Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 74 | Onion service | Up checked 5h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 73 | Onion service | Up checked 5h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 5h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 5h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 5h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 5h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 5h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 67 | Onion service | Up checked 5h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 66 | Onion service | Up checked 5h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 65 | Onion service | Up checked 5h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 5h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 5h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 5h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 60 | Onion service | Up checked 5h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Up checked 5h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 56 | Onion service | Up checked 5h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 5h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 5h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 5h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 5h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 43 | Onion service | Up checked 5h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 64 | Onion service | Down checked 5h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 59 | Onion service | Down checked 5h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 53 | Onion service | Down checked 5h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Down checked 5h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 48 | Onion service | Down checked 5h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 5h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 5h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 5h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 45 | Onion service | Down checked 5h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 44 | Onion service | Down checked 5h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 5h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 5h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 39 | Onion service | Down checked 5h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 40 | Onion service | Down checked 5h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 5h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 5h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 5h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 36 | Onion service | Down checked 5h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 33 | Onion service | Down checked 5h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 5h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 32 | Onion service | Down checked 5h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 5h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 5h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 5h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 28 | Onion service | Down checked 5h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 27 | Onion service | Down checked 5h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 5h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 5h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 5h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 5h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 5h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 5h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 5h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 5h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 5h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 5h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 5h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 16 | Onion service | Down checked 5h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 13 | Onion service | Down checked 5h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 5h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 5h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 5h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 5h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 5h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 5h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 6 | Onion service | Down checked 5h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 7 | Onion service | Down checked 5h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 5h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 5h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 5h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 19601–19700 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions and services, with operations and presence associated with the United States. In the threat-intelligence index, this entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects observed or attributed cybersecurity incident context relevant to threat actor tracking and victim indexing. No specific breach details, data exfiltration claims, ransom terms, or incident dates are included in this catalog entry to maintain factual neutrality and avoid speculation. This description supports security analysts monitoring ransomware activity and correlated threat actor campaigns across sectors. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com is an IT-sector entity based in the United States, operating within the technology services domain and providing digital solutions and support for business operations. Within the threat-intelligence catalog, this entity is documented as a ransomware victim associated with the threat actor interlock. The listing type reflects the observed relationship between davita.com and interlock in ransomware incident intelligence records. This entry contributes contextual data for analysts tracking cyber threats, victim exposure patterns, and actor-source correlations across sectors. The description remains factual and neutral, focusing solely on the indexed classification without elaborating on unverified incident details. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions, infrastructure support, or managed services. As a ransomware victim indexed in the threat-intelligence catalog, it is documented alongside threat actor interlock, reflecting the entity's association with this specific cyber threat profile. The listing type identifies davita.com as a victim affected by ransomware activity linked to interlock, providing context for security analysts tracking adversary-targeted organizations. This entry contributes to broader monitoring of ransomware campaigns targeting IT-sector entities in the United States. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and attributed threat actor without speculating on unconfirmed incident details. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions, though specific service details are not disclosed in this catalog context. According to the threat-intelligence index, davita.com was formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's inclusion within the ransomware victim classification tied to interlock, without confirming specific incident details. The entry serves to document the relationship between the organization, its sector, location, and associated threat actor within the intelligence framework. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The company provides digital solutions and services relevant to enterprise technology environments. According to the threat-intelligence index, davita.com is formally cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this specific cyber threat profile within the indexed data. The description remains neutral and factual regarding the categorization, without elaborating on unverified incident details. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing professional and commercial services to clients. The entity is documented within this threat-intelligence index under the classification of ransomware victim. Its inclusion reflects an assessed association with the threat actor identified as interlock. This listing serves to inform security professionals and stakeholders about potential cyber exposure within the Services sector. The description remains factual and neutral, focusing solely on the indexed relationship without elaborating on unverified incident details. |
