BRIEFRansomwarelowP42
KillSec ransomware publishes Singapore manufacturer Giti Corp
Giti Corp
Detected18 September 2026 · 03:12 UTC
The KillSec ransomware group listed Giti Corp, a manufacturing company in Singapore, on its leak site, threatening to publish stolen data. This is a confirmed fresh victim, but Singapore is outside the Argentina/LATAM focus, so direct impact for regional defenders is limited. It is still worth noting as evidence KillSec remains active and is targeting industrial/manufacturing firms that may have Latin American operations or supply-chain links.
CategoryRansomware
Severitylow
Priority score42
Detected18 September 2026 · 03:12 UTC
Ransomware● 62
Ransomware Panzer publica a la tecnológica Inovapy (Latinoamérica)The Panzer ransomware group has published Inovapy, a technology firm providing software and digital-transformation services across Latin America. Freshly naming a regional vendor signals an active intrusion with potential downstream impact on its clients. Latin American defenders should check for exposure and supply-chain risk.Ransomware● 38
Ransomware krybit publica a la residencia alemana Diakoniewerk ApoldaThe krybit ransomware group listed Diakoniewerk Apolda, a German non-profit healthcare and social welfare organization, on its leak site. Healthcare ransomware is high-impact and can disrupt patient services, but this victim is outside the Argentina/LATAM region, so it is mainly of trend-tracking value.Ransomware● 34
Ransomware krybit publica a la constructora turca Harput YapıThe krybit ransomware group published Harput Yapı, an Istanbul-based residential real estate and construction firm, on its leak site. A fresh construction-sector victim matters for extortion trends and supply-chain visibility, though it is outside the Argentina/LATAM region and of limited direct impact.Ransomware● 38
Qilin publica a la víctima Invincible GGThe Qilin ransomware group listed a new victim, 'Invincible GG', sector Technology, on its leak site. Fresh victim publications give defenders a short window to detect related intrusion activity. Although the country is unlisted, the listing should be monitored for any LATAM link or supply-chain exposure.Ransomware● 42
Ransomware Chaos publica a Express Employment ProfessionalsThe Chaos group announced the public release phase for expresspros.com after failed negotiations, exposing a large US staffing and professional-services firm. Employment agencies hold extensive personal, payroll and client data, making the leak a strong phishing and fraud vector. It matters mainly as a fresh leak site entry outside the LATAM region.Ransomware● 48
Ransomware Qilin publica al Gran Hotel Inglés de EspañaQilin added the Gran Hotel Inglés, a hospitality business in Spain, to its leak site, signaling a fresh intrusion in a Spanish-speaking country. Hospitality breaches typically expose guest records, payment data and booking systems, and the sector is a frequent ransomware target. It is relevant for regional awareness even at a single-property scale.