BRIEFRansomwarehighP43
Akira ransomware publishes UK contractor Manders
Manders Companies
Detected16 September 2026 · 15:12 UTC
The Akira ransomware group listed Manders Companies, a GB manufacturing/contracting firm, and claims it will upload ~70GB of corporate data. The leak reportedly includes employee SSNs, passports, driver's licenses, financials, client contracts and NDAs. It is a fresh victim publication with sensitive PII, useful for tracking Akira's targeting and data-monetization patterns.
CategoryRansomware
Severityhigh
Priority score43
Detected16 September 2026 · 15:12 UTC
Ransomware● 42
Ransomware Panzer publica a la firma Nielsen DesignThe ransomware group 'panzer' has listed Nielsen Design as a newly published victim on its leak site. The entry gives no country or sector detail, so direct regional impact is unclear and the firm appears to be a small European design/architecture company. It is worth monitoring if the group shifts toward Latin American targets, but remains a lower priority for a region-focused operator.Ransomware● 72
Proveedor de salud mexicano La Concepción, víctima de ransomware safepayThe 'safepay' ransomware group added laconcepcion.com.mx to its victim list. The organization identifies itself as one of the principal private healthcare providers in the Coahuila region of Mexico. A ransomware hit on a healthcare provider risks patient safety and sensitive medical data.Ransomware● 90
El portal gubernamental de Perú gob.pe, víctima de ransomware safepayThe 'safepay' ransomware group listed gob.pe, Peru's central government services portal, as a victim. It is the country's primary online contact point between public institutions and citizens, i.e. critical national infrastructure. A compromise could disrupt public services and expose citizen data.Ransomware● 42
Ransomware Dark Project publica a Cumar Marble & GraniteThe Dark Project ransomware group has published Cumar Marble & Granite, a stone fabricator, as a victim. Though a mid-size manufacturer outside the region, fresh victim postings indicate an active intrusion and data-theft campaign. Low regional priority but worth tracking for sector trends.Ransomware● 68
Ransomware Interlock publica a la ciudad de Fort Smith, ArkansasThe Interlock ransomware group has listed the City of Fort Smith, Arkansas as a victim, claiming a major leak of confidential data from a US municipal government. Municipal breaches disrupt public services and expose resident data. It is a fresh, high-impact government victim release.Ransomware● 42
Ransomware Qilin publica a Bravo Group (Singapur)Qilin ransomware has listed 'Bravo Group' (Singapore) as a victim, indicating a fresh intrusion with data theft and extortion. Newly published victims are time-sensitive because the operation may still be ongoing. Defenders should verify the entity and monitor for related data exposure.