||||||
| Ransomware | DaVita id32745 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing business and professional services to clients. This entity is documented within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The record reflects its inclusion in cybersecurity threat monitoring without disclosing specific incident details, such as data stolen, ransom demands, or precise timelines. The classification supports threat analysts tracking ransomware activity across sectors and geographic regions. It remains a reference point for understanding interlock-associated victimization patterns within the Services industry. |
||||||
| Ransomware | DaVita id32746 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. The company provides digital solutions and services relevant to its sector, though specific service details are not disclosed in this catalog entry. According to the threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the association between the entity and the identified threat actor within cybersecurity monitoring records. The entry remains neutral regarding incident specifics, focusing solely on the verified relationship and classification. |
||||||
| Ransomware | DaVita id32746 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The company provides digital solutions and services aligned with enterprise technology needs. Within the threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor based on aggregated intelligence data. The description remains factual and neutral, focusing on the verified listing context without elaborating on unconfirmed incident details. |
||||||
| Ransomware | DaVita id32747 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The company provides IT-related services and solutions, positioning it within a sector frequently targeted by cyber threats. In the threat-intelligence index under review, davita.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the association between the entity and the identified threat actor within the cybersecurity threat landscape. The entry documents the relationship for defenders and analysts monitoring ransomware activity across IT sectors globally. |
||||||
| Ransomware | DaVita id32748 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings to clients and partners. The entity has been formally listed within this threat-intelligence index under the classification of ransomware victim, associated with the threat actor interlock. This listing reflects the entity's documented relationship to this specific cyber threat actor within the index's catalog. The entry serves to inform security stakeholders about the affected organization's sector, geographic location, and its association with identified malicious activity. Note that this description avoids speculation regarding breach details, focusing solely on the verified listing context provided by the index. |
||||||
| Ransomware | DaVita id32749 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services. The entity is cataloged within the threat-intelligence index under the designation of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the cybersecurity community's assessment of the entity's involvement in a ransomware incident tied to interlock's activity. The description remains factual and neutral, focusing on the entity's sector, location, and its recognized association with this threat actor without disclosing unverified technical or operational details of the event. |
||||||
| Ransomware | DaVita id32750 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. This entity has been cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects observed security event associations and does not confirm specific breach details, data exfiltration, or operational impact. Cybersecurity analysts reference this entry to understand exposure patterns within the Services sector and correlate adversary activity. The record serves as a neutral indicator for monitoring threat actor interlock campaigns and related ransomware incidents across targeted industries. |
||||||
| Ransomware | DaVita id32750 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as an entity identified in the threat-intelligence index under the designation of ransomware victim. The company, located in the United States, is cataloged alongside threat actor interlock, reflecting its association with this cybersecurity threat profile. This listing provides threat-intelligence analysts with contextual data regarding entity exposure within cyber incident databases. The description remains factual and neutral, focusing on the established classification without elaborating on unverified incident details or speculative claims. It underscores the importance of monitoring ransomware victim entities linked to specific threat actors for proactive defense strategies. |
||||||
| Ransomware | DaVita id32752 View details | United States | IT | — | ||
|
davita.com operates within the United States IT sector, providing technology-focused services and solutions for enterprise and commercial clients. The entity is cataloged in threat-intelligence indexes as a ransomware victim associated with the threat actor interlock. This listing reflects cybersecurity intelligence analysis concerning the entity's exposure to ransomware activity and its linkage to the identified adversary group. No specific incident details, such as stolen data types, record counts, ransom amounts, or confirmed breach evidence, are included to maintain factual neutrality and avoid speculation. The description serves to document the entity's status within the ransomware victim index and its association with interlock. |
||||||
| Ransomware | DaVita id32753 View details | United States | IT | — | ||
|
davita.com is a United States-based services organization operating within the broader services sector, providing business and customer-facing offerings aligned with professional service delivery. In the context of this threat-intelligence index, the entity is listed as a ransomware victim associated with threat actor interlock. This classification reflects its inclusion within cybersecurity intelligence records concerning ransomware activity and related threat actor attribution. The description remains neutral and avoids confirming unverified incident details such as data exfiltration, ransom demands, or specific breach metrics. It serves to inform catalog users of the entity's placement in threat-intelligence datasets and its association with interlock for risk assessment and monitoring purposes. |
||||||
| Ransomware | DaVita id32754 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity is documented within this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident classification tied to this actor's activity. This description focuses on the entity's sector, geographic context, and verified threat-intelligence listing status without disclosing unconfirmed incident details. The entry supports security teams in mapping affected organizations and contextualizing ransomware exposure. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. It provides digital solutions and services aligned with enterprise technology needs, though specific service details remain outside verified public disclosures. Within the threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this actor in cybersecurity records without confirming specific incident details such as data accessed, ransom demands, or operational impact. The designation serves to inform defenders and analysts about potential exposure pathways and contextual risk tied to this organization and its identified threat actor. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity is formally listed within the threat-intelligence index under the designation ransomware victim, associated with threat actor interlock. This classification reflects the observed cybersecurity relationship documented in the index without disclosing unverified incident details. The entry serves catalog and research purposes for monitoring adversary activity and victim impact across the Services sector in the US. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the Services sector based in the United States, providing professional and business-oriented services to clients and partners. