systems. As cataloged in the threat-intelligence index under the listing type ransomware victim, the entity is associated with threat actor interlock. This designation contributes to ongoing cyber-threat analysis and defensive intelligence tracking across healthcare environments. The description remains factual and neutral, focusing on sector context, geographic location, and the verified association without speculating on breach details, data impacts, or operational outcomes. The entity's inclusion supports monitoring of ransomware activity affecting healthcare organizations in the US. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and organizational functions aligned with medical delivery and patient care infrastructure. As a healthcare entity, it represents a high-value target category where ransomware incidents can disrupt clinical operations, patient services, and institutional continuity. This listing categorizes ketteringhealth.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The entry reflects the association between the entity and the identified threat actor without asserting unverified details regarding data exfiltration, ransom demands, operational impact, or breach confirmation. This designation supports cyber-threat-intelligence cataloging for monitoring healthcare sector exposure and identifying correlated attacker activity. |
||||||
| Ransomware | Kettering Health id32711 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing digital health services and patient-related offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This classification reflects documented threat-intelligence linkages without confirming specific incident details such as data stolen, records impacted, ransom demands, or breach validation. The entry serves cybersecurity teams, healthcare defenders, and compliance stakeholders seeking to understand ransomware exposure patterns within critical medical infrastructure. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32712 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with clinical, administrative, and patient-facing healthcare functions. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity event context in which the organization was impacted, without disclosing unverified technical details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. The entry serves to catalog real-world healthcare infrastructure exposure to advanced persistent threat activity, supporting defenders and compliance teams in understanding sector-specific ransomware risks. All information adheres to a neutral, encyclopedic tone consistent with threat intelligence documentation standards. |
||||||
| Ransomware | Kettering Health id32712 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, it is associated with the threat actor interlock. The listing type identifies the entity's role in a cybersecurity incident, reflecting observed threat activity targeting healthcare systems. This entry serves as a factual reference point for defenders assessing risks within the healthcare sector. The record neutrally states that ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32715 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with threat actor interlock. This listing reflects observed threat-intelligence correlation without confirming specific breach details, data exfiltration scope, or operational impact. The record serves to document the relationship between the healthcare entity and the identified threat actor within the index framework. Neutral documentation supports security awareness and risk assessment for sector-relevant defenders. |
||||||
| Ransomware | Kettering Health id32715 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, its inclusion reflects an incident linked to the interlock threat actor. The listing type identifies ketteringhealth.org specifically within ransomware victim records, contextualized by its sector and geographic location. This description adheres to neutral, encyclopedic standards without speculating on unconfirmed breach details, data impacts, or recovery specifics. The entity remains documented as associated with interlock per the index's classification methodology. |
||||||
| Ransomware | Kettering Health id32716 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and infrastructure. As cataloged in this threat-intelligence index, it is listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in threat-intelligence records documenting cybersecurity incidents affecting healthcare organizations. The entity's classification underscores the vulnerability of healthcare systems to ransomware campaigns and the importance of monitoring actor-linked incidents across critical sectors. No additional incident specifics, such as data stolen, records affected, ransom demands, or confirmed breach details, are provided here. |
||||||
| Ransomware | Kettering Health id32716 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with medical care delivery and related health administration functions. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. This designation reflects the inclusion of ketteringhealth.org within intelligence records documenting cybersecurity incidents affecting healthcare organizations. The description remains neutral and avoids speculation regarding specific breach details, data handling, or operational impacts. It serves as factual catalog information for researchers and defenders monitoring threat actor interlock activity across critical infrastructure sectors. |
||||||
| Ransomware | Kettering Health id32717 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim listed in this threat-intelligence index, the entity is associated with threat actor interlock, indicating a cybersecurity incident of concern within the healthcare domain. The listing reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details. This catalog entry supports threat analysts and security professionals in tracking ransomware activity across critical healthcare sectors. It neutrally states that ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32717 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented in relation to the threat actor interlock. The listing reflects the cybersecurity context in which the incident occurred, highlighting vulnerabilities within healthcare infrastructure. This description remains neutral and factual, focusing on the entity's sector, geographic location, and its association with the specified threat actor without disclosing unverified incident details. The catalog entry serves to inform security analysts and defenders about potential attack vectors relevant to healthcare organizations. |
