Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us
Search v2
before

Prefix a filter with + to require it, or - to exclude it — e.g. +country:us only shows US victims, -country:us hides them. Mix several with free-text words; everything is combined with AND (so hospital +country:us -group:lockbit3 means: text "hospital", country is US, group is not lockbit3). Repeating + on the same field is OR'd together (+country:us +country:ca → US or Canada); repeating - excludes all of them. Wrap multi-word values in quotes, e.g. +sector:"public sector". infostealer, press and multipleclaims take a bare +/- with no value: +infostealer / -infostealer filter on infostealer data, while +press searches press articles only and -press hides press coverage; +multipleclaims restricts to victims claimed by more than one group (cross-referenced) and -multipleclaims keeps only single-claim victims; +campaign:fortibleed / -campaign:fortibleed filter on domains found in the FortiBleed leaked-credential dataset; before:/after: take a date directly with no +/- prefix, as shown below.

+country:only this country — opens a picker
-country:exclude this country — opens a picker
+group:only this group — opens a picker
-group:exclude this group — opens a picker
+website:example.comonly this website
+sector:only this sector — opens a picker
-sector:exclude this sector — opens a picker
+infostealerhas infostealer data
-infostealerno infostealer data
+presssearch press articles only
-presshide press coverage
+multipleclaimsclaimed by more than one group (cross-ref only)
-multipleclaimsclaimed by a single group only
+campaign:fortibleeddomain found in the FortiBleed dataset
-campaign:fortibleeddomain not in the FortiBleed dataset
after:2025-01-01discovered/attacked on or after
before:2026-01-01discovered/attacked on or before
3 victims matched
Logo
Discovered: 2026-02-27 (5mo ago)  ·  Attack est.: 2026-01-26
Two River specializes in founding, building, and incubating companies in the life sciences sector th…
Logo
Discovered: 2023-10-25 (2y ago)
Located in the Wisconsin countryside, Pine River has been making award-winning cheese spreads and co…
Logo
Discovered: 2023-08-01 (3y ago)
Pea River Electric Cooperative is a service-oriented, distribution electric utility that is owned by…
Press Coverage 1
River Financial Corporation
2026-06-19

River Financial Corporation a signalé un incident de cybersécurité majeur. Un acteur malveillant non autorisé a accédé au réseau de l'entreprise, y compris River Bank & Trust, aux alentours du 16 juin 2026. L'entreprise a identifié l'activité le 19 juin 2026 et a confirmé le déploiement de ransomware sur certaines parties de son environnement de serveurs. River a pris des mesures de confinement immédiates et mène actuellement une enquête avec une firme forensique externe pour déterminer l'étendue de l'incident et si des informations personnelles identifiables ont été compromises. L'entreprise n'a pas encore déterminé l'impact complet de l'incident sur ses opérations ou sa situation financière.

Read article