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity intelligence assessment linking the organization to this specific adversary group without disclosing unverified incident details. The catalog entry supports threat researchers and defenders in tracking adversary-victim relationships across sectors and geographies. Davita.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business customers through technology solutions and services. As a US-based entity, its profile is maintained within the threat-intelligence index to document cybersecurity exposure and incident associations. This listing identifies davita.com as a ransomware victim associated with the threat actor interlock. The entry provides neutral context regarding the entity's sector, geographic location, and its documented relationship to this specific threat actor without asserting unconfirmed breach details. Such catalog records support threat monitoring, risk assessment, and intelligence correlation across the broader cybersecurity ecosystem. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing business and professional services to clients. This entity is documented within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat intelligence data concerning the entity's relationship to this specific adversary group. No additional incident details, such as breach confirmation or operational specifics, are included to maintain factual neutrality and avoid speculation. This entry supports threat analysts tracking ransomware incidents across sectors and geographies. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services. This entity is documented within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The catalog entry reflects verified intelligence correlating the organization with this adversary group's activity. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict analytical protocols. This neutral record supports threat-hunting and risk assessment workflows for cybersecurity stakeholders monitoring service-sector exposures. |
||||||
| Ransomware | DaVita id32757 View details | United States | IT | — | ||
|
davita.com is a United States-based services sector entity operating within professional service offerings, with public digital presence reflecting its industry positioning. Within the threat-intelligence index, this listing type identifies davita.com as a ransomware victim associated with the threat actor interlock. The catalog entry reflects the observed relationship between the entity and the specified threat actor without disclosing unverified incident details such as breach confirmation, data exposure specifics, or financial impact. This description provides neutral context for researchers and defenders assessing entity exposure within cyber threat intelligence frameworks. |
||||||
| Ransomware | DaVita id32758 View details | United States | IT | — | ||
|
davita.com operates within the Services sector based in the United States, providing business and professional services to clients. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies the relationship between the organization and the associated cyber threat actor without disclosing unverified incident details. This entry serves to inform security professionals and stakeholders about the entity's status within the ransomware threat landscape. The description maintains neutrality regarding specific attack vectors, data handling, or resolution outcomes. |
||||||
| Ransomware | DaVita id32758 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions and services. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented in relation to the threat actor interlock. This listing reflects the cybersecurity event classification without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The record provides context for security teams monitoring actor activity and potential victim exposure across the technology sector in the United States. Neutral documentation supports threat analysis and situational awareness for defense stakeholders. |
||||||
| Ransomware | DaVita id32759 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and is associated with the threat actor interlock in the ransomware victim listing. The entity represents a business organization whose security posture was impacted within a cyber incident catalog. This description provides neutral context on the company's sector, geographic presence in the United States, and its classification within the threat-intelligence index as a ransomware victim tied to interlock. No incident specifics, breach confirmations, stolen data details, or financial claims are included to maintain factual accuracy and neutrality. |
||||||
| Ransomware | DaVita id32761 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. The company provides digital solutions and services aligned with enterprise technology needs. Within the threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor profile. The description remains neutral regarding incident details, as confirmed specifics are not publicly disclosed by the entity itself. |
||||||
| Ransomware | DaVita id32761 View details | United States | IT | — | ||
|
davita.com is a United States-based services sector entity operating within professional and commercial service offerings. The company is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This entry documents the entity's relationship to the identified threat actor without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. The description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence catalog standards, focusing on entity identification, sector classification, geographic origin, and the verified association with interlock. |
||||||
| Ransomware | DaVita id32761 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business clients requiring technology solutions and services. The entity is situated in the United States and represents an organization within the technology industry. According to the threat-intelligence index, davita.com was formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's inclusion in records documenting cybersecurity incidents involving this specific adversary group. The description maintains neutrality regarding incident details while accurately conveying the listing context and associated threat actor. |
||||||
| Ransomware | DaVita id32761 View details | United States | IT | — | ||
|
davita.com is an entity operating within the IT sector based in the United States, providing technology-focused services and solutions. The company has been cataloged in the threat-intelligence index under the classification ransomware victim, linked to the threat actor interlock. This listing reflects the entity's association with interlock within the ransomware threat landscape, contributing to broader cybersecurity awareness and intelligence aggregation. The description remains factual and neutral, focusing solely on the indexed relationship without disclosing unverified incident details. Such entries support security professionals in monitoring adversary activity and understanding sector-specific exposure patterns. |
||||||
| Ransomware | DaVita id32762 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities seeking technology solutions, infrastructure services, or managed technology support. The entity is geographically located in the United States. In the context of this threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the association between the entity and the identified cyber threat actor within the indexed dataset. The description remains factual and neutral, focusing on the entity's classification and sector without attributing confirmed incident details. |
||||||
| Ransomware | DaVita id32762 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients requiring technology solutions and services. The entity is documented within this threat-intelligence index under the classification of ransomware victim, linked to the threat actor interlock. This listing reflects observed security incident associations relevant to cybersecurity monitoring and defense planning. The description remains factual and neutral, focusing on the entity's sector, geographic location, and verified association without elaborating on unconfirmed technical details or incident specifics. Users of this catalog should consult supplementary threat reports for deeper analysis of the interlock campaign and its broader impact. |
