Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us
Search v2
before

Prefix a filter with + to require it, or - to exclude it — e.g. +country:us only shows US victims, -country:us hides them. Mix several with free-text words; everything is combined with AND (so hospital +country:us -group:lockbit3 means: text "hospital", country is US, group is not lockbit3). Repeating + on the same field is OR'd together (+country:us +country:ca → US or Canada); repeating - excludes all of them. Wrap multi-word values in quotes, e.g. +sector:"public sector". infostealer and press take a bare +/- with no value: +infostealer / -infostealer filter on infostealer data, while +press searches press articles only and -press hides press coverage; before:/after: take a date directly with no +/- prefix, as shown below.

+country:only this country — opens a picker
-country:exclude this country — opens a picker
+group:lockbit3only this group
-group:lockbit3exclude this group
+website:example.comonly this website
+sector:only this sector — opens a picker
-sector:exclude this sector — opens a picker
+infostealerhas infostealer data
-infostealerno infostealer data
+presssearch press articles only
-presshide press coverage
after:2025-01-01discovered/attacked on or after
before:2026-01-01discovered/attacked on or before
2 victims matched
Logo
Discovered: 2025-02-28 (1y ago)  ·  Attack est.: 2025-02-13
All data will be available soon. The Palau Ministry of Health is located in the island nation of Pal…
Logo
Discovered: 2025-02-20 (1y ago)  ·  Attack est.: 2025-02-13
All data of this company will be available for download on 27.02.2025. MoH is a company that operate…
Press Coverage 1
Ministère de la Santé de Palau
2025-02-17

Le ministère de la Santé de Palau a été victime d'une attaque ransomware menée par le groupe Qilin, qui a volé des fichiers contenant des informations de patients, notamment des données de facturation et des informations personnelles. Les autorités ont réussi à isoler l'incident et à rétablir les opérations hospitalières dans les 48 heures, avec l'aide d'experts en cybersécurité. Le groupe Qilin a publié certaines des informations volées et a menacé d'en publier davantage, mais les autorités ont déclaré que l'impact sur la sécurité des individus était limité.

Read article