BRIEFRansomwarehighP75
Qilin ransomware publishes Peruvian company Triton Trading
Triton Trading
Detected23 July 2026 · 09:20 UTC
Triton Trading, a financial services firm in Peru, has been posted on the Qilin ransomware leak site. This compromises sensitive financial data and could cause significant reputational and operational damage.
CategoryRansomware
Severityhigh
Priority score75
Detected23 July 2026 · 09:20 UTC
Ransomware● 60
Ransomware Coinbasecartel publica a Westwing Group SEThe Coinbasecartel ransomware group has claimed responsibility for an attack on Westwing Group SE, a major European e-commerce company for home and living products. The incident affects a large online retail operation and may involve customer data. It is relevant as a recent ransomware victim outside the region.Ransomware● 65
Ransomware Genesis publica a Hospitality Health ERThe Genesis ransomware group has publicly listed Hospitality Health ER, a U.S. healthcare provider, on its leak site. This compromises critical medical infrastructure and could expose sensitive patient health information. Although outside Latin America, it signals an active ransomware campaign that could expand regionally.Ransomware● 80
Ransomware ShinyHunters publica datos de la empresa de centros de datos CyrusOneThe ShinyHunters ransomware group published a massive dataset from CyrusOne, a major US data center provider, including 12.9 million Salesforce records and hundreds of GB of SharePoint data. The company refused a $13 million ransom, and the leak exposes sensitive customer and employee information. This is a significant, fresh data breach that requires immediate attention for any organization using CyrusOne services.Ransomware● 85
Ransomware KillSec publica a Global Go, transporte en PerúThe KillSec ransomware group published Global Go, a Peruvian transportation company, as a victim. The compromise of critical transportation infrastructure in Latin America poses operational and security risks for the region. We recommend checking for leaked data and contacting the company to assess impact.Ransomware● 55
Ransomware ShinyHunters publica a la empresa de ciberseguridad ReliaQuestThe ShinyHunters ransomware group has publicly listed ReliaQuest, a US cybersecurity and security operations company, on its leak site. Although the victim is not in Latin America, the exposure of a security technology vendor carries potential downstream risk for its global customers. Defenders should confirm whether any of their data was affected and watch for leaked corporate or client information.Ransomware● 65
ShinyHunters publica advertencia final contra el banco BOK FinancialBOK Financial, a U.S. financial services group, is listed by ShinyHunters with a deadline of August 24 before data is leaked. The financial sector is high-impact, and a breach could affect customers and market confidence. Defenders should check for indicators of compromise and prepare for possible disclosure.