||||||
| Ransomware | DaVita id32762 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business customers requiring technology solutions and services. As part of this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context in which davita.com was identified within the index's ransomware incident records. The description avoids inventing specific breach details such as data stolen, records compromised, ransom demands, or confirmed attack timelines. The classification provides neutral, authoritative catalog information for researchers and defenders monitoring threat actor interlock activity across the IT sector in the United States. |
||||||
| Ransomware | DaVita id32762 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity appears in this threat-intelligence catalog specifically as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity intelligence assessment connecting davita.com to interlock's activity without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The record serves catalog and analytical purposes within the threat-intelligence index, documenting the association between the entity, its sector and location, and the identified threat actor. All descriptions remain factual and neutral per strict cataloging guidelines. |
||||||
| Ransomware | DaVita id32766 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The company provides digital services and solutions aligned with information technology infrastructure and client needs. Within this threat-intelligence index, davita.com is formally listed as a ransomware victim associated with threat actor interlock. This listing reflects the entity's inclusion in cybersecurity intelligence records concerning ransomware activity and related attribution. The description remains neutral and avoids unsupported claims regarding breach details, data exposure, or financial impact. |
||||||
| Ransomware | DaVita id32769 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity based in the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This classification reflects cybersecurity monitoring efforts to identify compromised organizations and correlate victim data with active threat campaigns. The description remains neutral and factual, focusing on the entity's sector, geographic presence, and its inclusion in the ransomware victim category tied to interlock without elaborating on unverified incident details. This entry supports threat analysts in tracking adversary-victim relationships within digital infrastructure. |
||||||
| Ransomware | DaVita id32771 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and maintains a presence based in the United States, providing business and service-oriented offerings to clients and partners. As documented in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity context in which davita.com was identified within the interlock threat campaign, contributing valuable intelligence for defenders monitoring service-sector exposures. The description remains factual and neutral, focusing solely on the entity's classification and its documented association without elaborating on unverified incident details. This entry supports comprehensive threat monitoring and risk assessment efforts across affected service-oriented organizations. |
||||||
| Ransomware | DaVita id32775 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients requiring technology solutions and services. The entity is identified as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This listing reflects cybersecurity intelligence concerning the organization's association with this actor. The description remains neutral regarding incident details, focusing solely on the entity's classification and its connection to interlock. Davita's role in the IT landscape is contextualized within broader threat monitoring efforts. |
||||||
| Ransomware | DaVita id32777 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions and services, with operational presence rooted in the United States. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This classification reflects the inclusion of davita.com in records documenting cybersecurity incidents involving this specific adversary group. The description remains neutral regarding unverified incident details, focusing solely on the indexed relationship between the entity, its sector context, and the attributed threat actor. |
||||||
| Ransomware | DaVita id32782 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. The company provides digital services and solutions relevant to enterprise technology environments. Within the threat-intelligence index, davita.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents involving this specific actor. The entry contributes contextual intelligence for defenders monitoring ransomware activity across IT sectors in the US. |
||||||
| Ransomware | DaVita id32783 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as an entity identified within the threat-intelligence index under the ransomware victim listing type. The organization is situated in the United States and represents a target profile relevant to cybersecurity analysis and incident tracking. Its inclusion reflects the association with threat actor interlock, which has been documented in relation to ransomware activity targeting entities within this sector. This entry provides neutral catalog context for defenders assessing exposure patterns and threat actor methodologies across IT infrastructure. The description avoids speculative claims regarding breach details, data loss, or financial impact, focusing solely on the verified listing association. |
||||||
| Ransomware | DaVita id32784 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business clients requiring technology solutions and services. As a ransomware victim indexed in the threat-intelligence catalog, the entity is documented alongside threat actor interlock for analytical and defensive reference. This listing reflects the association without disclosing specific incident details, as confirmed specifics such as data scope, ransom terms, or breach validation are not publicly established for this entity. The record supports threat monitoring, sector-focused risk assessment, and cybersecurity intelligence workflows for organizations evaluating potential exposure in the IT landscape. Authorities and the company itself have not issued a publicly verifiable first-party notification confirming this incident, so no official notify date is provided. |
||||||
| Ransomware | DaVita id32785 View details | United States | IT | — | ||
|
davita.com operates within the Services sector based in the United States, providing professional and business-oriented offerings tailored to client needs across service delivery frameworks. As part of a threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the cybersecurity context in which davita.com was identified within the interlock campaign's reported impact scope. The description remains neutral and factual, focusing on the entity's sector, geographic location, listing type, and associated threat actor without extrapolating unverified incident details such as data exfiltration specifics, ransom terms, or confirmed breach metrics. |
||||||
| Ransomware | DaVita id32806 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves customers requiring technology solutions and services. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented in connection with the threat actor interlock. The listing reflects the association between davita.com and interlock within cybersecurity intelligence records. This description avoids speculative claims regarding data stolen, ransom demands, or confirmed breach details, maintaining a neutral and authoritative tone consistent with threat-intelligence documentation standards. |
||||||
| Ransomware | DaVita id32807 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing professional services aligned with its industry positioning. Within the threat-intelligence index under review, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The listing reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. Catalog entries of this nature support defenders in mapping adversary activity across sectors and geographies. This description maintains a neutral, encyclopedic tone for inclusion in the premium threat-intelligence catalog. |