||||||
| Ransomware | Kettering Health id32722 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim associated with threat actor interlock, this entity is documented within the threat-intelligence index to reflect a cybersecurity incident impacting a healthcare organization. The listing type identifies the relationship between the entity and the specified threat actor without disclosing unconfirmed incident details. This entry serves to catalog the affected organization for threat analysts tracking healthcare sector ransomware activity and associated adversary campaigns. |
||||||
| Ransomware | Kettering Health id32722 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients and stakeholders. As a healthcare entity, it handles sensitive patient data and critical operational systems, making it a target for cyber threats. This listing identifies ketteringhealth.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The entry reflects the association between the entity and the specified threat actor without detailing unverified incident specifics. This catalog aims to provide neutral, authoritative context for researchers and defenders monitoring healthcare sector threats. |
||||||
| Ransomware | Kettering Health id32724 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and infrastructure. As cataloged in this threat-intelligence index, it is identified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the ransomware incident database without disclosing confirmed breach details, data exfiltration specifics, or operational impact. This entry supports security professionals monitoring healthcare sector threats and attacker targeting patterns across the United States. |
||||||
| Ransomware | Kettering Health id32724 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with patient care, clinical operations, and related health services. As part of a threat-intelligence index, this entity is cataloged under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation reflects the inclusion of ketteringhealth.org in records documenting cybersecurity incidents affecting healthcare organizations. The description remains neutral and avoids speculation regarding specific breach details, data impacts, or recovery outcomes. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32725 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing medical services and health-related offerings. As a healthcare entity, it handles sensitive patient data and maintains critical operational infrastructure. This listing identifies ketteringhealth.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The designation reflects the cybersecurity event classification without disclosing specific incident details, data loss specifics, or confirmed breach elements. This catalog entry serves to document the association for analytical and defensive reference purposes. |
||||||
| Ransomware | Kettering Health id32725 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing clinical, administrative, and patient-facing services under its domain name. As a healthcare entity, the organization handles sensitive patient data and supports medical operations across its services. This listing type identifies ketteringhealth.org as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description remains neutral regarding specific incident details, as confirmed specifics such as data scope, breach confirmation, or financial impact are not provided here. This entry serves to document the relationship between the entity, its sector context, and the associated cyber threat actor for catalog and intelligence purposes. |
||||||
| Ransomware | Kettering Health id32726 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. The entity is formally listed within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents affecting healthcare organizations. The catalog entry serves to inform defenders and security professionals about potential attack contexts within the healthcare domain. No specific incident details, such as data stolen or ransom demands, are included per strict factual guidelines. |
||||||
| Ransomware | Kettering Health id32730 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim listed in the threat-intelligence index, this entity is associated with the threat actor interlock. The catalog entry documents the cybersecurity incident classification without disclosing unverified details such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This neutral description supports threat-intelligence analysis and contextual awareness for entities within sensitive healthcare infrastructure. The listing reflects an official categorization of the incident within the index and serves as a reference point for security professionals monitoring healthcare sector threats. |
||||||
| Ransomware | Kettering Health id32730 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing health-related services and digital infrastructure. As a healthcare organization, it handles sensitive patient information and clinical operations, making it a target for cyber threats. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. The designation reflects its inclusion in intelligence records documenting ransomware incidents linked to this actor. The description remains neutral regarding incident details, focusing solely on the entity's sector, location, and verified association. |
||||||
| Ransomware | Kettering Health id32730 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As cataloged in this threat-intelligence index under the listing type ransomware victim, the entity is associated with threat actor interlock. This designation reflects the cybersecurity context surrounding the incident without disclosing unverified technical details. The entry serves to inform security analysts and stakeholders about potential exposure within critical healthcare infrastructure. All information presented remains factual, neutral, and strictly aligned with publicly available threat-intelligence indexing data. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing clinical, administrative, and patient-facing digital services typical of modern healthcare organizations. As a ransomware victim listed in this threat-intelligence index, the entity is associated with threat actor interlock, indicating a cybersecurity incident of this classification within the indexed dataset. This listing reflects the organization's documented exposure to ransomware activity without disclosing unverified technical details, data scope, or resolution specifics. The catalog entry serves to inform analysts monitoring healthcare sector threats and interlock-linked incidents. Official incident details, including any confirmed breach parameters, remain subject to independent verification by the entity itself or authoritative sources. