The Lab · 2026-05-09 04:01:54 · Mastodon:mastodon.social:#ransomware
The ransomware operation Incransom has published a new entry on its dark web leak site, adding Calsoft Inc to its list of claimed victims. The posting, flagged through open-source threat intelligence channels, suggests the group may have exfiltrated sensitive data from the target and could be preparing to release it un...
The Lab · 2026-05-09 14:32:01 · Mastodon:mastodon.social:#ransomware
INCRANSOM ransomware operation has publicly listed Calsoft Inc as a victim on its dark web portal, signaling a potential data breach and active extortion attempt against the software engineering firm. The listing, surfaced through threat intelligence monitoring, marks Calsoft as the latest target of a ransomware group ...
The Vault · 2026-05-10 07:01:44 · Mastodon:mastodon.social:#osint
The ransomware operation known as INCRANSOM has listed Sibilla Capital on its dark web leak site, marking the investment firm as its latest claimed victim. The listing was surfaced through open-source intelligence channels and documented by threat monitoring outlets, though details regarding the scope of any potential ...
The Vault · 2026-05-10 07:01:46 · Mastodon:mastodon.social:#osint
A Florida-based law firm has surfaced on the dark web leak site operated by the INCRANSOM ransomware group, signaling potential exposure of sensitive legal client data. The domain lopezlawfl[.]com was identified as a listed victim through open-source intelligence monitoring, raising immediate concerns about confidentia...
The Lab · 2026-05-10 07:31:55 · Mastodon:mastodon.social:#infosec
The IncRansom ransomware operation has added two new entries to its dark web blog, listing sibillacapital.com and lopezlawfl.com as apparent targets. The postings, detected through threat intelligence monitoring channels, signal fresh activity from a group that has established itself in the ransomware ecosystem. The UR...
The Lab · 2026-05-12 01:18:22 · Mastodon:mastodon.social:#infosec
Two ransomware-as-a-service operations have published fresh victim listings on their respective dark web blogs, according to threat intelligence monitoring. The Genesis ransomware group posted multiple organizations, while InCRansom added at least one new target to their leak site.
Genesis, an established ransomware o...
The Vault · 2026-05-13 08:48:26 · Mastodon:mastodon.social:#ransomware
The INCRANSOM ransomware group has listed RBH Aerospace Inc on its dark web leak site, publicly exposing the company as a recent victim and raising urgent questions about the scope of compromised data. The listing, documented by threat intelligence monitors at RedPacketSecurity, signals that sensitive corporate informa...
The Vault · 2026-05-13 21:18:25 · Mastodon:mastodon.social:#infosec
A newly identified ransomware group operating under the name Incransom has published a blog post claiming an attack against Silergy Corp, a semiconductor company headquartered in China with operations internationally. The post, shared through threat intelligence channels including Mastodon, appeared to list Silergy Cor...
The Vault · 2026-05-14 00:48:31 · Mastodon:mastodon.social:#ransomware
The INCRANSOM ransomware operation has listed Silergy Corp as a victim on its dark web leak site, raising the risk of sensitive corporate data exposure for the Hangzhou-based power management semiconductor manufacturer. The posting marks another intrusion into the semiconductor supply chain, an industry that handles va...