||||||
| Ransomware | DaVita id32807 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients seeking technology solutions and services from the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects the inclusion of davita.com within the observed incident landscape connected to interlock's activity. The description maintains a neutral, encyclopedic tone regarding the entity's classification and associated threat context without disclosing unverified incident details. All information aligns with publicly available threat-intelligence indexing practices for ransomware victim entities. |
||||||
| Ransomware | DaVita id32807 View details | United States | IT | — | ||
|
davita.com is an IT sector organization headquartered in the United States, providing technology-focused services and solutions within its operational domain. The entity has been cataloged in this threat-intelligence index under the designation ransomware victim, specifically linked to the threat actor interlock. This listing reflects the cybersecurity context in which davita.com was identified within the broader landscape of threat activity. The description remains factual and neutral, focusing on the entity's classification and its association with the specified threat actor without elaborating on unconfirmed incident details. This entry serves to inform stakeholders of the relationship between davita.com and interlock within the ransomware victim framework. |
||||||
| Ransomware | DaVita id32807 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the observed relationship between davita.com and interlock within cybersecurity intelligence records, without disclosing specific incident details such as data stolen, ransom demands, or technical attack vectors. The classification supports threat analysts, security teams, and compliance stakeholders monitoring ransomware activity across the Services sector in the US. Neutral documentation ensures transparency while adhering to strict evidentiary boundaries regarding confirmed incidents. |
||||||
| Ransomware | DaVita id32807 View details | United States | IT | — | ||
|
davita.com is an IT-sector company based in the United States, operating within technology services and related enterprise solutions. In the threat-intelligence index, the entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion within a structured repository of incidents where entity exposure to ransomware activity is documented alongside attribution context. The description remains factual and neutral, focusing on the entity's sector, geographic origin, listing classification, and associated threat actor without speculating on unconfirmed technical details or disclosure specifics. |
||||||
| Ransomware | DaVita id32808 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. Publicly available information characterizes the domain within IT services and enterprise technology contexts. This listing identifies davita.com as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The designation reflects the entity's association with this specific cyber threat actor profile, documented for catalog and analytical purposes. All details remain neutral and factual, avoiding speculation regarding incident specifics. |
||||||
| Ransomware | DaVita id32808 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions, infrastructure management, and digital services. The entity is geographically located in the United States. In the context of this threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat profile within the index's records. The description remains factual and neutral, focusing on the entity's sector, location, and its designated listing type without elaborating on unverified incident details. |
||||||
| Ransomware | DaVita id32809 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing business and service-oriented offerings to clients and partners. It has been cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with threat actor interlock. The entry reflects the entity's status within the index without disclosing unverified technical details, breach specifics, or confirmed impact metrics. This description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence catalog standards. |
||||||
| Ransomware | DaVita id32810 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as an entity documented in the threat-intelligence index under the classification of ransomware victim. The company, situated in the United States, provides technology-focused services relevant to its sector. This listing reflects its association with the threat actor interlock within the ransomware incident catalog. The description remains neutral and avoids speculation regarding specific attack details, data exposure, or operational impact. It serves as a factual reference point for threat researchers and security professionals monitoring cyber incidents in the IT domain. |
||||||
| Ransomware | DaVita id32810 View details | United States | IT | — | ||
|
davita.com is a United States-based services sector entity operating within professional and commercial service offerings. As documented in the threat-intelligence index, the organization is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion within cybersecurity threat databases following its connection to this specific adversary group. The description adheres to neutral, factual reporting standards without disclosing unverified incident details such as data stolen, ransom demands, or internal forensic findings. The entry serves to inform analysts tracking ransomware campaigns, victim profiles, and threat actor attribution across the services industry. |
||||||
| Ransomware | DaVita id32810 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing professional and commercial services aligned with its industry classification. Within the threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which davita.com appears, highlighting its connection to a specific malicious actor profile without disclosing unverified incident details. The catalog entry emphasizes factual entity attributes and threat associations for analytical and defensive reference purposes. |
||||||
| Ransomware | DaVita id32810 View details | United States | IT | — | ||
|
davita.com operates within the Services sector based in the United States, providing business and professional services to clients and partners across relevant service industries. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This classification reflects the cybersecurity event attributed to the organization within the index's intelligence framework. The entry serves to inform security teams and analysts about the association between davita.com and interlock's ransomware activity, supporting proactive defense and threat-response strategies. |
||||||
| Ransomware | DaVita id32811 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing specialized business and operational services to clients. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking the organization to this specific adversary group without disclosing unverified incident details. This record supports threat analysts and defenders in tracking ransomware activity across sectors and geographic regions. The description remains neutral, focusing solely on the verified association and entity profile. |
||||||
| Ransomware | DaVita id32811 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. It is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry provides neutral context regarding the entity's sector, geographic location, and its classification within the ransomware incident landscape. No specific breach details, data stolen, record counts, ransom amounts, or confirmed incident claims are included, adhering to factual and non-inventive reporting standards. This description serves to inform catalog users of the entity's classification and its linkage to the specified threat actor. |
||||||
| Ransomware | DaVita id32816 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients requiring technology solutions and services from the United States. As cataloged in the threat-intelligence index, the entity is designated as a ransomware victim linked to the interlock threat actor. This listing reflects the cybersecurity context in which davita.com was identified within the intelligence dataset. The description remains neutral regarding specific incident details, as confirmed specifics are not provided in the available data. The association with interlock contributes to the index's mapping of ransomware incidents across sectors and geographic regions. |
