BRIEFRansomwarehighP44
Qilin ransomware publishes Finnish marine firm Delta Marine
Delta Marine
Detected6 October 2026 · 10:07 UTC
Qilin has newly published Delta Marine, a Finnish transportation/marine company, as a ransomware victim. Transport and logistics firms are high-value targets due to operational dependence on IT and the potential for port or fleet disruption. Nordic transport defenders should monitor for Qilin affiliates.
CategoryRansomware
Severityhigh
Priority score44
Detected6 October 2026 · 10:07 UTC
Ransomware● 45
Ransomware Qilin publica a la manufacturera irlandesa Corby Rock MillQilin has freshly listed Corby Rock Mill, an Irish manufacturing company, among its ransomware victims. Manufacturing victims risk operational shutdown, IP theft and supply-chain disruption. EU/IE critical-production defenders should track Qilin activity and affiliate TTPs.Ransomware● 52
Ransomware Qilin publica a la financiera J&D FinancialThe Qilin ransomware group has freshly listed J&D Financial, a financial-services victim, on its leak site. Financial firms face regulatory pressure and elevated fraud risk when customer and transaction data is exfiltrated. Defenders in finance should review Qilin TTPs and third-party exposure.Ransomware● 45
Ransomware EndZone publica a la Universidad Philander SmithThe EndZone ransomware group listed Philander Smith University as a victim, claiming 500GB+ of exfiltrated data. It is a fresh education-sector ransomware publication, but the victim is in the US, outside our Latin America focus. Useful for tracking the group's activity and TTPs.Ransomware● 42
Ransomware BYOD publica a Standpointe / Trinite SolutionsThe 'byod' ransomware group published Standpointe / Trinite Solutions, a professional-services firm, claiming financial statements, bank accounts, customer and employee data. The data categories indicate a serious business-data breach. It is a fresh victim post, but the country is unstated.Ransomware● 45
Ransomware Insomnia publica a Praxis EMR, proveedor sanitario de EE. UU.Ransomware group 'insomnia' has published Praxis EMR, a US healthcare EHR provider, on its leak site. Healthcare victims face patient-safety and regulatory impact plus extortion. It is a fresh victim publication, though outside the AR-LATAM region.Ransomware● 76
Ransomware Safepay publica a la IT alemana T-SystemsThe Safepay ransomware group listed T-Systems, the IT services arm of Deutsche Telekom with over 26,000 employees across 26 countries, as a victim. If confirmed, a breach at such a large managed-IT and cloud provider could cascade into downstream enterprise and public-sector clients. Defenders relying on T-Systems services should urgently assess third-party exposure.