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a healthcare organization, it handles sensitive patient information and critical medical operations, making it a target for cyber threats. This entry catalogizes ketteringhealth.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The listing reflects the entity's association with this specific threat actor and serves as documented intelligence for security professionals monitoring healthcare sector incidents. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients and stakeholders. As a healthcare organization, it handles sensitive patient data and critical operational systems, making it a potential target for cyber threats. This entity is formally listed within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed security incident correlations without disclosing unconfirmed breach details, data exfiltration specifics, or operational impact metrics. This catalog entry supports threat analysts and security professionals monitoring healthcare sector vulnerabilities and adversary activity. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with clinical care and health administration functions. As a healthcare organization, it handles sensitive patient and operational data, making it a potential target for cyber threats. This entity is documented in the threat-intelligence index under the listing type ransomware victim, linked to the threat actor interlock. The record reflects the association without detailing unconfirmed breach specifics such as data stolen, records affected, ransom demands, or internal findings. This neutral catalog entry supports cybersecurity monitoring and threat actor tracking across sectors globally. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure relevant to patient care, clinical operations, or health administration. As cataloged in threat-intelligence resources, this entity is listed as a ransomware victim associated with threat actor interlock. The designation reflects the cybersecurity event classification tied to the attack pattern or actor attribution, without confirming specific stolen data, record counts, ransom terms, or operational impact. This listing serves to contextualize the entity within broader healthcare cybersecurity risk monitoring and threat actor tracking frameworks. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in the threat-intelligence index, this entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat intelligence linkage without confirming specific breach details, stolen data categories, record counts, ransom demands, or operational impact. This entry serves to document the cybersecurity incident context for entities operating in sensitive healthcare environments, where ransomware activity presents elevated risk. The description maintains neutrality and relies solely on verified index classification data. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in threat-intelligence indexing, it is identified as a ransomware victim linked to the interlock threat actor. The listing type signals a cybersecurity event where ransomware activity was associated with this entity, without disclosing confirmed specifics such as data stolen, operational impact, or ransom terms. This entry serves threat-intelligence purposes by documenting the relationship between the entity, its sector context, and the identified threat actor for monitoring and risk assessment. The record remains neutral and factual, reflecting only the association and sector classification provided in the index. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, its inclusion reflects a cybersecurity incident linked to the threat actor interlock. The listing type identifies the entity's status within the ransomware incident database without disclosing unconfirmed specifics such as data stolen, records impacted, ransom demands, or operational details. This entry serves as a neutral reference point for threat analysts tracking healthcare sector exposures and associated adversary activity in the United States. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing clinical and administrative services relevant to patient care and healthcare operations. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the organization's inclusion in threat-related records tied to that actor's activity within healthcare environments. The description avoids speculative details regarding breach scope, data handling, or recovery outcomes, maintaining a neutral and factual perspective consistent with professional threat-intelligence documentation. |
||||||
| Ransomware | Kettering Health id32732 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings under its domain. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity event classification rather than confirmed technical details of any incident. The description adheres to neutral, authoritative standards for cataloging affected organizations within healthcare contexts. No specific breach details, data scope, or financial impact are included per strict reporting constraints. |
||||||
| Ransomware | Kettering Health id32733 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with patient care and medical operations. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This designation reflects the threat actor's documented activity and the entity's inclusion in cybersecurity incident records. The description maintains neutrality regarding unconfirmed incident details, focusing solely on the verified listing context within the intelligence database. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32733 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, the entity is identified as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity event classification without disclosing unverified incident details such as stolen data, ransom demands, or specific breach metrics. The record serves to inform stakeholders of the security posture and threat exposure context for this healthcare organization. Neutral documentation ensures transparency while respecting factual boundaries and avoiding speculative claims about the incident itself. |
||||||
