BRIEFRansomwarelowP42
Booba Project ransomware publishes travel firm Atlas Ocean Voyages
Atlas Ocean Voyages
Detected14 September 2026 · 13:12 UTC
The 'booba project' ransomware group published Atlas Ocean Voyages, a US travel and hospitality company, claiming 37 GB of stolen data. A fresh victim listing points to an active intrusion with data theft and likely extortion pressure. It matters mainly as ransomware-ecosystem context, as it falls outside the Argentina/LATAM scope.
CategoryRansomware
Severitylow
Priority score42
Detected14 September 2026 · 13:12 UTC
Ransomware● 50
Ransomware Qilin publica a la francesa CARIDRO Val de LoireThe Qilin ransomware group has listed CARIDRO Val de Loire, a French agriculture and food-production firm, as a new victim. Ransomware in food/agri supply chains can disrupt distribution and is often accompanied by data theft. It is a fresh victim but in France, so outside the AR/LATAM scope.Ransomware● 44
El ransomware safepay publica a la tecnológica estadounidense CompunnelThe safepay ransomware group has listed US technology-services firm Compunnel as a victim, indicating a breach with data-theft and extortion claims. Compunnel provides IT consulting and workforce services, so its clients may face downstream exposure of shared data. Watch for leaked client records and credential reuse.Ransomware● 45
El ransomware Qilin publica a la sanitaria estadounidense Imperial Healthcare SolutionsThe Qilin ransomware group has listed US healthcare provider Imperial Healthcare Solutions as a victim, implying a breach with data-theft and extortion claims. Healthcare incidents risk patient-safety and regulatory consequences, and stolen records often resurface in later fraud. Sector defenders should monitor for leaked patient and insurance data.Ransomware● 45
El ransomware shadowbyt3$ publica a la inmobiliaria estadounidense John Engel TeamThe shadowbyt3$ ransomware group published John Engel Team, a US real estate and professional-services firm, on its leak site. The actor claims to hold serious data and shows an image as proof, indicating an active extortion. Freshly published victims are the earliest actionable signal for incident response and negotiation.Ransomware● 65
Aurora ransomware publica datos del contratista militar Metrea LLCAurora ransomware leaked 339 MB from Metrea LLC, a US defense contractor providing ISR aircraft for US SOCOM, and its subsidiary Commuter Air Technology. The dump includes Harris PRC-117G military radio documentation, exposing sensitive operational data. This is a significant defense-sector breach of interest to CTI operators tracking cyber threats against military supply chains.Ransomware● 72
Ransomware Silent Ransom publica al bufete estadounidense Holland & KnightThe Silent Ransom Group has published Holland & Knight, a major US law firm, on its ransomware victim site. Law firms hold sensitive client data, and a confirmed ransomware publication can lead to document leaks and legal or regulatory damage. This is a fresh ransomware victim incident relevant for tracking, even though the firm is outside Latin America.