BRIEFRansomwarehighP45
Anubis ransomware publishes technology firm Quest Group
Quest Group
Detected19 September 2026 · 00:12 UTC
The Anubis ransomware group listed Quest Group, a technology-sector victim, claiming to have stolen employee data and internal files. Technology firms often hold source code, credentials and customer records that can fuel follow-on intrusions. No country is specified, so the victim may sit outside Argentina/LATAM, which limits the direct regional impact.
CategoryRansomware
Severityhigh
Priority score45
Detected19 September 2026 · 00:12 UTC
Ransomware● 80
Ransomware Panzer publica a la consultora brasileña K3G SolutionsRansomware group Panzer listed K3G Solutions, a Brazilian telecom/IT consultancy in Manaus that provides network engineering, ISP support, monitoring, call-center, CDN and colocation services. That places a regional telecom/critical-infrastructure provider on a leak site, exposing potential supply-chain risk to its ISP and enterprise clients. LATAM defenders should treat this as a fresh ransomware incident and review third-party connectivity.Ransomware● 60
Ransomware LockBit publica a la empresa alemana HyGear (salud)The LockBit group has added HyGear, a German on-site and on-demand hydrogen supplier in the healthcare sector, to its extortion portal. The victim combines industrial/OT hydrogen production with healthcare supply chains, so a breach could disrupt operations and expose partner or client data. Defenders in energy and healthcare supply chains should watch for leaked credentials and follow-on access attempts.Ransomware● 78
Ransomware LockBit publica a la minorista chilena ForusThe LockBit leak site has listed Forus, a Chilean apparel retailer headquartered in Santiago and founded in 1980, as a victim in the professional services sector. As a large regional company it holds customer, supplier and transaction data, so a confirmed breach could expose personal and financial information across Chile. A defender should verify the claim and monitor for leaked or traded Forus data.Ransomware● 60
Ransomware Akira publica a la fabricante Anderson IndustriesThe Akira ransomware group listed Anderson Industries, an engineering and manufacturing firm producing agricultural equipment and foundry services, and threatens to publish 9GB of corporate data including employee and client personal information, project specs, orders, financials and NDAs. The victim's country is not confirmed, but manufacturing supply chains are high-value targets and the mix of personal and financial records raises fraud and competitive-risk concerns for peers.Ransomware● 55
Ransomware Incransom publica a la editorial estadounidense Kendall HuntIncransom ransomware has published Kendall Hunt Publishing, a US K-12 educational publisher, as a victim on its leak site. Educational publishers hold student, teacher and customer data plus proprietary curricula, making the breach sensitive. The victim is outside Latin America, so priority for AR-LATAM defenders is moderate.Ransomware● 40
Ransomware Incransom publica a la operadora neerlandesa Roan CampingThe Incransom ransomware group has listed Roan Luxury Camping Holidays, a Dutch tour operator, on its leak site. A breach could expose booking and customer payment data during the active European travel season. The victim is a small business outside Latin America, so regional impact is low.