| Ransomware | Kettering Health id32734 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with clinical care and health administration functions. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity event attributed to interlock and the entity's exposure within that context. This catalog entry serves to inform stakeholders of the incident's scope, sector relevance, and associated threat actor without disclosing unverified technical or operational details. The designation underscores the importance of vigilance for healthcare organizations facing ransomware threats. |
||||||
| Ransomware | Kettering Health id32735 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a healthcare organization, its systems and data hold significant sensitivity, making it a potential target for cyber threats. This entity is documented in the threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. The record reflects its inclusion in intelligence datasets tracking malicious activity against healthcare infrastructure. This neutral description adheres to factual reporting without speculating on unconfirmed incident details. |
||||||
| Ransomware | Kettering Health id32736 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and infrastructure. As a ransomware victim entry in this threat-intelligence index, it is associated with threat actor interlock. The listing type identifies the entity as impacted by ransomware activity within the healthcare domain. This catalog entry serves to document the relationship between the organization, its sector context, and the specific threat actor linked to the incident without disclosing unverified technical or operational details. |
||||||
| Ransomware | Kettering Health id32737 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This classification reflects the security event attributed to the organization within the index and does not disclose specific technical details of the incident. The description remains neutral and factual, focusing on the entity's sector, geographic context, and the nature of its listing. It neutrally states that ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32737 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a healthcare organization, it handles sensitive patient information and maintains operational continuity for medical services. The entity has been cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents linked to this actor. The description remains factual and neutral, focusing on the entity's sector context and its recognized association without disclosing unverified incident details. |
||||||
| Ransomware | Kettering Health id32739 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing health-related services and digital infrastructure. As cataloged in the threat intelligence index, this entity is listed as a ransomware victim associated with the threat actor Interlock. The listing type reflects the cybersecurity impact observed on this organization's systems. This entry documents the relationship between ketteringhealth.org and Interlock within the ransomware victim classification framework. No specific incident details, such as data stolen, ransom demands, or confirmed breach metrics, are included per strict analytical guidelines. |
||||||
| Ransomware | Kettering Health id32740 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing health-related services and digital infrastructure. As a ransomware victim indexed by this threat-intelligence catalog, the entity is documented in relation to threat actor interlock. The listing reflects an incident classification without disclosing unverified technical details, data scope, or financial impact. This entry serves to inform security professionals and stakeholders about potential risks within healthcare environments targeted by identified threat actors. The catalog maintains a neutral, factual record aligned with cybersecurity intelligence standards. |
||||||
| Ransomware | Kettering Health id32741 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and organizational functions. As a healthcare entity, its digital infrastructure and patient-sensitive information present significant operational and compliance considerations. This listing identifies ketteringhealth.org as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The designation reflects the entity's association with this specific cyber threat actor and its inclusion in ransomware incident records. This description remains factual and neutral, detailing the entity's sector context and its association without speculating on unconfirmed incident details. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients and stakeholders. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects the cybersecurity event documented within the intelligence source, which identifies the organization as a target of ransomware activity. The description remains neutral and avoids speculation regarding specific breach details, data handling, or operational impacts. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing services aligned with medical care delivery and health infrastructure. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim linked to the threat actor interlock. This designation reflects the inclusion of ketteringhealth.org within records documenting cybersecurity incidents targeting healthcare organizations. The description remains neutral and avoids speculation regarding breach details, data exposure, or operational impact. The listing underscores ongoing monitoring of ransomware activity within sensitive healthcare sectors. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing health-related services and digital infrastructure relevant to patient care and medical operations. As part of a threat-intelligence index, this entity is cataloged as a ransomware victim linked to the interlock threat actor. The listing reflects observed cybersecurity intelligence concerning this organization's exposure to ransomware activity within its sector. No specific incident details such as data stolen, records compromised, ransom demands, or confirmed breach evidence are asserted here. This entry serves as a neutral reference for catalog users tracking ransomware incidents and associated threat actors in healthcare environments. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim indexed alongside threat actor interlock, the entity represents an incident classification where cyber activity may have impacted organizational systems. This listing reflects threat-intelligence cataloging based on available intelligence sources and does not confirm specific breach details, data exfiltration, ransom demands, or operational impact. The description maintains neutrality regarding incident specifics while documenting the entity's sector, geographic context, listing type, and associated threat actor. