Forus Listed as LockBit5 Victim in Chile
LockBit and public trackers listed Forus, the Santiago-based Chilean retailer, on its leak site.
LockBit added Forus, the Santiago-based Chilean apparel and footwear retailer, to its leak site. The mention was also recorded by Ransomware.live, ZeroHour and Breach House, while Ground.news indexed a report saying the company had acknowledged impacts to some systems.
LockBit added Forus, the Santiago-based Chilean apparel and footwear retailer, to its leak site as a victim. Ransomware.live also replicated the reference and marked forus.cl as a LockBit5 victim, with the discovery and attack dates estimated for Sept. 18, 2026.
What do public trackers show about the case?
Ransomware.live linked the incident to forus.cl and added exposure indicators tied to the case, including 2 compromised employees, 40 compromised users, 20 third-party credentials and 12 external attack surface assets. ZeroHour also listed forus.cl as a LockBit5 tracker page, while Breach House included it among its LockBit5 victims in Chile.
That overlap across open-source intelligence feeds reinforces that the attribution comes from the public leak infrastructure. A source cited by Pulse in Kalir.io also said Forus appears tied to data publication as a Chilean victim listed by LockBit, although that attribution rests on the leak site and not on independent confirmation from the company.
What is known about the affected company?
Forus is a Chilean clothing and footwear retailer based in Santiago. Ground.news indexed a Diario Estrategia report titled "Forus Was Affected by Cybersecurity Incident," which says the company reportedly acknowledged that some of its computer systems were affected.
Based on the material available, there are no public details about the attack techniques, initial access, or internal scope beyond what the trackers show and the reference to affected systems. The verifiable information points to the company’s presence in the leak ecosystem and to exposure indicators already recorded by monitoring services.
Forus cyberattack: what is known so far
Forus is linked to a cyberattack through its inclusion as a LockBit5 victim in public trackers and on the group’s leak site. There is also a mention that some of its computer systems may have been affected, according to a report indexed by Ground.news.
The reference was replicated by Ransomware.live, which logged forus.cl as a LockBit5 victim with an estimated discovery and attack date of Sept. 18, 2026. ZeroHour and Breach House also listed forus.cl among LockBit5 victims in Chile, while the attribution remains based on open intelligence sources and not on an independent confirmation from the company.
Forus cybersecurity: what is known about the case
Forus is linked to a cybersecurity incident through its inclusion as a LockBit5 victim in public trackers and on the group’s leak site. There is also a mention that some of its computer systems may have been affected, according to a report indexed by Ground.news.
The reference was replicated by Ransomware.live, which logged forus.cl as a LockBit5 victim with an estimated discovery and attack date of Sept. 18, 2026. ZeroHour and Breach House also listed forus.cl among LockBit5 victims in Chile, while the attribution remains based on open intelligence sources and not on an independent confirmation from the company.
Sources
- All Records - Breach Housebreach.house· Breach House
- LockBit5 ransomware lists Taiwanese firm tpi.tw - Pulse - Kalir.iopulse.kalir.io· Pulse - Kalir.io
- Incidents - Ransomware victims & data breaches - ZeroHourzerohour.day· ZeroHour
- Forus Was Affected by Cybersecurity Incidentground.news· Ground.news
- Victim: forus.clransomware.live· Ransomware.live