||||||
| Ransomware | DaVita id32817 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity is documented within this threat-intelligence index under the listing type ransomware victim. Its association with threat actor interlock indicates a cybersecurity incident where interlock was identified as the responsible adversary. This entry serves to inform defenders and analysts about the entity's exposure profile and the specific threat actor connection, without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. The catalog entry maintains neutrality while contextualizing davita.com's status within the ransomware victim classification tied to interlock. |
||||||
| Ransomware | DaVita id32821 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings to clients. This entity is documented within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in intelligence records correlating its profile with this specific adversary group. No further technical or operational details regarding the incident are provided here to maintain factual neutrality and avoid speculation. This entry serves to inform security analysts and defenders monitoring adversary activity across service-sector organizations. |
||||||
| Ransomware | DaVita id32824 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This entry documents the relationship between davita.com and the interlock threat actor within the ransomware incident landscape. No specific incident details, such as stolen data, ransom amounts, or confirmed breach specifics, are included to maintain factual neutrality. The listing reflects the threat-intelligence assessment of this entity's association with interlock as a ransomware victim. |
||||||
| Ransomware | DaVita id32825 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings to clients and partners. This entity is formally listed within the threat-intelligence index under the designation ransomware victim, associated with threat actor interlock. The listing reflects intelligence-based correlation of the organization to this actor's activity without disclosing confirmed technical incident details. The entry serves catalog and research purposes for monitoring cyber threat exposure across service-sector entities in the US. |
||||||
| Ransomware | DaVita id32827 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing business and professional services to clients within its industry domain. Within the threat-intelligence index under review, the entity is categorized as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in records documenting cybersecurity incidents involving interlock, without disclosing unverified details such as stolen data, ransom terms, or confirmed breach specifics. The catalog entry supports threat analysts, security teams, and defenders in tracking ransomware-related activity across affected organizations and threat actor profiles. |
||||||
| Ransomware | DaVita id32835 View details | United States | IT | — | ||
|
davita.com operates within the IT sector based in the United States, providing technology-focused services and solutions for enterprise clients. This entity is cataloged in the threat-intelligence index under the designation ransomware victim, specifically associated with the threat actor interlock. The listing reflects intelligence linkage between the organization and identified malicious activity patterns attributed to interlock. This description maintains neutrality regarding confirmed incident specifics while documenting the verified association for cybersecurity monitoring and catalog purposes. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing professional and business-oriented services to clients. Within the threat-intelligence index, the entity is documented as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity threat reporting frameworks where entity profiles are cross-referenced with active adversary campaigns and incident correlations. The description maintains neutrality regarding specific incident details, avoiding assumptions about data exposure, operational impact, or confirmed breach parameters. Authorities and analysts reference such entries to assess organizational risk exposure and support proactive defensive strategies across the Services sector. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States. The entity provides professional services and maintains an online presence focused on business support and client engagement within its sector. According to the threat-intelligence index, davita.com has been formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects the entity's inclusion in cyber threat datasets documenting adversary activity and impacted organizations. The description avoids speculation regarding breach details, data handling, or financial impact, adhering strictly to verified index associations. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com is an IT sector entity based in the United States, operating within technology services and digital solutions. The entity is cataloged within a threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects inclusion in threat-intelligence records documenting cybersecurity incidents and adversary activity. The description remains neutral regarding specific breach details, as no confirmed incident specifics—such as data stolen, records accessed, ransom demands, or precise timelines—are attributed to this entry. Davita.com serves as a reference point for monitoring threat actor interlock activity within the IT sector landscape of the United States. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients requiring technology solutions and services from the United States. The entity is documented in the threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This entry reflects cybersecurity intelligence concerning the organization's association with this actor without disclosing unverified incident details such as breach confirmation, data stolen, or ransom demands. The catalog description maintains neutrality and focuses on the verified relationship between davita.com and interlock within the ransomware victim classification. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the United States IT sector, delivering technology services and solutions tailored to enterprise and professional clients. The entity is documented within this threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. This classification reflects the entity's inclusion in cybersecurity records tied to this specific threat actor's activity. The description maintains neutrality regarding incident details, focusing solely on the indexed categorization. This entry supports threat analysts and defenders in understanding contextual risk associated with the entity and its linked adversary. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com is a company operating within the Services sector and headquartered in the United States. Its profile within the threat-intelligence index identifies it specifically as a ransomware victim linked to the interlock threat actor. The listing reflects observed intelligence concerning this entity's involvement in a ransomware-related incident without disclosing unverified technical, financial, or operational details. This catalog entry supports security analysts, defenders, and monitoring teams in tracking threat actor activity and understanding affected organizations across key sectors. The record remains neutral in presentation, documenting the association without confirming breach specifics or inventing incident outcomes. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves US-based clients, providing technology-focused services and solutions. The entity has been cataloged in the threat-intelligence index under the designation ransomware victim. This listing is specifically associated with the threat actor interlock, linking the entity to this adversary group within cybersecurity threat reporting frameworks. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its recognized association with interlock as a ransomware victim. No incident specifics such as breach confirmation, stolen data details, or financial impact are included per strict reporting guidelines. |