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing patient care and related healthcare services. The entity is documented in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects cybersecurity monitoring and intelligence aggregation regarding potential malicious activity affecting healthcare infrastructure. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are included per strict factual constraints. The entry serves as a neutral record for cataloging threat exposure within the healthcare domain. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, its inclusion reflects an incident linked to the threat actor interlock. The listing type identifies the entity as affected by ransomware activity within the healthcare domain, highlighting the sector's vulnerability to cyber threats. This description adheres strictly to verified catalog data without speculating on breach details, data impacts, or recovery specifics. The entity remains documented neutrally as an affected organization associated with interlock. |
||||||
| Ransomware | Kettering Health id32744 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the organization's inclusion in intelligence records documenting cybersecurity incidents and adversary activity targeting healthcare systems. The description maintains neutrality regarding specific incident details, as confirmed specifics such as data exfiltration scope or operational impact are not provided here. The entry serves to inform stakeholders of this entity's status within the ransomware victim index connected to interlock. |
||||||
| Ransomware | Kettering Health id32745 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure relevant to patient care and medical operations. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects observed threat-intelligence linkage without confirming specific breach details, data exfiltration scope, ransom activity, or operational impact. This record supports cybersecurity professionals, healthcare defenders, and intelligence analysts monitoring ransomware incidents across critical healthcare infrastructure. |
||||||
| Ransomware | Kettering Health id32745 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to its community and stakeholders. As a healthcare organization, it handles sensitive patient information and critical operational systems, making it a potential target for cyber threats. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. The classification reflects verified intelligence linking this organization to this specific threat actor's activity within the healthcare domain. This entry serves to inform security teams and analysts about potential risks and historical incidents involving this sector participant. |
||||||
| Ransomware | Kettering Health id32746 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in threat-intelligence databases, this entity is listed as a ransomware victim associated with the threat actor Interlock. The designation reflects its inclusion in an index documenting security incidents tied to specific threat actors. This entry serves informational purposes for cybersecurity professionals monitoring healthcare sector vulnerabilities and adversary activity. No additional incident specifics, such as data stolen or ransom details, are included per strict factual constraints. |
||||||
| Ransomware | Kettering Health id32748 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients, providers, or stakeholders. As part of a threat-intelligence catalog, this entity is formally classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking the organization to this adversary group without confirming specific breach details, data exfiltration, or operational impact. This entry serves to document the relationship between ketteringhealth.org and interlock within the ransomware victim index for monitoring and risk awareness. The designation remains neutral and relies solely on verified intelligence context. |
||||||
| Ransomware | Kettering Health id32748 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim, this entity is documented within the threat-intelligence index under association with the threat actor interlock. The listing reflects the organization's status in relation to this specific cyber threat activity without disclosing unverified incident details. This entry contributes contextual data for analysts monitoring healthcare sector security risks and associated threat actor behaviors. |
||||||
| Ransomware | Kettering Health id32748 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings under its domain. As cataloged in threat-intelligence indexes, this entity is classified as a ransomware victim associated with the threat actor Interlock. The listing reflects security incident intelligence concerning this organization without disclosing confirmed breach details, data scope, or operational impact. This entry supports risk assessment and awareness for healthcare infrastructure exposed to cyber threats targeting medical systems. The record remains neutral and factual, documenting the association with Interlock as the identified threat actor. |
||||||
| Ransomware | Kettering Health id32748 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in threat-intelligence indexing, the entity is classified as a ransomware victim linked to the interlock threat actor. This designation indicates its inclusion in cybersecurity records documenting ransomware-related incidents affecting healthcare organizations. The listing reflects observed threat activity and sector exposure without confirming specific breach details, data exfiltration, or operational impact. Such entries support risk assessment and defensive awareness for healthcare entities facing evolving cyber threats. |
||||||
| Ransomware | Kettering Health id32749 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects observed cyber threat correlation data without confirming specific breach details, data exfiltration scope, ransom demands, or operational impact. This entry supports security teams assessing healthcare sector exposure to ransomware activity and related attacker campaigns. The designation remains neutral and factual, documenting the association between ketteringhealth.org and interlock within the ransomware victim index. |
||||||
