Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us
Search v2
before

Prefix a filter with + to require it, or - to exclude it — e.g. +country:us only shows US victims, -country:us hides them. Mix several with free-text words; everything is combined with AND (so hospital +country:us -group:lockbit3 means: text "hospital", country is US, group is not lockbit3). Repeating + on the same field is OR'd together (+country:us +country:ca → US or Canada); repeating - excludes all of them. Wrap multi-word values in quotes, e.g. +sector:"public sector". infostealer, press and multipleclaims take a bare +/- with no value: +infostealer / -infostealer filter on infostealer data, while +press searches press articles only and -press hides press coverage; +multipleclaims restricts to victims claimed by more than one group (cross-referenced) and -multipleclaims keeps only single-claim victims; +campaign:fortibleed / -campaign:fortibleed filter on domains found in the FortiBleed leaked-credential dataset; before:/after: take a date directly with no +/- prefix, as shown below.

+country:only this country — opens a picker
-country:exclude this country — opens a picker
+group:only this group — opens a picker
-group:exclude this group — opens a picker
+website:example.comonly this website
+sector:only this sector — opens a picker
-sector:exclude this sector — opens a picker
+infostealerhas infostealer data
-infostealerno infostealer data
+presssearch press articles only
-presshide press coverage
+multipleclaimsclaimed by more than one group (cross-ref only)
-multipleclaimsclaimed by a single group only
+campaign:fortibleeddomain found in the FortiBleed dataset
-campaign:fortibleeddomain not in the FortiBleed dataset
after:2025-01-01discovered/attacked on or after
before:2026-01-01discovered/attacked on or before
1 victim matched
Logo
Discovered: 2024-10-24 (1y ago)
Drug and Alcohol Treatment Service is Lackawanna County's leading outpatient drug and alcohol treatm…
Press Coverage 2
Drug and Alcohol Treatment Services, Inc.
2024-10-05

Drug and Alcohol Treatment Services, Inc., basée à Scranton, Pennsylvanie, a accepté de régler une action collective suite à une cyberattaque par ransomware et une violation de données survenue en octobre 2024. L'attaque a entraîné le vol des informations de santé et personnelles de 22 215 patients et employés. Le règlement prévoit un fonds de 549 000 $ pour couvrir les pertes des membres de la classe. Le groupe Interlock a revendiqué l'attaque, et les poursuites portaient sur la négligence et le manquement à protéger les données sensibles.

Read article
Drug and Alcohol Treatment Services, Inc.
2024-10-06

Le 6 octobre 2024, Drug and Alcohol Treatment Services, Inc. (DATS) a détecté une activité inhabituelle sur son réseau et a immédiatement pris des mesures pour sécuriser ses systèmes, tout en lançant une enquête avec l’aide d’experts et en alertant les autorités. L’enquête a révélé qu’un tiers non autorisé avait accédé à certains fichiers les 5 et 6 octobre 2024. Le 15 avril 2025, DATS a terminé son analyse et confirmé qu’un volume limité de données personnelles avait pu être consulté lors de l’incident.

Read article