BRIEFRansomwarehighP50
Booba Project ransomware publishes Washington County (US)
Washington County
Detected23 September 2026 · 10:29 UTC
Reposts collapsed2
Booba project names Washington County, a US government administration, as a ransomware victim with 2 GB of exfiltrated data. Public-sector ransomware leaks can expose resident information and disrupt services, so it is noted for the government sector despite being outside the LATAM region.
CategoryRansomware
Severityhigh
Priority score50
Detected23 September 2026 · 10:29 UTC
Ransomware● 72
Ransomware arcusmedia publica a la agroindustrial peruana Agrofruto SACThe arcusmedia group lists Peruvian agroindustrial firm Agrofruto SAC as a ransomware victim with a leak deadline of 2026-09-30, indicating stolen corporate data and active extortion. It is one of the few Latin American victims in this batch, making it a live regional incident worth monitoring for broader targeting of the Peruvian agribusiness sector.Ransomware● 40
Ransomware booba project publica a la clínica Smart Eye CareThe 'booba project' group published Smart Eye Care, a healthcare provider, as a victim, claiming 7 GB of stolen data. Healthcare breaches expose sensitive patient records and can disrupt care, making this fresh listing relevant despite the smaller scale and unknown country.Ransomware● 42
Ransomware booba project publica al consorcio italiano COSEFThe 'booba project' ransomware group listed COSEF, an Italian economic development consortium, claiming 200 GB of stolen data. That large volume of corporate and partner data is significant for defenders profiling the group's targeting and exfiltration patterns across sectors.Ransomware● 52
Ransomware booba project publica al condado de Merrimack (EE.UU.)The booba project group lists Merrimack County, a US government administration, as a ransomware victim with 3 GB of stolen data. Government ransomware victims can disrupt public services and expose citizen records; flagged for the government sector, though regionally outside AR-LATAM.Ransomware● 95
Ransomware emperador filtra datos de la Receita Federal de BrasilThe 'emperador' group listed Brazil's Receita Federal on its leak site, claiming thousands of documents with personnel and customer data plus all gov.br user records and passwords. A national tax authority compromise with credential exposure is very high impact for Latin America, enabling follow-on intrusions and identity fraud.Ransomware● 34
Ransomware MedusaLock publica a la empresa francesa AokkefMedusaLock ransomware published French organization Aokkef, with roughly 137 emails extracted. It is a small, low-impact victim but confirms the group's ongoing campaign and extortion activity.