BRIEFRansomwarelowP40
Vexy ransomware publishes juice maker Kookabarra Juice
Kookabarra Juice
Detected6 October 2026 · 21:07 UTC
Vexy ransomware listed Kookabarra Juice, an Australian fresh-juice manufacturer in the retail sector, as a victim. It is a small company outside Latin America, but the fresh listing shows ongoing extortion activity. Food-sector victims can face both operational disruption and exposure of customer and commercial data.
CategoryRansomware
Severitylow
Priority score40
Detected6 October 2026 · 21:07 UTC
Ransomware● 40
Ransomware Qilin publica a la constructora turca Ciftay InsaatQilin published Ciftay Insaat, a Turkish manufacturing and construction firm, as a ransomware victim. The listing indicates data theft and extortion against an industrial company, with likely exposure of project and contractual data. It is lower priority for LATAM defenders but confirms continuing Qilin activity against industry.Ransomware● 52
Ransomware Qilin publica a la entidad financiera BNYHThe Qilin ransomware group listed BNYH, a financial services victim, on its leak site with no country stated. Financial-sector ransomware can disrupt payments and expose sensitive client data, so this listing merits monitoring. Qilin is a prolific RaaS operation, and the publication implies data theft and active extortion pressure.Ransomware● 42
Ransomware IncRansom publica a la empresa MagnalsThe IncRansom group has published US firm magnals.com as a ransomware victim, referencing confidential data belonging to multiple companies. The listing names external counsel and points to exfiltration of sensitive corporate records. It signals a fresh compromise with negotiation and leak leverage.Ransomware● 47
Ransomware Panzer publica a la consultora SweetRushThe Panzer ransomware group has listed US professional-services firm SweetRush as a new victim on its leak site. A fresh ransomware publication indicates an active intrusion with data exfiltration and an imminent leak of corporate and client data. Defenders should watch for follow-on phishing and supply-chain exposure.Ransomware● 60
Ransomware Everest publica a la aerolínea Flydubai de DubáiEverest ransomware has published Flydubai, the Dubai government-owned low-cost airline, as a victim. Targeting a state-linked airline raises critical-infrastructure and aviation-safety concerns. It pressures regional transport and government stakeholders and merits close monitoring.Ransomware● 48
Ransomware Everest reclama al fabricante estadounidense KennametalThe Everest ransomware group lists Kennametal, a US-listed industrial tooling manufacturer, among its victims. A manufacturing breach can disrupt supply chains and OT-adjacent operations across mining, energy and aerospace customers. Listed-company incidents carry material financial and disclosure implications.