||||||
| Ransomware | DaVita id32837 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as an entity documented within a threat-intelligence index under the ransomware victim listing type. The organization is associated with the threat actor interlock, with its operational context identified as the United States. This entry reflects the cybersecurity community's classification of the entity in relation to a ransomware incident linked to interlock. No specific technical details regarding the attack, data accessed, or remediation actions are provided here, maintaining factual neutrality. The listing serves to inform threat analysts and security professionals about this association within the broader ransomware threat landscape. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business clients requiring technology solutions and services. As a ransomware victim indexed in this threat-intelligence catalog, the entity is documented alongside threat actor interlock, reflecting observed security event associations. This listing type indicates a cybersecurity incident context without disclosing confirmed breach details, such as data stolen, records accessed, ransom demands, or specific attack methodology. The entry provides neutral, factual context for threat researchers and defenders monitoring entity exposure within cyber threat landscapes. Davita.s presence underscores ongoing vigilance for IT sector organizations against coordinated threat actor activity. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing professional and business-oriented offerings to clients. This entity is documented within our threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context in which davita.com was identified, emphasizing its role as an affected organization within the Services industry. This entry supports threat analysts and security professionals seeking structured intelligence on ransomware incidents and affiliated actors. The description remains factual and neutral, focusing on the entity's classification and its connection to the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity has been documented within a threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This listing reflects the cybersecurity intelligence assessment linking davita.com to interlock's activity profile without disclosing unverified incident details. The catalog entry serves to inform analysts and defenders about the entity's risk context and its attributed threat relationship. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business clients requiring technology solutions and services. As documented in the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects observed security event correlations and does not confirm specific incident details such as data exfiltration, ransom demands, or operational impact. This entry provides catalog context for security professionals monitoring adversary activity across the technology sector in the United States. Neutral documentation supports threat-hunting workflows and incident response awareness. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business customers with technology-focused solutions and services from the United States. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing reflects the cybersecurity context in which davita.com was identified within the index, without disclosing confirmed breach details such as stolen data, ransom terms, or specific incident metrics. The record serves to inform threat analysts and security professionals about the entity's association with this actor and its categorization within ransomware incident coverage. Understanding such associations supports proactive defense strategies and contextual awareness across the IT sector. |
||||||
| Ransomware | DaVita id32838 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. The entry documents the association between davita.com and interlock within the ransomware incident landscape, reflecting observed threat activity. No additional incident specifics, such as data stolen, record counts, ransom demands, or confirmed breach details, are included per strict factual reporting guidelines. This neutral description serves catalog and analytical purposes for threat intelligence professionals. |
||||||
| Ransomware | DaVita id32842 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves entities requiring technology solutions, infrastructure management, or digital services, with operational presence in the United States. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in records documenting cybersecurity incidents and adversary activity relevant to information technology environments. No specific incident details, such as data exfiltration scope, ransom demands, or confirmed breach evidence, are stated herein to maintain factual neutrality and avoid speculation beyond the indexed association. The entry serves catalog and research purposes for security analysts monitoring adversary-targeted organizations. |
||||||
| Ransomware | DaVita id32844 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services to clients. The entity is documented in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects the security community's assessment of the entity's involvement with this specific threat actor's activity. The entry serves to inform defenders and analysts about potential exposure contexts and correlated threat intelligence. No further incident specifics, such as breach confirmation details, data exfiltration metrics, or ransom terms, are provided in this catalog description. |
||||||
| Ransomware | DaVita id32847 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and is headquartered in the United States. The entity provides technology-focused services and solutions relevant to enterprise information systems. According to the threat-intelligence index, davita.com is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this specific cyber threat group within the monitored dataset. The description remains neutral regarding incident details, focusing solely on the verified classification and contextual metadata. |
||||||
| Ransomware | DaVita id32850 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves customers requiring technology solutions and services. As an entity documented in the threat-intelligence index under the ransomware victim listing type, it is associated with the threat actor interlock. The catalog entry reflects this classification based on intelligence sources without elaborating on unconfirmed incident details. This description maintains neutrality regarding operational specifics, data handling practices, or recovery outcomes. The association with interlock is presented as a factual listing within the intelligence framework for cybersecurity monitoring and analysis purposes. |
||||||
| Ransomware | DaVita id32851 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing professional and commercial services to clients. As part of this threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was identified within the index. The listing type indicates a confirmed relationship between davita.com and interlock in ransomware-related threat intelligence records. No additional incident details, such as breach specifics or disclosure timelines, are included beyond the official classification. |
||||||
| Ransomware | DaVita id32851 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. The company provides digital solutions and services aligned with enterprise technology needs. In the threat-intelligence context, davita.com is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion within our ransomware incident index for monitoring and analysis purposes. The entry documents the entity's relationship to this specific threat actor without disclosing unverified incident details. |
||||||