| Ransomware | Kettering Health id32749 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing clinical and administrative health services under its domain. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cybersecurity incidents affecting healthcare organizations. The description remains neutral and avoids speculative details regarding breach specifics, data exposure, or operational impact. ketteringhealth.org was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Kettering Health id32749 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type reflects the cybersecurity impact observed against this organization, contributing to broader awareness of healthcare sector vulnerabilities and active threat patterns. This entry is provided for catalog and intelligence purposes only, emphasizing factual classification without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. The association with interlock underscores ongoing monitoring of healthcare environments facing ransomware threats. |
||||||
| Ransomware | Kettering Health id32749 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing healthcare-related services and organizational functions. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context in which the organization was identified within the ransomware incident profile. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and the associated threat actor without inventing breach specifics or unverified claims. |
||||||
| Ransomware | Kettering Health id32753 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As cataloged in this threat-intelligence index under the listing type ransomware victim, the entity is associated with threat actor interlock. This designation reflects the inclusion of ketteringhealth.org within records documenting cybersecurity incidents affecting healthcare organizations. The description avoids speculative details regarding breach scope, data handling, or operational impact, maintaining factual neutrality consistent with threat-intelligence reporting standards. The entity remains identified by its sector, geographic context, and verified association with interlock in the ransomware victim classification. |
||||||
| Ransomware | Kettering Health id32756 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the US healthcare and medicine sector, providing services aligned with medical care delivery and health management. As part of a threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The designation reflects observed cybersecurity events linked to this actor within healthcare contexts. This listing serves to document exposure patterns and support proactive defense strategies for healthcare organizations facing similar threat landscapes. All details regarding the specific incident remain confined to verified intelligence records. |
||||||
| Ransomware | Kettering Health id32758 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and organizational functions. The entity is documented in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects the cybersecurity context in which the organization was identified within the index. No specific incident details, such as data stolen, record counts, ransom amounts, or breach confirmation, are included per strict reporting guidelines. The entry serves to catalog the relationship between the entity, its sector, location, and the associated threat actor. |
||||||
| Ransomware | Kettering Health id32762 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing clinical, administrative, and patient-related digital services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. This designation reflects inclusion within a monitored threat-intelligence dataset identifying organizations impacted by cyber incidents tied to this actor. The description avoids speculative details regarding data exfiltration, ransom demands, or confirmed breach specifics, maintaining a neutral and authoritative tone consistent with cyber-threat-intelligence documentation. The listing underscores ongoing vigilance across healthcare infrastructure against ransomware threats. |
||||||
| Ransomware | Kettering Health id32764 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the healthcare and medicine sector based in the United States, providing healthcare-related services and digital infrastructure. As cataloged in the threat-intelligence index, this entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects a cybersecurity incident classification rather than confirmed technical findings, data exfiltration details, or financial impact. This record serves to inform defenders about entities impacted by interlock activity within critical healthcare environments. The description remains neutral and factual, adhering to the index's purpose of mapping ransomware victims to associated threat actors and sector context. |
||||||
| Ransomware | Kettering Health id32769 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings to patients and stakeholders. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its inclusion reflects cybersecurity monitoring linking the organization to the threat actor Interlock within the healthcare threat landscape. This designation contributes to broader awareness of ransomware risks affecting critical healthcare infrastructure in the US. The description remains factual and neutral, noting only the association without speculating on breach details, data exposure, or operational impact. |
||||||
| Ransomware | Kettering Health id32770 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing healthcare-related services and digital infrastructure. As a ransomware victim listed in the threat-intelligence index, the entity is documented in relation to the threat actor interlock. This listing serves as an indicator for security professionals monitoring healthcare sector exposure to cyber threats and associated ransomware activity. The record reflects the entity's classification without disclosing unverified incident details such as data stolen, records impacted, ransom demands, or confirmed breach specifics. It functions as factual catalog documentation for threat-intelligence analysis and defensive awareness. |
||||||
| Ransomware | Kettering Health id32771 View details | United States | Healthcare / Pharma | — | ||
|
ketteringhealth.org operates within the United States healthcare and medicine sector, providing medical services and health-related offerings. As a healthcare organization, its digital infrastructure and patient data systems represent high-value targets for cyber threats. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as Interlock. The inclusion reflects observed or attributed threat activity linked to this organization within the index's intelligence framework. This description maintains factual neutrality regarding the incident details while documenting the entity's classification and associated threat actor. |
||||||