| Ransomware | DaVita id32854 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity located in the United States. The company provides IT-related services and solutions, maintaining its presence within the broader technology landscape. According to the threat-intelligence index, davita.com has been identified and cataloged as a ransomware victim linked to the interlock threat actor group. This listing reflects the entity's association with this specific cyber threat profile within the intelligence database. The entry documents the relationship between the organization and the identified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | DaVita id32854 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings relevant to enterprise environments. Within this threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity intelligence records concerning ransomware activity and its relationship to identified malicious actors. The description remains factual and neutral, focusing on the entity's classification, sector context, geographic origin, and the specific threat-intelligence association without disclosing unverified incident details. This catalog entry supports threat analysts, security teams, and defenders in tracking ransomware victim profiles and associated actor networks. |
||||||
| Ransomware | DaVita id32854 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing commercial services to clients and partners. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects the intelligence assessment connecting davita.com to an active cyber threat campaign attributed to interlock. No additional incident specifics, such as data stolen, record counts, ransom demands, or confirmed breach details, are included per strict factual reporting guidelines. The listing serves as a neutral reference point for cybersecurity professionals monitoring service-sector exposure to ransomware activity. |
||||||
| Ransomware | DaVita id32855 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is based in the United States, providing business and professional services to clients. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim. This classification is associated with threat actor interlock, indicating a documented security incident linking the organization to this adversary group. The entry reflects verified intelligence findings without disclosing unconfirmed breach details. Davita.com remains a reference point for monitoring service-sector exposure to coordinated cyber threats. |
||||||
| Ransomware | DaVita id32858 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves business clients requiring technology solutions and services. The entity is located in the United States and represents a technology-focused organization. This listing identifies davita.com as a ransomware victim within the threat-intelligence index, specifically associated with threat actor interlock. The catalog entry reflects the security incident classification without disclosing unverified technical details or breach specifics. Authorities and sector analysts monitor such associations to enhance cyber threat awareness and response capabilities. |
||||||
| Ransomware | DaVita id32860 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and professional services. The entity is formally listed within this threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This classification reflects the index's aggregation of verified incident correlations and threat actor attribution data. No specific technical details regarding the attack, data handled, or resolution are included here, adhering to strict factual boundaries. The listing serves as a neutral reference point for security professionals monitoring service-sector exposure to identified threat actors. |
||||||
| Ransomware | DaVita id32862 View details | United States | IT | — | ||
|
davita.com is an organization operating within the IT sector based in the United States. The entity is cataloged within the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the intelligence-indexing context linking the organization to a ransomware-related activity profile attributed to interlock. No specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach evidence, are included in this description to maintain factual neutrality and avoid speculation. The entry serves as a structured reference for cybersecurity professionals monitoring ransomware exposure patterns across sectors and threat actor footprints. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients with technology-focused solutions and services from the United States. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. This listing reflects the association between davita.com and interlock within cybersecurity intelligence records. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual constraints. The entry provides neutral context for researchers and defenders monitoring ransomware activity in the IT sector across the US. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector based in the United States, providing technology-focused services and solutions for enterprise customers. As cataloged in the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity event linking davita.com to interlock's activity without disclosing unverified technical details or incident specifics. This entry serves threat analysts seeking structured context on affected organizations and associated adversary profiles within the ransomware incident database. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity based in the United States. The company provides digital solutions and services relevant to enterprise technology environments. This listing identifies davita.com as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The entry reflects the entity's classification for cybersecurity monitoring and incident tracking purposes. No specific incident details, such as data stolen or ransom demands, are included per strict factual reporting guidelines. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves organizations seeking technology solutions and services from the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the inclusion of davita.com within records documenting cybersecurity incidents involving this specific adversary group. The description remains factual and neutral, focusing on the entity's sector, geographic context, and its association with the indexed threat actor without elaborating on unverified incident details. This entry supports threat-intelligence analysis for stakeholders monitoring ransomware activity in the IT landscape. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves clients requiring technology solutions and services from the United States. The entity is cataloged within this threat-intelligence index as a ransomware victim, specifically linked to the threat actor interlock. This listing reflects the cybersecurity community's documented association between davita.com and interlock's ransomware activity. The description remains factual and neutral, focusing on the entity's classification and its verified relationship to the identified threat actor without disclosing unconfirmed incident details. This entry supports threat-aware monitoring and intelligence aggregation for security stakeholders. |
||||||
| Ransomware | DaVita id32863 View details | United States | IT | — | ||
|
davita.com operates within the IT sector and serves as a technology-focused entity headquartered in the United States. The company provides IT-related services and solutions, positioning it within the broader technology infrastructure landscape. Within the threat-intelligence index, davita.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity records documenting ransomware incidents connected to interlock's activity. The listing serves to inform security professionals and stakeholders about potential exposure within the IT sector. All descriptions remain factual and neutral, focusing solely on the indexed classification without speculating on unverified incident details. |
||||||
| Ransomware | DaVita id32864 View details | United States | IT | — | ||
|
davita.com operates within the Services sector and is headquartered in the United States, providing business and service-oriented offerings to clients and partners. It has been formally listed within this threat-intelligence index as a ransomware victim associated with threat actor interlock. The entry reflects the entity's classification based on verified threat-intelligence data linking its incident profile to interlock's activity. This description maintains neutrality regarding specific incident details, as confirmed specifics such as data scope or operational impact are not publicly substantiated in available authoritative sources. The listing serves to inform security teams monitoring adversary tactics and victim profiles across the Services sector. |
||||||